Re: Wired access to SMS?

2012-10-09 Thread shawn wilson
Huh, you'd think they'd have mvno contracts just for this ...? On Oct 9, 2012 6:19 PM, William Herrin b...@herrin.us wrote: On Tue, Oct 9, 2012 at 6:13 PM, Ray Van Dolson rvandol...@esri.com wrote: On Tue, Oct 09, 2012 at 03:35:37PM -0400, William Herrin wrote: Alternately, I can also

Re: best way to create entropy?

2012-10-11 Thread shawn wilson
On Fri, Oct 12, 2012 at 12:49 AM, Robert M. Enger na...@enger.us wrote: On 10/11/2012 5:08 PM, Jonathan Lassoff wrote: On Thu, Oct 11, 2012 at 5:01 PM, shawn wilson ag4ve...@gmail.com wrote: in the past, i've done many different things to create entropy - encode videos, watch youtube

Re: best way to create entropy?

2012-10-11 Thread shawn wilson
On Fri, Oct 12, 2012 at 12:08 AM, Jonathan Lassoff j...@thejof.com wrote: On Thu, Oct 11, 2012 at 5:01 PM, shawn wilson ag4ve...@gmail.com wrote: in the past, i've done many different things to create entropy - encode videos, watch youtube, tcpdump -vvv /dev/null, compiled a kernel. but, what

Re: best way to create entropy?

2012-10-13 Thread shawn wilson
wrote: On 10/11/12 17:08 -0700, Jonathan Lassoff wrote: On Thu, Oct 11, 2012 at 5:01 PM, shawn wilson ag4ve...@gmail.com wrote: in the past, i've done many different things to create entropy - encode videos, watch youtube, tcpdump -vvv /dev/null, compiled a kernel. but, what is best? just

Re: CLI Roadmap

2012-10-14 Thread shawn wilson
On Sun, Oct 14, 2012 at 5:55 PM, Rodrick Brown rodrick.br...@gmail.com wrote: On Oct 14, 2012, at 1:42 PM, Kasper Adel karim.a...@gmail.com wrote: Hello, I have never used any CLI other than Cisco so i am curious what useful and creative knobs and bolts are available for other network

Re: New York Crews?

2012-10-31 Thread shawn wilson
On Tue, Oct 30, 2012 at 9:00 PM, Justin Wilson li...@mtin.net wrote: Just wondering if anyone knew of any resources, groups, contacts. I would also be interested in this (figured I'd comment in case someone wanted to keep this off list)

Re: Google burp

2012-10-31 Thread shawn wilson
On Wed, Oct 31, 2012 at 10:35 PM, Jeremy stealth...@gmail.com wrote: I had my service go down and come back and when it came back i have the new reply/compose features of the new gmail system

Re: Google burp

2012-10-31 Thread shawn wilson
On Thu, Nov 1, 2012 at 12:03 AM, Bacon Zombie baconzom...@gmail.com wrote: And if you are a Chrome user have a look at Vimium [1] [1] http://vimium.github.com/ looks promising: i enter insert mode -- all commands will be ignored until you hit esc to exit i might be able to handle this

Re: ICMP Redirect on Resolvers

2013-04-06 Thread shawn wilson
On Apr 6, 2013 3:13 AM, Jimmy Hess mysi...@gmail.com wrote: Failing all that, if the LANs are large, and a large number of ICMP redirects would occur, it may be preferrable to turn ICMP redirects off for those LANs on their routers What would break if u dropped all ICMP packets with

Re: IPv6 and HTTPS

2013-04-25 Thread shawn wilson
On Apr 26, 2013 12:29 AM, Patrick W. Gilmore patr...@ianai.net wrote: On Apr 26, 2013, at 00:19 , joel jaeggli joe...@bogus.com wrote: On 4/25/13 6:24 PM, Jay Ashworth wrote: Ok, here's a stupid question[1], which I'd know the answer to if I ran bigger networks: Does anyone know how

Re: IPv6 and HTTPS

2013-04-26 Thread shawn wilson
There's ways around it for most software but old jetdirect stuff, switches, routers, ip control systems. Things are going to be 6to4 for a while. In fact I won't be surprised to see little hardware boxes that do it for $30 or so (probably late with this idea but have no need to know). On Apr 27,

Re: Google Public DNS Problems?

2013-05-01 Thread shawn wilson
On May 1, 2013 5:09 PM, Christopher Morrow morrowc.li...@gmail.com wrote: On Wed, May 1, 2013 at 4:14 PM, Yang Yu yang.yu.l...@gmail.com wrote: It is very courteous to reply a SERVFAIL for requests being rate limited. I believe the 'rate-limit' response is actually 'no response' ...

