Re: NANOG70 tee shirt mystery

2017-06-04 Thread David Barak via NANOG
https://en.m.wikipedia.org/wiki/Ten_(Pearl_Jam_album) Pearl Jam are from Seattle... David Barak Sent from mobile device, please excuse autocorrection artifacts > On Jun 4, 2017, at 4:55 PM, Matthew Petach <mpet...@netflight.com> wrote: > > So, I've been staring at the NA

Re: Benefits (and Detriments) of Standardizing Network Equipment in a Global Organization

2016-12-28 Thread David Barak via NANOG
saying "vendor X for one layer, vendor Y for adjacent layer" as a multi-vendor strategy. David Barak Sent from mobile device, please excuse autocorrection artifacts

Re: OSPF vs ISIS - Which do you prefer & why?

2016-11-09 Thread David Barak via NANOG
> On Nov 9, 2016, at 6:04 PM, Randy Bush <ra...@psg.com> wrote: > > vi users prefer ospf > emacs users prefer is-is > So that leaves EIGRP for the nano users? David Barak Sent from mobile device, please excuse autocorrection artifacts

Re: NFV Solution Evaluation Methodology

2016-08-02 Thread David Barak via NANOG
Simpler > complex *sometimes*. It turns out that sometimes the complexity is worth it (eg https://youtu.be/-iiXsbrEv3U ). Perhaps "as simple as possible, by no simpler" would be reasonable? David Barak Sent from mobile device, please excuse autocorrection artifacts > On Aug

Re: cross connects and their pound of flesh

2016-06-19 Thread David Barak via NANOG
t gets run over it is nobody's business but the person controlling the end points. David Barak Sent from mobile device, please excuse autocorrection artifacts > On Jun 19, 2016, at 8:30 AM, Patrick W. Gilmore <patr...@ianai.net> wrote: > > Actually, back in the T1/T3 days, colos freq

Re: phone fun, was GeoIP database issues and the real world consequences

2016-04-15 Thread David Barak via NANOG
e US by population. Effects of scale apply here in terms of path dependence for solutions. David Barak Sent from mobile device, please excuse autocorrection artifacts

Re: /27 the new /24

2015-10-08 Thread David Barak via NANOG
llow your > customers to connect to > everyone. I think you should s/everyone/everyone they care about/ That roughly explains why there is no particular consumer outcry (which isn't about speed/bandwidth or mobile coverage, anyway). David Barak

Re: IPv6 allocation plan, security, and 6-to-4 conversion

2015-02-08 Thread David Barak
... David Barak Sent from a mobile device, please forgive autocorrection.

Re: large scale ipsec

2013-11-01 Thread David Barak
Hi Jan, Please define quot;large scalequot;. Is that by number of endpoints, throughput, or some other metric? How big is big? David Barak

Re: NYT covers China cyberthreat

2013-02-20 Thread David Barak
Don't be lulled into complacency by a private network: all it takes is one thumb-drive or rogue AP and you have a back door. Private networks reduce but do not eliminate attackable surface. David Barak Sent from a mobile device, please forgive autocorrection. On Feb 20, 2013, at 2:04 AM

Re: Network security on multiple levels (was Re: NYT covers China cyberthreat)

2013-02-20 Thread David Barak
the network drops a whole lot. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Programmers can't get IPv6 thus that is why they do not have IPv6 in their applications....

2013-01-31 Thread David Barak
Looking at http://mydeviceinfo.comcast.net you get a choice of wireless or IPv6 in Arris. I Wish they would ask which you want before install: I already have better wireless, and the Arris ones don't let you disable theirs :/ Thank you for the pointer - perhaps a swap is in order. David

Re: Programmers can't get IPv6 thus that is why they do not have IPv6 in their applications....

2013-01-30 Thread David Barak
spoken to on the phone can tell me when or if it will be coming. I look forward to Comcast giving me native v6 at home. David Barak

Re: Programmers can't get IPv6 thus that is why they do not have IPv6 in their applications....

2013-01-30 Thread David Barak
of this technology. So no, as I said before, Comcast has *not* removed the v6 barrier here. I'd like it to just work, please. David Barak Sent from a mobile device, please forgive autocorrection.

