Re: [Pool] Pool nameservers returning SERVFAIL for mixed-case queries

2013-07-24 Thread Ask Bjørn Hansen
On Jul 24, 2013, at 19:59, Hauke Lampe la...@hauke-lampe.de wrote: There seems to be a problem with the pool DNS servers that prevents name resolution for *.pool.ntp.orgwith resolvers using 0x20 encoding[1]. Whoops. I upgraded a bunch some days ago and the rest today, argh. I'll have a look

Re: [Pool] Pool nameservers returning SERVFAIL for mixed-case queries

2013-07-24 Thread Ask Bjørn Hansen
On Jul 24, 2013, at 19:59, Hauke Lampe la...@hauke-lampe.de wrote: There seems to be a problem with the pool DNS servers that prevents name resolution for *.pool.ntp.orgwith resolvers using 0x20 encoding[1]. b.ntpns.org (one of the anycast nodes) has been fixed; the fix is rolling out to

Re: [Pool] Pool nameservers returning SERVFAIL for mixed-case queries

2013-07-24 Thread Ask Bjørn Hansen
On Jul 24, 2013, at 21:59, Ask Bjørn Hansen a...@ntppool.org wrote: b.ntpns.org (one of the anycast nodes) has been fixed; the fix is rolling out to the other servers now. Ok, upgrade complete (thanks Ansible[1] and Guillaume Filion for configuring Ansible! :-) ) Ask [1] http

Re: [Pool] Setting up a NTP Server

2013-08-18 Thread Ask Bjørn Hansen
On Aug 18, 2013, at 9:22, Ajay Garg ajaygargn...@gmail.com wrote: But everytime, I got the error no server suitable for synchronization found in /var/log/messages on the clients You need to wait a few minutes for ntpd to stabilize before ntpdate will be able to sync with it. Generally these

[Pool] Terms of service

2013-08-30 Thread Ask Bjørn Hansen
Hi everyone, The website now has a terms of service document for how to use the NTP Pool -- http://www.ntppool.org/tos.html The main points are about not configuring syncing in a dumb way (top of the hour, too frequent, etc) and that the service is provided as-is -- don't use it for

Re: [Pool] Terms of service

2013-08-30 Thread Ask Bjørn Hansen
of things I look forward to doing when I take time to work on the project here. Thank you all for your comments! Ask [1] http://fortpoint.me/clients/ -- Ask Bjørn Hansen, http://askask.com/ ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org

Re: [Pool] Offset -- Reference Clock

2013-09-26 Thread Ask Bjørn Hansen
On Sep 25, 2013, at 9:44, AlbyVA alb...@empire.org wrote: ...A couple of times an hour the pool system checks the time from your server and compares it to the local time... The code for the monitor is at https://github.com/abh/ntppool/blob/master/monitor -- it's been working essentially

Re: [Pool] Offset -- Reference Clock

2013-09-26 Thread Ask Bjørn Hansen
On Sep 25, 2013, at 10:48, Anssi Johansson timekee...@miuku.net wrote: If you have a look at my graphs at http://www.pool.ntp.org/user/avij , you'll notice that most them don't look perfect either. I've long ago stopped caring too much about the graphs. Those servers still provide

Re: [Pool] Offset -- Reference Clock

2013-09-26 Thread Ask Bjørn Hansen
On Sep 25, 2013, at 13:27, Rob Janssen r...@knoware.nl wrote: My point is that for any server that I tried I always saw a bias towards negative error, so there probably is some bias inside or close to the monitoring server. Some of your servers confirm this, but you have two that don't.