RE: Data Center Installations

2013-05-01 Thread shawn wilson
I'm more impressed with MicroCenter than Frys (at least the Frys south if SF). If you need RF I used to order from Davis RF all the time. On May 2, 2013 12:57 AM, Ryan Finnesey r...@finnesey.com wrote: Wish there was Frys in the east -Original Message- From: George Herbert

Fwd: Re: F-ckin Leap Seconds, how do they work?

2012-07-03 Thread shawn wilson
-- Forwarded message -- From: shawn wilson ag4ve...@gmail.com Date: Jul 3, 2012 11:33 AM Subject: Re: F-ckin Leap Seconds, how do they work? To: Joel jaeggli joe...@bogus.com I agree with TAI. Epoch is supposed to be an unsigned long int starting ~1970 (there are are 4 epochs iirc

Re: U.S. spy agencies ... email for cybersecurity

2012-07-10 Thread shawn wilson
On Mon, Jul 9, 2012 at 11:22 PM, Christopher Morrow morrowc.li...@gmail.com wrote: But to help protect the private sector, he said it was important that the intelligence agency be able to inform them about the type of malicious translated: Hey, what if we could tell our private sector

*spam* Fwd: U.S. spy agencies ... email for cybersecurity

2012-07-10 Thread shawn wilson
in front of him. Oh, god. I need them soo bad. Jen would kill me, but I need some sex son! -- Shawn Wilson 703-517-1201

Re: *spam* Fwd: U.S. spy agencies ... email for cybersecurity

2012-07-10 Thread shawn wilson
On Tue, Jul 10, 2012 at 12:16 PM, John Peach john-na...@johnpeach.com wrote: On Tue, 10 Jul 2012 12:05:36 -0400 shawn wilson ag4ve...@gmail.com wrote: can some op filter this asshole? Please stop forwarding the whole message; I'd already dropped him in my procmail rules. *shrug

Re: Admin? Bueller?

2012-07-10 Thread shawn wilson
On Tue, Jul 10, 2012 at 1:22 PM, Christopher Morrow morrowc.li...@gmail.com wrote: the admins of the nanog-list could certainly take action though. the reason for my email is that it was the second ot type email in a week and i was hoping someone could clarify what the moderators will and

Re: US House to ITU: Hands off the Internet

2012-08-04 Thread shawn wilson
On Sat, Aug 4, 2012 at 1:29 PM, Nick Hilliard n...@foobar.org wrote: On 04/08/2012 16:55, Justin M. Streiner wrote: On Sat, 4 Aug 2012, Jimmy Hess wrote: it is the consistent and unequivocal policy of the United States to promote a global Internet free from government control. Now if they

voip network hopping

2012-08-10 Thread shawn wilson
i'm curious if there is any spec in the voip protocol suite that allows one to maintain a call while changing networks? what i want to do is setup a softphone on an android phone. however, this won't work very well if i can't switch from wifi - 3g - wifi (i doubt wifi - wifi is possible because

Re: voip network hopping

2012-08-10 Thread shawn wilson
On Fri, Aug 10, 2012 at 3:28 PM, Andrew Latham lath...@gmail.com wrote: On Fri, Aug 10, 2012 at 3:18 PM, shawn wilson ag4ve...@gmail.com wrote: i'm curious if there is any spec in the voip protocol suite that allows one to maintain a call while changing networks? what i want to do is setup

Re: NANOG poll: favorite cable labeler?

2012-08-21 Thread shawn wilson
printers always pissed me off when labeling tons of cables. i always preferred those little plastic things that you clip on them. if you want to be pro about it, i guess you can have something that is printed and sticks to it, but i always just used a sharpie on them (most of the time, the sharpie

bind verbose logging

2013-05-09 Thread shawn wilson
In this log line, what is -EDC? I've also noticed +, -, -E, and -ED but I have no Idea what they are (called/represent). 08-May-2013 08:04:49.751 client 1.2.3.4#48747 (ns2.example.com): query: ns2.example.com IN -EDC (1.2.3.4) Also, I'm writing a parser and we're only loging 'queries' but

Re: bind verbose logging

2013-05-09 Thread shawn wilson
Thanks, that's what I'm looking for. Mike, sure I wouldn't mind schema ideas. On Thu, May 9, 2013 at 10:56 PM, staticsafe m...@staticsafe.ca wrote: On 5/9/2013 22:52, shawn wilson wrote: In this log line, what is -EDC? I've also noticed +, -, -E, and -ED but I have no Idea what