Re: Suggestions for the future on your web site: (was cookies, and

2013-01-24 Thread David Barak
of a barrier for a real attacker.  A poor trade-off. +1000 I routinely fail CAPTCHAs, and am certainly less accurate than a decent machine at the OCR required. Those of us whose eyes don't correct to 20/20 would greatly appreciate some other form of slow down the spammers than this. David

Re: Blocking MX query

2012-09-05 Thread David Barak
On Sep 4, 2012, at 11:45 PM, Suresh Ramasubramanian ops.li...@gmail.com wrote: So - now with ipv6 you're going to see hi, my toto highly computerized toilet is trying to make outbound port 25 connections to gmail

Re: Color vision for network techs

2012-08-31 Thread David Barak
style of icon generation?  David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: job screening question

2012-07-11 Thread David Barak
(please excuse the top post) If you want a great analysis of how this happened before, check out Clanchy#39;s book _From memory to written record_ about the implications of the spread of literacy as a technology in England in the 1300s. David Barak

Re: HE.net BGP origin attribute rewriting

2012-05-31 Thread David Barak
allowing the same transitive properties. David Barak Sent from a mobile device, please forgive autocorrection.

Re: HE.net BGP origin attribute rewriting

2012-05-31 Thread David Barak
that C still learns both routes to you. It's a more subtle nudge than as-path. In general, I prefer routinely using attributes that are further down the algorithm so at the big guns can be saved for when they're needed or for special policy issues. David Barak Sent from a mobile device, please

Re: HE.net BGP origin attribute rewriting

2012-05-31 Thread David Barak
.  Neither of those is network abuse - it's more accurately described as network routing policy.  As has been stated here before: your network, your rules.   David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Network diagram app that shows realtime link utilizatin

2012-05-01 Thread David Barak
Netbrain OE does this. David Barak Sent from a mobile device, please forgive autocorrection. On May 1, 2012, at 12:47 PM, Andrey Khomyakov khomyakov.and...@gmail.com wrote: cacti by use of weather maps? Alternatively, Intermapper is pretty good, but commercial. It's more of an NMS than

Re: Switch designed for mirroring tap ports

2012-03-01 Thread David Barak
(other than that you don#39;t want that switch in-line with anything else). David Barak

Re: MD5 considered harmful

2012-01-31 Thread David Barak
in the of situations. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Does anybody out there use Authentication Header (AH)?

2012-01-01 Thread David Barak
It can be used to prevent NAT on an intermediate path, which can be useful under certain circumstances. I have seen it in the wild, both in Internet and private networking contexts. David Barak

Re: next-best-transport! down with ethernet!

2011-12-30 Thread David Barak
is the transportation network.  That's probably the one time when you really *can* overestimate the bandwidth of a station wagon full of hard drives... David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Writable SNMP

2011-12-06 Thread David Barak
... David Barak Need Geek Rock? Try The Franchise:  http://www.listentothefranchise.com

Re: IP addresses are now assets

2011-12-03 Thread David Barak
Should the HAC be expected to manage the transition to HumorV6? David

Re: What vexes VoIP users?

2011-02-28 Thread David Barak
different failure modes than my cable service.  Whether that's something one wants to purchase is a different question. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Post-Exhaustion-phase punishment for early adopters

2011-02-08 Thread David Barak
that they start running across the hosts in 2/8 as customers, those can get NATted into some third block, with probably a lot less effort and confusion than trying to sort out the chunks of overlapping 10/8s. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: quietly....

2011-02-02 Thread David Barak
, and there are not in fact any good alternatives.  The insistence on RA, along with a handwaving dismissal of all of those folks who have a high reliance on DHCP has done a tremendous disservice to the uptake of IPv6. David Barak Need Geek Rock? Try The Franchise: http

Re: quietly....

2011-02-01 Thread David Barak
From: Owen DeLong o...@delong.com David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com If you're determined to destroy IPv6 by bringing the problems of NAT forward with you, then, I'm fine with you remaining in your IPv4 island

Re: Is NAT can provide some kind of protection?

2011-01-12 Thread David Barak
(and not relevant to the typical home user, who is not configuring a super-duper scanning proxy server), but it does exist, and it certainly fuels some of the pro-NAT feeling I've encountered among customers. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: [Nanog-futures] an alternate proposal for NewNOG ’s membership structure

2010-12-17 Thread David Barak
- Original Message From: Joe Abley jab...@hopcount.ca On 2010-12-16, at 20:31, Steve Feldman wrote: Please read the proposal (it's short!) and comment. I think this is great. +1 David Barak ___ Nanog-futures mailing list Nanog

Re: Vyatta as a BRAS

2010-07-13 Thread David Barak
-army-knife software router which supports limited hardware acceleration of specific functions. Is there anyone who considers the 7206 a hardware router? David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: the alleged evils of NAT, was Rate of growth on IPv6 not fast enough?

