Re: Standard for BGP community lists

2010-07-19 Thread Brad Fleming
I don't know about anyone else, but I use: : for local rtbh : for local + remote rtbh Basically, whether I should blockhole the traffic to a capture box on my network for user analysis -OR- whether I should blackhole within my network AND make a best effort to blackhole within

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Jeroen van Aart
Larry Sheldon wrote: ..in other news (that seems to have attracted little attention)... http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html 73000 Internet "sites" where shutdown by somebody, for something. "BurstNet, the Web-hosting company, informed Blogetery's operator that se

While we worry about Vyatta and Bras.....

2010-07-19 Thread Nathan Eisenberg
> >> The single host/box had bomb making info and hit lists. Yeah, I'd > >> shut it down too if it was on my network. > >> > >> Joe Hamelin, W7COM, Tulalip, WA, 360-474-7474 > > > > As would any reasonable operator. > > Or maybe it would have been better to not destroy a known source, and > wor

Re: NANOG Digest, Vol 30, Issue 50

2010-07-19 Thread jim deleskie
This tread is starting to sound less and less operational, or maybe I'm just old and jaded and its to out to care. You wonder if maybe his legal dept or own moral views felt its wasn't worth the risk of some joker doing something "BAD" with the info so that the FBI could get involved. On Mon, J

Re: NANOG Digest, Vol 30, Issue 50

2010-07-19 Thread James Downs
On Jul 19, 2010, at 4:08 PM, Nathan Eisenberg wrote: The single host/box had bomb making info and hit lists. Yeah, I'd shut it down too if it was on my network. Joe Hamelin, W7COM, Tulalip, WA, 360-474-7474 As would any reasonable operator. Or maybe it would have been better to not destro

RE: NANOG Digest, Vol 30, Issue 50

2010-07-19 Thread Nathan Eisenberg
> > ..in other news (that seems to have attracted little attention)... > > > > http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html > > > > 73000 Internet "sites" where shutdown by somebody, for something. > > > http://yro.slashdot.org/story/10/07/19/2052202/Blogetery-Shutdown-Due- >

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Larry Sheldon
On 7/19/2010 17:36, Marshall Eubanks wrote: > None of this is going to help configure any routers. Yeah. We gotta configure routers. Why do I keep hearing a phone ring and ring and ring?

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Joe Hamelin
On Mon, Jul 19, 2010 at 3:25 PM, Larry Sheldon wrote: > Seems like somebody would know who ordered it. And were all 73000 > "sites" about making bombs? >From TFA it was the FBI and it was one box with no back-ups. The hosting company decided to do the adult thing and pull the plug. 73k 'sites

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Marshall Eubanks
On Jul 19, 2010, at 6:25 PM, Larry Sheldon wrote: On 7/19/2010 17:21, Joe Hamelin wrote: On Mon, Jul 19, 2010 at 3:15 PM, Larry Sheldon wrote: ..in other news (that seems to have attracted little attention)... http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html 73000 Internet

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Larry Sheldon
On 7/19/2010 17:21, Joe Hamelin wrote: > On Mon, Jul 19, 2010 at 3:15 PM, Larry Sheldon wrote: >> ..in other news (that seems to have attracted little attention)... >> >> http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html >> >> 73000 Internet "sites" where shutdown by somebody, for s

Re: While we worry about Vyatta and Bras.....

2010-07-19 Thread Joe Hamelin
On Mon, Jul 19, 2010 at 3:15 PM, Larry Sheldon wrote: > ..in other news (that seems to have attracted little attention)... > > http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html > > 73000 Internet "sites" where shutdown by somebody, for something. http://yro.slashdot.org/story/10/0

While we worry about Vyatta and Bras.....

2010-07-19 Thread Larry Sheldon
..in other news (that seems to have attracted little attention)... http://www.moonbattery.com/archives/2010/07/73000-blogs-shu.html 73000 Internet "sites" where shutdown by somebody, for something. -- Somebody should have said: A democracy is two wolves and a lamb voting on what to have for dinn

RE: Vyatta as a BRAS

2010-07-19 Thread Akyol, Bora A
Except that the goal you set below is very very hard to do on a software router unless its CPU has packet classification properties implemented in HW. In some systems, just the act of receiving the packet in the ISR and classifying it into a bucket is enough to overwhelm the system without prop

Whois-RWS Released 17 July 2010

2010-07-19 Thread Mark Kosters
- Forwarded message from Member Services - From: Member Services Date: Mon, 19 Jul 2010 13:27:32 -0400 To: "arin-annou...@arin.net" Subject: [arin-announce] Whois-RWS Released 17 July 2010 ARIN is pleased to announce the release of Whois-RWS. ARIN's Whois RESTful Web Service (Whois-

replacement SSG550 Firmware Image

2010-07-19 Thread todd glassey
I just inherited a 550 from our old stash of Juniper and find that someone corrupted the flash image. Anyone know where there is a replacement image online? - contact me off list please. Todd Glassey

Re: On another security note... (of sorts)

2010-07-19 Thread William Allen Simpson
On 7/19/10 10:21 AM, valdis.kletni...@vt.edu wrote: ... my credit card is declined and flagged (I find out later) by my bank's anti-fraud group because it's being used 3 states away from where it's usually used. ... Or in my recent case, I used my card multiple times in California in April, and

Re: On another security note... (of sorts)

2010-07-19 Thread Valdis . Kletnieks
On Mon, 19 Jul 2010 08:06:08 EDT, "J. Oquendo" said: > Maybe naivete on my part, but I don't see how customers would have > issues if the scenario/framework was concisely explained. It's one thing to be sitting in my office rationally discussing what my bank does to prevent credit card fraud, and

Re: On another security note... (of sorts)

2010-07-19 Thread Eric Brunner-Williams
On 7/16/10 11:17 PM, Dobbins, Roland wrote: The thorniest issues aren't technology-related, per se; they're legal exposure (both real and imagined), regulatory concerns (both real and imagined), antitrust concerns (both real and imagined), management/marketing/PR concerns (largely imagined),

Re: On another security note... (of sorts)

2010-07-19 Thread Dobbins, Roland
On Jul 19, 2010, at 8:06 PM, J. Oquendo wrote: > Here is a semi-universal solution... Throw an N-Byte field into the TCP > protocol and label it "dirty" the dirty bit. ;> --- Roland Dobbin

Re: On another security note... (of sorts)

2010-07-19 Thread J. Oquendo
Dobbins, Roland wrote: > > The thorniest issues aren't technology-related, per se; they're legal exposure (both real and imagined), regulatory concerns (both real and imagined), antitrust concerns (both real and imagined), management/marketing/PR concerns (largely imagined), skillset shortages/con

Re: Vyatta as a BRAS

2010-07-19 Thread Mark Smith
On Sun, 18 Jul 2010 21:07:36 -0400 Tim Durack wrote: > On Sun, Jul 18, 2010 at 8:01 PM, Brett Frankenberger > wrote: > > On Mon, Jul 19, 2010 at 07:13:46AM +0930, Mark Smith wrote: > >> > >> This document supports that. If the definition of a software router is > >> one that doesn't have a fixed

Re: virtual switches

2010-07-19 Thread Oleg Albegov
BTW, with VSS you can only combine 2 switches. 2010/7/16 Greg Whynott > Cisco has VSS (on 6500 class) and H3C has IRF; allowing you to virtualize > 2 or more physical switches/routers in an active/active configuration where > you can use all links and terminate LACP aggregates between the two