Re: bind verbose logging

2013-05-09 Thread shawn wilson
. Thought about Splunk, then Graylog2, then LogStash. Now I'm just thinking of continuing by hand and getting ElasticSearch going (got a perl Storable going right now). But alternative thinking is always useful so... On Thu, May 9, 2013 at 8:14 PM, shawn wilson ag4ve...@gmail.com wrote: Thanks

Re: Looking for Netflow analysis package

2013-05-14 Thread shawn wilson
Not exactly netflow until you set it up as such buy, Graylog2 and LogStash are OSS. Also, I'll probably be releasing modules and a simple evented (POE) program in perl soon (don't wait up if you can't deal with code - it ain't and ain't going to be a web app but a simple framework mainly for the

Geoip lookup

2013-05-23 Thread shawn wilson
What's the best way to find the networks in a country? I was thinking of writing some perl with Net::Whois::ARIN or some such module and loop through the block. But I think I'll have to be smarter than just a simple loop not to get blocked and I figure I'm not the first to want to do this. I've

Re: Geoip lookup

2013-05-23 Thread shawn wilson
On Thu, May 23, 2013 at 4:32 PM, Joe Abley jab...@hopcount.ca wrote: On 2013-05-23, at 15:47, shawn wilson ag4ve...@gmail.com wrote: What's the best way to find the networks in a country? I was thinking of writing some perl with Net::Whois::ARIN or some such module and loop through the block

Re: Geoip lookup

2013-05-23 Thread shawn wilson
On Thu, May 23, 2013 at 4:40 PM, shawn wilson ag4ve...@gmail.com wrote: On Thu, May 23, 2013 at 4:32 PM, Joe Abley jab...@hopcount.ca wrote: On 2013-05-23, at 15:47, shawn wilson ag4ve...@gmail.com wrote: ftp://ftp.apnic.net/public/apnic/stats/apnic/ ftp://ftp.ripe.net/ripe/dbase

Re: Geoip lookup

2013-05-23 Thread shawn wilson
On Thu, May 23, 2013 at 5:36 PM, Joe Abley jab...@hopcount.ca wrote: On 2013-05-23, at 16:56, shawn wilson ag4ve...@gmail.com wrote: It looks you're right and everyone does have the same data in historical format. Looks like RIPE has everything compiled into what is current. So if a block

Re: Geoip lookup

2013-05-24 Thread shawn wilson
I knew this would come up. Actually I'm surprised and glad it waited until I got a solution first. I'll address a few points: - this is mainly to stop stupid things from sending packets from countries we will probably never want to do business with (I'm looking mainly at that big country under

Re: Geoip lookup

2013-05-25 Thread shawn wilson
If anyone is interrested, here's a little Perl CLI util to lookup what countries registered networks within a block. There's no documentation yet, it's a .pl where it should probably be a command with a makefile installer, and Net::CIDR overlaps Net::IP. At any rate, hopefully it is useful to

Re: PRISM: NSA/FBI Internet data mining project

2013-06-06 Thread shawn wilson
On Jun 6, 2013 9:30 PM, Jeff Kell jeff-k...@utc.edu wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 6/6/2013 9:22 PM, valdis.kletni...@vt.edu wrote: On Thu, 06 Jun 2013 21:12:35 -0400, Robert Mathews (OSIA) said: On 6/6/2013 7:35 PM, Jay Ashworth wrote: [ . ] Happily,

Re: chargen is the new DDoS tool?

2013-06-12 Thread shawn wilson
This is basically untrue. I can deal with a good rant as long as there's some value in it. As it is (I'm sorta sorry) I picked this apart. On Jun 12, 2013 12:04 AM, Ricky Beam jfb...@gmail.com wrote: On Tue, 11 Jun 2013 22:55:12 -0400, valdis.kletni...@vt.edu wrote: But seriously, how do

Re: chargen is the new DDoS tool?

2013-06-12 Thread shawn wilson
On Wed, Jun 12, 2013 at 4:51 AM, Jimmy Hess mysi...@gmail.com wrote: On 6/12/13, shawn wilson ag4ve...@gmail.com wrote: The scope is constantly changing. Not really. The old tricks are the best tricks. And when a default install By best, you must mean effective against the greatest number

Re: chargen is the new DDoS tool?

2013-06-12 Thread shawn wilson
On Wed, Jun 12, 2013 at 7:14 AM, Aaron Glenn aaron.gl...@gmail.com wrote: On Wed, Jun 12, 2013 at 11:17 AM, shawn wilson ag4ve...@gmail.com wrote: Banks and insurance companies supposedly have some interesting actuarial data on this. Do you know of any publicly available sources? I don't

Re: chargen is the new DDoS tool?