[Pool] IPv6 routing sucks

2013-10-03 Thread Ask Bjørn Hansen
You can reference this anecdote next time there's a discussion about why IPv6 is (still) worse. I am testing from a native IPv6 connection on a cable provider in Northern California, tracerouting to a server in Los Angeles, also with native IPv6. The route goes Cable modem

Re: [Pool] IPv6 routing sucks

2013-10-03 Thread Ask Bjørn Hansen
On Thu, Oct 3, 2013 at 1:34 AM, Koos van den Hout k...@idefix.net wrote: Quoting Ask Bjørn Hansen who wrote on Thu 2013-10-03 at 00:54: You can reference this anecdote next time there's a discussion about why IPv6 is (still) worse. If this happened with IPv4 all sorts of network engineers

[Pool] Quality of GeoIP databases for servers

2013-12-04 Thread Ask Bjørn Hansen
Hi everyone, In the spring I started some experiments to figure out how accurate the GeoIP information of DNS server vs GeoIP information of client IP is. I made a little tool that can tell you what the IP address of your DNS server (as seen by the pool dns server) is. You can try it at

Re: [Pool] Quality of GeoIP databases for servers

2013-12-04 Thread Ask Bjørn Hansen
On Dec 4, 2013, at 1:21, Rob Janssen r...@knoware.nl wrote: You can try it at http://ip.bitnames.com/ Is it not possible to make that page report the country codes alongside the IP addresses? Hi Rob, The development version at http://mist.askask.com/ does that. Before anyone asks What

Re: [Pool] DDOS using my ntp server

2013-12-30 Thread Ask Bjørn Hansen
On Dec 30, 2013, at 22:11, Brian Rak b...@constant.com wrote: Can we get this information added to the pool configuration recommendations?http://www.pool.ntp.org/join/configuration.html Yes. I'd been asked to wait (many many weeks ago, frustratingly), but the cat is most definitely out of

Re: [Pool] tips for new swimmers in the NTP pool

2014-01-06 Thread Ask Bjørn Hansen
On Jan 6, 2014, at 18:25, Dimitar Vassilev dimitar.vassi...@gmail.com wrote: 3. When syncing time with peers should I pick stratum-1 as I will be running stratum-1 eventually myself or pick a stratum-2 or 3? It doesn't matter. The stratum is only useful for loop detection. Stratum 1s are

Re: [Pool] New record abusive client.

2014-01-09 Thread Ask Bjørn Hansen
On Jan 9, 2014, at 7:00, Brian Rak b...@constant.com wrote: It may not be a big problem for the NTP server, but as the target of the attacks it's a huge issue. Have you seen any signs that anyone uses non-mode6/7 packets for ddos attacks? That seems like it'd be pretty pointless. Ask

Re: [Pool] DDoS Type Attack

2014-02-16 Thread Ask Bjørn Hansen
On Feb 14, 2014, at 10:59, Clay Fiske c...@bloomcounty.org wrote: So all I need to do is write a client that uses a non-123 source port and you’ll support fixing it? Great. :) You don't have to; there are lots out there. Ask ___ pool mailing list

Re: [Pool] Offset monitoring chart

2014-02-27 Thread Ask Bjørn Hansen
On Feb 27, 2014, at 7:14 AM, Philip Gladstone phi...@gladstonefamily.net wrote: I sometimes get little red dots on my offset monitoring chart on the -2000 ms line. Are these placeholder for lost packets or are they really an indication of really bad time? Really crazy bad time; the chart

Re: [Pool] Offset monitoring chart

2014-02-28 Thread Ask Bjørn Hansen
On Feb 27, 2014, at 9:39 PM, Hal Murray hmur...@megapathdsl.net wrote: Are all the red dots at exactly 2 seconds offset? That’s how the graph works[1]. You can see the offset (in seconds) in the csv or json log for each server. Ask [1]

Re: [Pool] Offset monitoring chart

2014-02-28 Thread Ask Bjørn Hansen
On Fri, Feb 28, 2014 at 6:07 AM, Philip Gladstone phi...@gladstonefamily.net wrote: Ok. I understand now. It looks as though the server would respond when the time wasn't known. It ought to say stratum 16, but maybe it doesn't. It does, but it also says the time is off by 34 years. What

Re: [Pool] Offset monitoring chart

2014-03-01 Thread Ask Bjørn Hansen
On Mar 1, 2014, at 9:08 AM, Rob Janssen r...@knoware.nl wrote: I looked that up in the RFC before I wrote it. Stratum (stratum): 8-bit integer representing the stratum, with values defined in Figure 11. ++-+ |