2010-04-28 Thread David Barak
the latter. The end-to-end principle is grand, I agree - but there are lots of commercial considerations which I find have a higher priority for my customers. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: legacy /8

2010-04-03 Thread David Barak
it an improvement over IPv4 DHCP+DNS. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: NSP-SEC

2010-03-19 Thread David Barak
Total transparency in security matters works about as well as it would for law enforcement: fine for tactical concerns, but not so great for long-term strategic concerns. -David Barak On Fri Mar 19th, 2010 9:44 AM EDT William Pitcock wrote: On Fri, 2010-03-19 at 08:31 -0500, John Kristoff

RE: NSP-SEC

2010-03-19 Thread David Barak
investigation in mind, but your point is well taken. I think we agree that some things benefit from increased transparency and other things don't. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Using /126 for IPv6 router links

2010-01-28 Thread David Barak
, one of the reasons why some of us didn't like the ultra-mega-mega ranges used to address handfuls of hosts, but that ship sailed long ago.  David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Strange Cisco 6503 problem

2010-01-28 Thread David Barak
they are expecting 9600.   David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Using /126 for IPv6 router links

2010-01-26 Thread David Barak
surprising consequences (hence this thread). David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: IGMP and PIM protection

2009-12-23 Thread David Barak
to provide secure connections. I believe GDOI is esp-only. Cisco's term for GDOI is GETVPN. -David Barak On Wed Dec 23rd, 2009 7:26 AM EST Peter Hicks wrote: Glen Kent wrote: Any idea if folks use AH or ESP to protect IGMP/PIM packets? Wondering that if they do, then how would snooping switches work

Re: [NANOG] Roport on internet business

2009-12-23 Thread David Barak
shouldn't be moving toward a large-scale fiber rollout - far from it! I just wanted to provide a reason why they might not want to do said rollout in a piecemeal fashion. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: AH is pretty useless and perhaps should be deprecated

2009-11-16 Thread David Barak
+1. I know of a network whose owners are far more worried about a replay attack than about data being revealed to the outside world. They need to verify the provenance of data (i. e. Make sure that it hasn#39;t bee Natted), and AH is a simple way to do these precise things. -David Barak

Re: AH is pretty useless and perhaps should be deprecated

2009-11-14 Thread David Barak
of the production IPSec implementations.  Why the hate? David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: {SPAM?} Re: IPv6 Deployment for the LAN

2009-10-22 Thread David Barak
management should not be considered a feature. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: IPv6 Deployment for the LAN

2009-10-21 Thread David Barak
. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: ISP customer assignments

2009-10-05 Thread David Barak
to be with us for quite a while, so they#39;re worth getting used to. -David Barak David Andersen wrote: On Oct 5, 2009, at 7:50 PM, Michael Thomas wrote: I'm perplexed. At what size address would people stop worrying about the finite address space? 256 bits? 1024 bits? I just don't get

Re: FCCs RFC for the Definition of Broadband

2009-08-28 Thread David Barak
to all of the neighborhoods of Washington DC (http://www.bizjournals.com/washington/stories/2008/11/24/daily8.html). I am envious of many of my suburban-dwelling coworkers and friends who already have it. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

RE: Point to Point Ethernet

2009-07-08 Thread David Barak
Do you think this is useful? Maybe vendors will hear me/us. -- Andre We also need functional remote loop testing, of the remote hands guy plugs in a loopback plug or I send remote-triggered loop type. David Barak Need Geek Rock? Try The Franchise: http

Re: [Nanog-futures] modest proposal for moderation

2009-06-10 Thread David Barak
, and am not motivated to change them drastically) -David Barak Patrick W. Gilmore wrote: On Jun 9, 2009, at 8:58 PM, Randy Bush wrote: Note: topic in the presentation room, not topic at the hotel bar ;-) ... which clearly means that you've missed where the real discussions happen. and only

Re: Fiber cut - response in seconds?

2009-06-02 Thread David Barak
offices of lots of folks who would care deeply about such matters. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com --- On Tue, 6/2/09, Charles Wyble char...@thewybles.com wrote: From: Charles Wyble char...@thewybles.com Subject: Re: Fiber cut - response

Re: Fiber cut - response in seconds?