2013-06-12 Thread shawn wilson
Getting back to the topic. I just saw quite a few of our hosts scanned for this by 192.111.155.106 which doesn't say much on its own as http://dacentec.com/ is a hosting company. On Tue, Jun 11, 2013 at 11:27 PM, Ricky Beam jfb...@gmail.com wrote: On Tue, 11 Jun 2013 22:52:52 -0400, Jimmy Hess

Re: Blocking TCP flows?

2013-06-13 Thread shawn wilson
Johnathan is correct about not using perl for this. There are some iptables modules, but they're all out of date or incomplete (I mention this because if you get around to making them work decent, I'll love you for it). Otherwise, perl - IPC::Run - ipt isn't going to gain you anything. And I'd be

Re: This is a coordinated hacking. (Was Re: Need help in flushing DNS)

2013-06-20 Thread shawn wilson
I think ICANN would have to add a delay in where a request was sent out to make sure everyone was on the same page and then what happens the couple thousand (more) times a day that someone isn't updated or is misconfigured? I think Netsol should be fined. Maybe even a class action suite filed

Re: /25's prefixes announced into global routing table?

2013-06-22 Thread shawn wilson
RFC 3587 - IPv6 Global Unicast Address Format On Jun 22, 2013 6:50 AM, John Curran jcur...@istaff.org wrote: On Jun 22, 2013, at 1:45 AM, Owen DeLong o...@delong.com wrote: Yes… It will probably settle out somewhere around 100-125K routes. Owen - Can you elaborate some on this estimate?

PDU recommendations

2013-06-23 Thread shawn wilson
We currently use Triplite stuff but they've got an issue where after a few minutes, they stop accepting new tcp connections. We're adding a new 30A circuit and I'm thinking of going with APC (ran them in the past and never had any issues). However, I figured I'd see if there was a better brand /

RE: PDU recommendations

2013-06-23 Thread shawn wilson
or TrippLite. -Petter From: trit...@cox.net [trit...@cox.net] Sent: Sunday, June 23, 2013 12:05 PM To: shawn wilson; North American Network Operators Group Subject: Re: PDU recommendations APC is solid. Their newer line can provide outlet metering

Re: PDU recommendations

2013-06-23 Thread shawn wilson
So, that's not a very good endorsement :) Idk why you'd use a fuse in a PDU. The management interface can be rebooted without taking anything down on the TrippLite but it's at a colo and it *shouldn't* time out like it does. I think of this like a vehicle computer - if it goes down, you might

Re: PDU recommendations

2013-06-24 Thread shawn wilson
, Måns Nilsson mansa...@besserwisser.org wrote: Subject: Re: PDU recommendations Date: Sun, Jun 23, 2013 at 09:32:00PM -0400 Quoting shawn wilson (ag4ve...@gmail.com): So, that's not a very good endorsement :) Idk why you'd use a fuse in a PDU. MCB units age. Especially with vibration

Re: Google's QUIC

2013-06-28 Thread shawn wilson
On Jun 29, 2013 12:23 AM, Christopher Morrow morrowc.li...@gmail.com wrote: On Fri, Jun 28, 2013 at 10:12 PM, Octavio Alvarez alvar...@alvarezp.ods.org wrote: On Fri, 28 Jun 2013 17:20:21 -0700, Christopher Morrow morrowc.li...@gmail.com wrote: Runs in top of UDP... Is not UDP...

Re: One of our own in the Guardian.

2013-07-14 Thread shawn wilson
Well, I think Google has the right idea with providing Internet by floating balloons. And the way that cell phone tech has been improving, we might all have 10G in... 10 years or so? If Google is providing it, it'll be monitored by our government but hey, we'll have enough bandwidth to hang

Re: One of our own in the Guardian.

2013-07-14 Thread shawn wilson
You're on a continent with the second least amount of light pollution of all of the continents on earth (iirc) and are somehow surprised about bad net access? I would question the wisdom of planning a tech conference there, but not the facility itself. On Sun, Jul 14, 2013 at 4:16 AM, David

Re: One of our own in the Guardian.

2013-07-14 Thread shawn wilson
On Jul 14, 2013 5:36 AM, Bill Woodcock wo...@pch.net wrote: On Jul 14, 2013, at 2:12 AM, shawn wilson ag4ve...@gmail.com wrote: You're on a continent with the second least amount of light pollution of all of the continents on earth (iirc) and are somehow surprised about bad net access? I

Re: CableWiFi SSID in Washington DC?

2013-08-26 Thread Shawn Wilson
There are indeed FreePublicWiFi nodes in some areas like Dupont Circle but it's not very convenient most of the time (signal strength or speed issues). IIRC there's a Commotion mesh around Columbia Heights which should be much faster. Personally, I just use a Mifi and never have any issues.