Re: [Pool] Offset monitoring chart

2014-03-01 Thread Ask Bjørn Hansen
On Mar 1, 2014, at 14:53, Arnold Schekkerman ntp-l...@mallos.nl wrote: Well, as long as the monitoring system rejects such servers from the pool, whatever status indicator (or just 'plain wrong time') is used, it is fine :-) I'm not really sure how it translates to the rest of the

Re: [Pool] DDOS like attack on my ntp server

2014-03-02 Thread Ask Bjørn Hansen
On Mar 1, 2014, at 9:51 AM, David Thistlethwaite da...@thistlethwaites.com wrote: Hello folks, I need some assistance About every 2-3 months I get between 2-5 clients that are pulling MB/s from my ntp server and it completely saturates my pipe. Any ideas how to prevent/resolve this ?

Re: [Pool] Monitoring says my server is unreachable

2014-03-03 Thread Ask Bjørn Hansen
For what it's worth I came across another server that the monitoring system couldn't reach that crossed the interoute.net network (or didn't as it were when the source port was 123). The monitoring client uses a source port 123, but the response will come from port 123 so if it crossed the same

Re: [Pool] The War Against NTP

2014-03-16 Thread Ask Bjørn Hansen
On Mar 16, 2014, at 20:26, Brian Rak b...@constant.com wrote: To hijack this a bit (before the BCP38 arguments start): Funny. :-) is there any way for us as a service provider to ensure that our NTP servers are returned to clients connecting from our ASN? Is this something that makes

Re: [Pool] The War Against NTP

2014-03-16 Thread Ask Bjørn Hansen
On Mar 16, 2014, at 17:16, AlbyVA alb...@empire.org wrote: Has anybody else noticed the rapid decline in NTP Pool servers over the last couple of months? Yes! :-( Just a few days ago I found out that my VPN tunnel provider (Reliable Hosting) made a business decision to block Port 123 as

Re: [Pool] Monitoring says my server is unreachable

2014-04-04 Thread Ask Bjørn Hansen
For what it’s worth it looks like interoute has stopped blocking NTP. Instead Telia might be now — I’m looking into that. Ask ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

Re: [Pool] Information on xen VM not acurate anymore

2014-04-07 Thread Ask Bjørn Hansen
On Apr 7, 2014, at 9:57 PM, Marco Tedaldi marco.teda...@gmail.com wrote: So https://support.ntp.org/bin/view/Support/KnownOsIssues#Section_9.2.2.2. is not accurate anymore. You need an ntpd on every guest to get reliable time (just don't publish them to the pool as under high load reliability

Re: [Pool] Unable to add IPv6 server (again?)

2014-05-15 Thread Ask Bjørn Hansen
Hi Anssi, Were those recent traceroutes? Equinix in Ashburn have had a problem similar to the DECIX problem last summer where they solved it by filtering NTP traffic. I heard from Hurricane Electric earlier this week that they (Equinix) had upgrade the software in the IX platform and the

Re: [Pool] v6 Connectivity Issues

2014-08-29 Thread Ask Bjørn Hansen
http://trace.ntppool.org/traceroute/[ip] will make a return traceroute. Ask ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

Re: [Pool] ntp traffic profile has changed. why?

2014-09-08 Thread Ask Bjørn Hansen
On Monday, Sep 8, 2014 at 2:31 , Thomas Pfaff tpf...@tp76.info, wrote: Hi. I'm just curious about what it is that I'm seeing here; from day one my ntp traffic has been low with short spikes of high activity, but earlier today the spikes went missing and the traffic changed to a steady low(-ish)

Re: [Pool] ntp traffic profile has changed. why?