2009-06-02 Thread David Barak
--- On Tue, 6/2/09, Charles Wyble char...@thewybles.com wrote: David Barak wrote: Encryption is insufficient - if you let someone have physical access for a long enough period, they'll eventually crack anything. Really? I don't think so. I imagine it would be much more dependent

RE: Fiber cut in SF area

2009-04-13 Thread David Barak
that a failure may be coming, probably by a matter of minutes. In the words of Randy Bush, I encourage my competitors to do this. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com 1) http://www.att.com/gen/press-room?pid=4800cdvn=newsnewsarticleid=26554 2) http

Re: switch speed question

2009-02-25 Thread David Barak
consume a lot more resources than the input rate of the port. -David Barak Tom Storey wrote: Not every bit in results in just one bit out. Broadcast, multicast, flooding for unknown MACs (or switching failures), ... They were talking about a simple scenario where a bit that enters a port

Re: IPv6 Confusion

2009-02-18 Thread David Barak
If the IPv6 solutions are not going to be #39;better#39; than v4, how about simply making sure that they are #39;as good as#39; ipv4? Right now, I#39;d be hard pressed to think of a v6 function which is #39;better#39; and I can think of a lot which are #39;not as good as.#39; -David Barak

Re: Anyone notice strange announcements for 174.128.31.0/24

2009-01-13 Thread David Barak
manipulating this particular BGP attribute in this particular way is so bad? Organizations do filtering and routing manipulation all over the place. Is there something worse about doing it this way than others? David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: Anyone notice strange announcements for 174.128.31.0/24

2009-01-13 Thread David Barak
lessons... David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re:

2009-01-12 Thread David Barak
Collaborate Listen http://xkcd.com/210/ David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com --- On Mon, 1/12/09, Nathan Malynn ne...@nerdramblingz.com wrote: From: Nathan Malynn ne...@nerdramblingz.com Subject: Re: To: Aaron Imbrock aimbr...@gmail.com Cc

Re: Ethical DDoS drone network

2009-01-06 Thread David Barak
--- On Tue, 1/6/09, Justin Shore jus...@justinshore.com wrote: David Barak wrote: Consider for a moment a large retail chain, with several hundred or a couple thousand locations. How big a lab should they have before deciding to roll out a new network something-or-other? Should their lab

RE: Ethical DDoS drone network

2009-01-05 Thread David Barak
once you experience the failure* and then go figure out why it broke when it did. This is a lot more pleasant than trying to figure it out at 2:30 in the morning with insufficient coffee. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com --- On Mon, 1/5/09

Re: Ethical DDoS drone network

2009-01-05 Thread David Barak
-- On Mon, 1/5/09, Roland Dobbins rdobb...@cisco.com wrote: From: Roland Dobbins rdobb...@cisco.com Subject: Re: Ethical DDoS drone network To: NANOG list na...@merit.edu Date: Monday, January 5, 2009, 6:39 PM On Jan 6, 2009, at 7:23 AM, David Barak wrote: In my opinion, the real thing

Re: Public shaming list for ISPs announcing other ISPs IP space by mistake

2008-08-17 Thread David Barak
for the maintainer object? This is what the human at most db-admin aliases is for. I know that we staff humans behind our alias to respond to such queries. Or this points to the utility of creating your own internal RRd server, and peering with the public IRRs. David Barak Need

Re: [Nanog-futures] The Peering BOF and the Fallout?

2008-02-27 Thread David Barak
of this nature would be harder than performing said review. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com Be a better friend, newshound, and know-it-all with Yahoo

Re: [Nanog-futures] level of fail [was: The Peering BOF and the Fallout?]

2008-02-25 Thread David Barak
to state for the record that I do NOT want oversight of the bof, the very spontaneity is what brings out the true value for me This is the most violent agreement I've ever seen. David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com

Re: [Nanog-futures] Program: proposed late start for NANOG SJC

2007-11-28 Thread David Barak
hat type=none I think it's an excellent idea. 9AM = bleary-eyed. /hat David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com Get easy, one-click access to your favorites

Re: IPv6 DNS

2007-06-30 Thread David Barak
. I'm waiting for the running code. -David Barak David Barak Need Geek Rock? Try The Franchise: http://www.listentothefranchise.com Looking for earth-friendly autos? Browse Top Cars by Green Rating at Yahoo

Re: AUP modification - full first and last names

2007-06-15 Thread David Barak
--- Cat Okita [EMAIL PROTECTED] wrote: On Fri, 15 Jun 2007, David Barak wrote: I don't think the corner cases (people who get stalked, people who only have one name, etc) invalidate the general value of requiring that postings to a list ostensibly devoted to professional matters