Re: Parsing Syslog and Acting on it, using other input too

2013-08-30 Thread Shawn Wilson
Christopher Morrow morrowc.li...@gmail.com wrote: On Thu, Aug 29, 2013 at 10:50 AM, Don Wilder don.wil...@gmail.com wrote: I wrote a script in Linux that watches for unauthorized login attempts and adds the ip address to the blocked list in my firewall. You might want to search sourceforge

Re: Parsing Syslog and Acting on it, using other input too

2013-08-30 Thread shawn wilson
Morrow morrowc.li...@gmail.com wrote: On Fri, Aug 30, 2013 at 8:55 AM, Shawn Wilson ag4ve...@gmail.com wrote: Christopher Morrow morrowc.li...@gmail.com wrote: On Thu, Aug 29, 2013 at 10:50 AM, Don Wilder don.wil...@gmail.com wrote: I wrote a script in Linux that watches for unauthorized

Re: Bandwidth for a weekend @ Gaylord National Harbor, DC metro area

2013-09-17 Thread shawn wilson
I'm not sure of te topology around there, but you can get these 2.4Ghz dishes for *cheap* (I got one at a hamfest for $20 - spent as much on the rp-sma converter cost almost as much). If someone (or a colo) is near there, you might convince them to put up the same thing and work with that. I think

Re: The Making of a Router

2013-12-26 Thread Shawn Wilson
Totally agree that a routing box should be standalone for tons of reasons. Even separating network routing and call routing. It used to be that BSD's network stack was much better than Linux's under load. I'm not sure if this is still the case - I've never been put in the situation where the

Re: The Making of a Router

2013-12-27 Thread shawn wilson
On Fri, Dec 27, 2013 at 1:33 AM, valdis.kletni...@vt.edu wrote: On Thu, 26 Dec 2013 11:16:53 -0800, Seth Mattinen said: On 12/26/13, 9:24, Andrew D Kirch wrote: If he can afford a 10G link... he should be buying real gear... I mean, look, I've got plenty of infrastructure horror stories,

Re: The Making of a Router

2013-12-27 Thread Shawn Wilson
This has gotten a bit ridiculous. I was hoping someone could give technical insight into why this is good or not and not just buy a box branded as a router because I said so or your business will fail. I'm all for hearing about the business theory of running an ISP (not my background or day

Re: The Making of a Router

2013-12-28 Thread Shawn Wilson
Chris Adams c...@cmadams.net wrote: Once upon a time, Shawn Wilson ag4ve...@gmail.com said: I was hoping someone could give technical insight into why this is good or not and not just buy a box branded as a router because I said so or your business will fail. I'm all for hearing about

Re: NSA able to compromise Cisco, Juniper, Huawei switches

2013-12-30 Thread Shawn Wilson
Saku Ytti s...@ytti.fi wrote: On (2013-12-30 20:30 +1100), sten rulz wrote: I really think we're doing disservice to an issue which might be at scale of human-rights issue, by spamming media with 0 data news. Where is this backdoor? How does it work? How can I recreate on my devices? I don't

Re: NSA able to compromise Cisco, Juniper, Huawei switches

2013-12-30 Thread shawn wilson
On Mon, Dec 30, 2013 at 8:07 AM, Ray Soucy r...@maine.edu wrote: I hope Cisco, Juniper, and others respond quickly with updated images for all platforms affected before the details leak. So, if this plays out nice (if true, it won't), the fix will come months before the disclosure. Think, if

Re: NSA able to compromise Cisco, Juniper, Huawei switches

2013-12-30 Thread shawn wilson
On Mon, Dec 30, 2013 at 1:17 PM, Lorell Hathcock lor...@hathcock.org wrote: NANOG: Here's the really scary question for me. Would it be possible for NSA-payload traffic that originates on our private networks that is destined for the NSA to go undetected by our IDS systems? Yup.

Re: NSA able to compromise Cisco, Juniper, Huawei switches

2013-12-31 Thread shawn wilson
On Tue, Dec 31, 2013 at 8:05 AM, Ray Soucy r...@maine.edu wrote: This whole backdoor business is a very, very, dangerous game. While I agree with this (and the issues brought up with NSA's NIST approved PRNG that RSA used). If I were in their shoes, I would have been collecting every bit of

Re: verify currently running software on ram

2014-01-13 Thread shawn wilson
dd kmem and see if it's what you'd expect (size of ram+swap). If so you should be able to look at it Also see Volatility On Jan 13, 2014 7:21 AM, Tassos Chatzithomaoglou ach...@forthnet.gr wrote: Saku Ytti wrote on 13/1/2014 12:51: On (2014-01-13 12:46 +0200), Saku Ytti wrote: On