2014-09-09 Thread Ask Bjørn Hansen
Yes, it was changed back - sorry. :-) What happened: The NTP pool system runs on about half a dozen servers hosted by Phyber.com. Sunday evening one of them had a power supply go bad and it shutdown. Most everything has redundancy so I nudged it along a little and, well, most

[Pool] DNS server update

2014-10-20 Thread Ask Bjørn Hansen
About 10 hours ago I updated the DNS server software on most of the pool.ntp.org name servers. The new version had a few a bug fixes and also allows targeting by ASN and such. I have no immediate plans to use it (it was contributed by another user), but it does create some new possibilities

Re: [Pool] Pool support in NTP clients

2014-11-06 Thread Ask Bjørn Hansen
On Nov 6, 2014, at 05:01, Miroslav Lichvar mlich...@redhat.com wrote: Would it be ok if the clients used just the 2* name? I suspect this would generate too much of IPv6 traffic. I will reply to the rest of the thread later, but that would be fine. If your client just needs one DNS lookup

Re: [Pool] Pool support in NTP clients

2014-11-07 Thread Ask Bjørn Hansen
On Nov 6, 2014, at 20:58, Ryan Malayter malay...@gmail.com wrote: How does the pool's geo-based DNS handle that case? Or go you special-case them to appear in multiple country zones? Yes. Ask ___ pool mailing list pool@lists.ntp.org

Re: [Pool] Several NTP vulnerabilities

2014-12-20 Thread Ask Bjørn Hansen
On Dec 20, 2014, at 8:13, Harlan Stenn st...@ntp.org wrote: You are whining, and I'll attribute that to the extra work this time of year. We'll read your snarky/defensive response with the same disclaimer. :-) Please tell me a valid use case for sticking with the older version.

Re: [Pool] Several NTP vulnerabilities

2014-12-20 Thread Ask Bjørn Hansen
You are right that strictly speaking in the context of this list “you should upgrade” is not completely unreasonable, but for “regular users” knowing more details about the scope and the mitigation options than was listed in the announcement would be nice. Most of us running ntpd’s that

Re: [Pool] e.ntpns.org

2014-12-21 Thread Ask Bjørn Hansen
Whoops, fixed - thank you. Ask — http://askask.com/ On Sun, Dec 21, 2014 at 8:42 AM, Hristo Benev f...@abv.bg wrote: It looks that e.ntpns.org does not have an IP address, but it is in the list of nameservers. Can someone look at this Thanks, Hristo

Re: [Pool] Several NTP vulnerabilities

2014-12-21 Thread Ask Bjørn Hansen
So an ntpd client is safe from a malicious server? If so then I will re-enable adding servers to the pool. I'd like to put a post on the ntppool news site so anything you can add about what the exposure is would be helpful. It sounds like disabling crypto config and restricting query to

Re: [Pool] Leap second at end of June 2015

2015-01-06 Thread Ask Bjørn Hansen
Yes, sorta. Since last week[1] the system is tracking the information. There's an open todo to do the work to track the correct information and email operators when their server is wrong. Until I have more data I don't think it is useful to kick out servers who have it wrong as by the time

Re: [Pool] It's time to enable IPv6 for all of pool.ntp.org

2015-03-14 Thread Ask Bjørn Hansen
We need more IPv6 enabled servers. Many countries have very sparse IPv6 coverage in the pool. Ask — http://askask.com/ On Sat, Mar 14, 2015 at 8:19 PM, Tore Anderson t...@fud.no wrote: Hello, I just saw a presentation where the presenter shared his experiences with moving his

Re: [Pool] Monitoring chart duplicates offsets

2015-04-26 Thread Ask Bjørn Hansen
On Apr 26, 2015, at 9:40 AM, Daniel Norton dan...@danielnorton.com wrote: FYI, some negative offsets shown in the left Y-axis legend are duplicated in my chart at http://www.pool.ntp.org/scores/104.131.118.129 http://www.pool.ntp.org/scores/104.131.118.129. What should these actually

Re: [Pool] Server Abuse

2015-04-14 Thread Ask Bjørn Hansen
[ resending since the list apparently had some trouble the last week ] On Apr 8, 2015, at 19:51, Ask Bjørn Hansen a...@ntppool.org wrote: The number of servers in the .tr pool has been dropping; I don’t know of anything else changing in Europe. The overall “capacity” (summing up the servers

[Pool] PTR queries?

2015-06-04 Thread Ask Bjørn Hansen
Hi everyone, A server operator reported that after joining the pool the number of PTR (reverse DNS) queries for those IP addresses went up significantly. Has anyone else seen this? Ask — http://askask.com/ ___ pool mailing list

Re: [Pool] Equipment with pool addresses pre-configured

2015-06-04 Thread Ask Bjørn Hansen
On Jun 4, 2015, at 2:29, Tom Yates madhat...@teaparty.net wrote: I run a pool server, and my understanding was that vendors weren't supposed to do this. Yes. Is there any kind of procedure for dealing with this? Or should i just ignore it? You writing to their support, your sales

Re: [Pool] 8-10k pps in Brazil

2015-05-28 Thread Ask Bjørn Hansen
Anyone of you willing to add your server (wherever it is in the world) to the br zone, please email server-owner-help at ntppool.org and reference this thread and we will add it. It will be curious to see if they also get tons of queries (hopefully to servers where bandwidth is cheaper!). If

[Pool] Off by a second leap second failures

2015-07-03 Thread Ask Bjørn Hansen
Here’s a daily count of servers that were off by ~1 second (+/- 100ms) during that day. mysql select date(ts) d, s.ip_version ip, count(distinct(server_id)) servers from log_scores inner join servers s on (s.id=log_scores.server_id) where ts '2015-06-29 19:00' and abs(offset) 0.9 and

Re: [Pool] Leap Indicator bits

2015-07-03 Thread Ask Bjørn Hansen
On Jul 3, 2015, at 7:42 AM, Miroslav Lichvar mlich...@redhat.com wrote: This is very interesting. Thanks for sharing the data. How close to the leap second were the 23 data collected? In the hour before and up until midnight (the leap second). Looking at the data minute by minute (just

Re: [Pool] Leap second announcement

2015-06-29 Thread Ask Bjørn Hansen
| +--+--+-+ 35 rows in set (2.25 sec) — http://askask.com/ On Sun, Jun 28, 2015 at 10:27 PM, Ask Bjørn Hansen a...@ntppool.org wrote: About 66 servers in the NTP Pool is announcing the leap second now. Ask — http://askask.com

Re: [Pool] Leap Indicator bits

2015-07-02 Thread Ask Bjørn Hansen
On Jul 2, 2015, at 9:51 AM, Daisuke HIGASHI daisuke.higa...@gmail.com wrote: Hi, Some NTP servers in *.pool.ntp.org are still announcing wrong LI bits. Rough sampling: Yeah, about 100 left which is just barely more than the number of servers that missed announcing the leap second on

Re: [Pool] any difference between the NTP pool vendor zones?

2015-05-22 Thread Ask Bjørn Hansen
On May 22, 2015, at 17:08, Nathan Stratton Treadway natha...@ontko.com wrote: Similarly, is N.vendor_zone.pool.ntp.org actually equivalent to N.pool.ntp.org, from the client's point of view? Basically, yes. There's an unused (and at most partially implemented) setting to have each zone

[Pool] Leap second announcement

2015-06-28 Thread Ask Bjørn Hansen
About 66 servers in the NTP Pool is announcing the leap second now. Ask — http://askask.com/ ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

Re: [Pool] Leap second announcement

2015-06-30 Thread Ask Bjørn Hansen
Just to preempt an obvious question: I did not have the system take out servers that are not announcing the flag out of the pool since the clients that care about the flag (ntpd) are unlikely to refresh their servers in time for it to make a difference anyway. I expect something close to 0% of

Re: [Pool] Leap second announcement

2015-06-29 Thread Ask Bjørn Hansen
|    3118 | |   30 |    4 |    3138 | |   30 |    5 |    3155 | +--+--+-+ 11 rows in set (1.03 sec) — http://askask.com/ On Mon, Jun 29, 2015 at 8:21 AM, Ask Bjørn Hansen a...@ntppool.org wrote: Less, actually. Or maybe just weirder. Here are by hour the number of servers seen