Re: verify currently running software on ram

2014-01-13 Thread shawn wilson
Doh, tired and not reading - the util should help after you get a dump though. On Jan 13, 2014 7:29 AM, shawn wilson ag4ve...@gmail.com wrote: dd kmem and see if it's what you'd expect (size of ram+swap). If so you should be able to look at it Also see Volatility On Jan 13, 2014 7:21 AM

Windows Update subnets

2014-01-16 Thread shawn wilson
Does anyone have a list of all of the ranges Microsoft uses for Windows Update? I've found domains but not a full list of subnets.

comcast business service

2014-02-20 Thread shawn wilson
A while ago I got Comcast's business service. Semi-idle connections are get dropped (I haven't really diagnosed this - I just no that it isn't the client or server but some network in between). However the second and most obvious issue is that intermittently, the service will grind to a halt: ---

Re: comcast business service

2014-02-20 Thread shawn wilson
from their warehouse. No more issues. -A On Thu, Feb 20, 2014 at 1:08 AM, shawn wilson ag4ve...@gmail.com wrote: A while ago I got Comcast's business service. Semi-idle connections are get dropped (I haven't really diagnosed this - I just no that it isn't the client or server but some

Re: How to catch a cracker in the US?

2014-03-12 Thread shawn wilson
On Mar 11, 2014 3:09 AM, Dobbins, Roland rdobb...@arbor.net wrote: On Mar 11, 2014, at 2:00 PM, Markus unive...@truemetal.org wrote: Any advice? Start with CERT-BUND, maybe? That is the correct answer, if you want something less settle (and possibly illegal), there were discussions on

Re: How to catch a cracker in the US?

2014-03-13 Thread shawn wilson
On Mar 13, 2014 7:37 PM, Larry Sheldon larryshel...@cox.net wrote: On 3/13/2014 8:22 AM, Sholes, Joshua wrote: On 3/13/14, 12:35 AM, shawn wilson ag4ve...@gmail.com wrote: A note on terminology - whether you know what you're doing, actually break into a system, or obtain a thumb drive

Re: How to catch a cracker in the US?

2014-03-17 Thread shawn wilson
On Mon, Mar 17, 2014 at 10:21 AM, Sholes, Joshua joshua_sho...@cable.comcast.com wrote: On 3/13/14, 7:35 PM, Larry Sheldon larryshel...@cox.net wrote: Not sure I can agree with that. I have been in this game for a very long time, but for most of it in places where the world's population cleaved

Re: CVE-2014-0160 mitigation using iptables

2014-04-10 Thread shawn wilson
On Thu, Apr 10, 2014 at 9:52 AM, valdis.kletni...@vt.edu wrote: On Wed, 09 Apr 2014 11:07:36 +0100, Fabien Bourdaire said: # Log rules iptables -t filter -A INPUT -p tcp --dport 443 -m u32 --u32 \ 52=0x1803:0x1803 -j LOG --log-prefix BLOCKED: HEARTBEAT That 52= isn't going to

Re: DNSSEC?

2014-04-12 Thread shawn wilson
But it doesn't really matter if you zero out freed memory. Maybe it'll prevent you from gaining some stale session info and the like. But even if that were the case, this would still be a serious bug - you're not going to reread your private key before encrypting each bit of data after all -

Re: ipmi access

2014-06-02 Thread shawn wilson
On Mon, Jun 2, 2014 at 8:26 AM, Randy Bush ra...@psg.com wrote: I use OpenVPN to access an Admin/sandboxed network with insecure portals, wiki, and ipmi. h. 'cept when it is the openvpn server's ipmi. but good hack. i may use it, as i already do openvpn. thanks. So, kinda the same

Re: ipmi access

2014-06-02 Thread shawn wilson
On Mon, Jun 2, 2014 at 10:14 AM, Jared Mauch ja...@puck.nether.net wrote: My IPMI (super micro) you can put v6 and v4 filters into for protecting the ip space from trusted sources. Has my home static ip ranges and a few intermediary ranges that I also have access to. Mmmm, and an ip has

Re: ipmi access

2014-06-02 Thread shawn wilson
iLo is a value add to HP. DRAC sucks (so I'd replace it and then Dell would have hardware under support with some unknown IPMI). Supermicro, Tyan, etc - idk. Really, it would be nice to have an open card that does this. Even if the card were limited to what you could do with DMA and some serial