Re: [Pool] Off by a second leap second failures

2015-07-13 Thread Ask Bjørn Hansen
On Jul 10, 2015, at 8:13, Svavar Kjarrval sva...@kjarrval.is wrote: Are the server admins notified of the problem and advised on general solutions? Even if they're kicked out of the pool, they'll probably continue to serve bad time for others. When a server score goes below 10 (if I

Re: [Pool] Off by a second leap second failures

2015-07-15 Thread Ask Bjørn Hansen
, Miroslav Lichvar mlich...@redhat.com wrote: On Mon, Jul 13, 2015 at 01:06:51AM -0700, Ask Bjørn Hansen wrote: On Jul 10, 2015, at 8:13, Svavar Kjarrval sva...@kjarrval.is wrote: Are the server admins notified of the problem and advised on general solutions? Even if they're kicked out

Re: [Pool] weirdness in pool monitoring

2015-07-17 Thread Ask Bjørn Hansen
On Jul 16, 2015, at 18:57, Philip Gladstone phi...@gladstonefamily.net wrote: ts_epoch,ts,offset,step,score 1437096927,2015-07-17 01:35:27,,-5,-100 1437096272,2015-07-17 01:24:32,,-5,-100 What is the step column? It’s the change to the score after the 5% adjustment. The old score is

Re: [Pool] x.centos.pool.ntp.org resolving issues in Mexico

2015-11-10 Thread Ask Bjørn Hansen
Hi Jiri, Mexico is a big country with (almost!) no NTP servers. I think what happens is that there’s a struggling NTP server that whenever the system thinks it works okay immediately gets overloaded and then drops out for a while. I need to update the system so it handles this better;

Re: [Pool] pool IPv4/IPv6 behavior with ntpd

2015-11-12 Thread Ask Bjørn Hansen
Hi Tore, There are only 8 countries with more than 20 IPv6 servers and 17 with more than 10. For IPv4 the numbers are 21 and 35. The load sharing system works much much better with more servers. Maybe there are enough IPv6 servers, but just focusing on the percentage of users vs the percentage

Re: [Pool] IPv6: Why 6to4 addresses are not allowed for pool servers?

2015-10-14 Thread Ask Bjørn Hansen
> On Oct 12, 2015, at 11:43 AM, Anton Samsonov <avscomput...@gmail.com> wrote: > > As recommended for comments and questions, I wrote to Ask Bjørn Hansen > for an explanation, but he just said that this topic was not for discussion > and redirected me to this mailing li

Re: [Pool] Off by a second leap second failures

2015-07-12 Thread Ask Bjørn Hansen
[ This is for all of you, not just for Rob ] On the actual topic, I think it is not a good idea to combine all kinds of system jobs into […] I have my own opinions about this (and the other topics discussed in the last day in this thread), but the adoption of systemd in the Linux

[Pool] Changing the listed servers for under-served countries/zones

2015-11-14 Thread Ask Bjørn Hansen
Hi everyone, As a follow-up to the to some of the recent threads on small zones for big countries (IPv6 and IPv4) I’ve been considering making the changes listed below. Please discuss, though I’d encourage you to (re-)read the bikeshed email before joining the discussion: http://bikeshed.org/

Re: [Pool] 0.0.0.2 making it into pool?

2015-12-23 Thread Ask Bjørn Hansen
Ouch. Sounds like a bug somewhere. Can you do dig -t txt _status.pool.ntp.org @207.171.17.42 also? (That IP is anycast'ed-ish). Ask -- http://www.ntppool.org/ > On Dec 23, 2015, at 07:26, Axel Beckert wrote: > > Hi, > >> On Wed, Dec 23, 2015 at 01:58:43PM +, Tom

Re: [Pool] shodan.io actively infiltrating ntp.org IPv6 pools for scanning purposes

2016-01-28 Thread Ask Bjørn Hansen
Hi Luca (and everyone), I removed those servers yesterday. Brad had been helping look to see if others were doing something similar. I think the behavior was falling well outside what's reasonably expected from a server operator participating in the pool. The operator had also been adding the