Re: ipmi access

2014-06-02 Thread shawn wilson
On Mon, Jun 2, 2014 at 3:19 PM, Nikolay Shopik sho...@inblock.ru wrote: Java only used for mouting images. KVM is transfered via VNC protocol iirc. They're not re-inventing the wheel, but I think KVM is generally some VNC stream embedded in http(s) which VNC clients can't seem to understand

Re: ipmi access

2014-06-02 Thread shawn wilson
On Mon, Jun 2, 2014 at 7:42 PM, Jimmy Hess mysi...@gmail.com wrote: On Mon, Jun 2, 2014 at 8:21 AM, shawn wilson ag4ve...@gmail.com wrote: [snip] So, kinda the same idea - just put IPMI on another network and use ssh forwards to it. You can have multiple boxes connected in this fashion

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Oct 19, 2014 9:53 AM, Mike. the.li...@mgm51.com wrote: I'd rather see .gov (and by implication, .edu) usage phased out and replaced by country-specific domain names (e.g. fed.us). imo, the better way to fix an anachronism is not to bend the rules so the offenders are not so offensive,

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Mon, Oct 20, 2014 at 10:20 AM, valdis.kletni...@vt.edu wrote: On Mon, 20 Oct 2014 05:58:01 -0400, shawn wilson said: Bad idea. I'm betting we'd find half of gov web sites down due to not being able to reboot and issues in old coldfusion and IIS and the like (and needing to fix static

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Mon, Oct 20, 2014 at 10:52 AM, Stephen Satchell l...@satchell.net wrote: On 10/20/2014 07:20 AM, valdis.kletni...@vt.edu wrote: On Mon, 20 Oct 2014 05:58:01 -0400, shawn wilson said: Bad idea. I'm betting we'd find half of gov web sites down due to not being able to reboot and issues

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Mon, Oct 20, 2014 at 11:44 AM, valdis.kletni...@vt.edu wrote: On Mon, 20 Oct 2014 10:45:44 -0400, shawn wilson said: 3. I don't want to see the report on how many Allaire ColdFusion with NT 3.5 .gov sites are out there any other reasons not to do this? Maybe, but here's the real

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Mon, Oct 20, 2014 at 6:26 PM, Doug Barton do...@dougbarton.us wrote: 3. Set a target date for the removal of those TLDs for 10 years in the future Because this worked for IPv6? Obviously there are various implementation details for effecting the move, but application-layer stuff will be

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Oct 20, 2014 9:33 PM, Bill Woodcock wo...@pch.net wrote: On Oct 21, 2014, at 9:23 AM, Jared Mauch ja...@puck.nether.net wrote: Breaking tons of things is an interesting opinion of why not”. Eh. Off the top of my head, I see two categories of breakage: 1) things that hard-code a

Re: Why is .gov only for US government agencies?

2014-10-20 Thread shawn wilson
On Oct 20, 2014 11:54 PM, Doug Barton do...@dougbarton.us wrote: On 10/20/14 4:07 PM, shawn wilson wrote: Do we really have any prior examples that are even .1 the size of the usgov public system? Again, I'm not just referring to BIND and Windows DNS (and probably some Netware 4 etc stuff

Trying to identify hosts

2014-10-27 Thread shawn wilson
We get lots of probes from subdomains of southwestdoor.com and secureserver.net 's SOA and I'm curious who these guys are? The only web page I could find was southwestdoor redirects to http://www.arcadiacustoms.com and then to http://arcadia-custom.com/ (a hardware company is causing unwanted

Re: Trying to identify hosts

2014-10-27 Thread shawn wilson
. On Mon, Oct 27, 2014 at 11:57 AM, shawn wilson ag4ve...@gmail.com wrote: We get lots of probes from subdomains of southwestdoor.com and secureserver.net 's SOA and I'm curious who these guys are? The only web page I could find was southwestdoor redirects to http://www.arcadiacustoms.com

Re: Trying to identify hosts

2014-10-27 Thread shawn wilson
=Scottsdale/O=Starfield Technologies, Inc./CN=Starfield Root Certificate Authority - G2 i:/C=US/O=Starfield Technologies, Inc./OU=Starfield Class 2 Certification Authority --- On Mon, Oct 27, 2014 at 1:21 PM, shawn wilson ag4ve...@gmail.com wrote: Ok, got a few off list replies

Fwd: malware.watch rdns

2014-12-17 Thread shawn wilson
I asked on this on another list I'm on and didn't get any reply, so I figured I might have better luck here Anyone know what malware.watch. is doing? Below is basically everything I could find: http://www.robtex.net/en/advisory/dns/watch/malware/ssl-scanning-015/ They've got a web page, but

Re: whois server features

2015-01-07 Thread shawn wilson
On Wed, Jan 7, 2015 at 10:22 PM, John Levine jo...@iecc.com wrote: ARIN, APNIC, and RIPE have prototypes already that are a lot easier to script than the text WHOIS. Meaning the data structure is in place or they have a RDAP service up? If so, is it publicly accessible?

Re: whois server features

2015-01-07 Thread shawn wilson
On Wed, Jan 7, 2015 at 11:23 PM, John R. Levine jo...@iecc.com wrote: Google is your friend. Woops, you're right

Re: whois server features

2015-01-08 Thread shawn wilson
On Jan 8, 2015 4:23 AM, Franck Martin fmar...@linkedin.com wrote: On Jan 7, 2015, at 10:38 AM, shawn wilson ag4ve...@gmail.com wrote: Is there a list of NIC (and other popular whois server) features (what can be searched on) and what data they provide (and what title they give

Re: Fibre Channel Network

2015-01-04 Thread shawn wilson
On Jan 4, 2015 8:04 AM, Rob Seastrom r...@seastrom.com wrote: symack sym...@gmail.com writes: Hello Everyone, Have a few FC cards and a switch that I would like to use for backplane related packets (ie, local network). I am totally new to FC and would like to know will I need a

Re: whois server features

2015-01-07 Thread shawn wilson
On Wed, Jan 7, 2015 at 3:32 PM, anthony kasza anthony.ka...@gmail.com wrote: Scripting languages have modules that can parse many registrar whois formats. However, most are incomplete due to the plurality of output formats as stated above. I, and i suspect many others, wouls *love* to see a

Re: whois server features

2015-01-07 Thread shawn wilson
On Wed, Jan 7, 2015 at 3:07 PM, Bill Woodcock wo...@pch.net wrote: So, you’re not running into a poorly-documented mystery, you’ve run afoul of one of the rotten armpits of the shub-Internet. So there's no consensus between NICs for the information they should have in whois and what search

Re: whois server features

2015-01-07 Thread shawn wilson
On Wed, Jan 7, 2015 at 1:53 PM, Bill Woodcock wo...@pch.net wrote: On Jan 7, 2015, at 10:38 AM, shawn wilson ag4ve...@gmail.com wrote: Is there a list of NIC (and other popular whois server) features (what can be searched on) and what data they provide (and what title they give it)? Heh

Fwd: whois server features

2015-01-07 Thread shawn wilson
Is there a list of NIC (and other popular whois server) features (what can be searched on) and what data they provide (and what title they give it)? A quick search yields: http://www.ripe.net/ripe/docs/ripe-358 https://www.arin.net/resources/whoisrws/whois_diff.html

Re: FCC releases Open Internet document

2015-03-12 Thread shawn wilson
On Mar 12, 2015 11:01 AM, Ca By cb.li...@gmail.com wrote: For the first time to the public http://transition.fcc.gov/Daily_Releases/Daily_Business/2015/db0312/FCC-15-24A1.pdf Enjoy. Uh yeah, I'll wait for the reviews when y'all get done trudging through that...

Re: rack cable length

2015-04-19 Thread shawn wilson
Ok I've got a few comments offlist too and they all seem to draw the same conclusion - crimp your own length. Thanks all for the input. On Apr 17, 2015 4:11 PM, William Herrin b...@herrin.us wrote: On Fri, Apr 17, 2015 at 3:17 PM, Joe McLeod jmcl...@musfiber.net wrote: Or you build the cable

rack cable length

2015-04-17 Thread shawn wilson
This is probably a stupid question, but We've got a few racks in a colo. The racks don't have any decent cable management (square metal holes to attach velcro to). We either order cable too long and end up with lots of loops which get in the way (no place to loop lots of excess really) or too

Re: rack cable length

2015-04-17 Thread shawn wilson
On Fri, Apr 17, 2015 at 3:22 PM, Bob Evans b...@fiberinternetcenter.com wrote: You must build them if you want the professional look. No way around that - unless you want to take up rack space with some sort of cable management wrapping system and that becomes a pain to make future changes or

Re: rack cable length

2015-04-17 Thread shawn wilson
On Fri, Apr 17, 2015 at 3:23 PM, Justin Wilson - MTIN li...@mtin.net wrote: Copper and fiber patch panels are key. This way you can control the length from the patch to the device (router, switch,server). Yeah, I am talking about just the runs in the rack - I don't see a(nother) patch panel

Re: Historical records of POCs

2015-04-18 Thread shawn wilson
Asked archive.org? On Apr 18, 2015 12:03 PM, Roy r.engehau...@gmail.com wrote: Is there an archive of POCs for some of the early netblocks (1985 or so)? We are trying to figure out some corporate history.

  1   2   >