Re: [Pool] www.pool.ntp.org graph not updated

2016-03-15 Thread Ask Bjørn Hansen
> On Mar 15, 2016, at 1:40 AM, Alica wrote: > > The global, continental and contry pool graphs are not updated for a > while. Is it intended? No, it’s just a bug in the display code. I’m not sure why it’s there. There’s a limit on how much it’ll pull from the database;

Re: [Pool] No images

2016-05-01 Thread Ask Bjørn Hansen
Yes, Hal pointed it out recently, too. I spent some time debugging it last week but didn’t get it solved (obviously). What happens when you request the .png files is a whole chain of processes and queues to make a windowless browser fetch and render the javascript and then return a “screen

Re: [Pool] No images

2016-05-06 Thread Ask Bjørn Hansen
It should be fixed now; thank you (and to Hal). Ask ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

Re: [Pool] Pool stats not being updated

2016-08-13 Thread Ask Bjørn Hansen
> On Aug 13, 2016, at 8:39 AM, Neil Green wrote: > > I have a server in the pool: > > http://www.pool.ntp.org/scores/82.17.116.234 > > But the stats haven’t been updated since 6.40am UTC on Friday 12th August. My > ntp server is working correctly and tcpdump shows

[Pool] "Bulk" servers for underserved countries

2016-07-20 Thread Ask Bjørn Hansen
Hi everyone, There are some zones that have way too few servers for way too many clients so they basically never get to work. Someone joins the zone and in short order they get kicked out or leave because there’s just too many queries. When there are no servers in the zone the queries from

Re: [Pool] Why is my server score suddenly so poor?

2017-02-21 Thread Ask Bjørn Hansen
> On Feb 20, 2017, at 16:54 , Peter wrote: > > So, it's clearly something between this network and the monitor station. > What I see on traceroutes is my home connection goes via NTT whereas the > datacenter goes via a different route. You can do traceroutes the other

Re: [Pool] Configurable reply for *.pool.ntp.org ?

2017-02-21 Thread Ask Bjørn Hansen
> On Feb 19, 2017, at 9:49 , Rob Janssen wrote: > > How about providing a feature in the pool DNS to configure a preferred set of > servers for > requests that were made from some specified resolver? Hi Rob, The DNS server supports this (also targeting by ASN), but

Re: [Pool] Pool admin net speed settings

2017-01-18 Thread Ask Bjørn Hansen
> On Jan 18, 2017, at 1:04, Neil Green wrote: > > On the 'manage servers' page of the Pool website, the 'Net speed' drop down > menu jumps from 3 Mbit to 10 Mbit. Is it feasible to add one or even two > steps between 3 and 10 (say 6, or 5 and 8) to prevent currently

Re: [Pool] I received an abuse complaint today

2016-10-18 Thread Ask Bjørn Hansen
On Oct 17, 2016, at 10:52, oliver domke wrote: > > I think it's a good idea to add non-local servers to zones with too few > servers to manage the load, but maybe this shouldn't be done for zones like > cn, kr, eg, etc. where censorship may prevent answers from outside. I am

Re: [Pool] Adding Stratum 2 servers in *some* underrepresented zones

2016-12-04 Thread Ask Bjørn Hansen
> On Dec 4, 2016, at 19:23 , James Andrewartha > wrote: > > Currently it's sitting at a baseline of 700 requests per second, > increasing to 1500 to 3000 when it's in the zone file, and if it's in > the zone on the hour or half hour it peaks at 45,000 requests per

Re: [Pool] Adding Stratum 2 servers in *some* underrepresented zones

2017-01-02 Thread Ask Bjørn Hansen
> On Jan 2, 2017, at 21:56, James Andrewartha > wrote: > > You can add 203.135.184.123 to China, it's a LeoNTP that coped with > Snapchat and I've reconfigured my network layout so it won't melt this > time (hence the new IP). http://leobodnar.com/LeoNTP/CCGS.php

Re: [Pool] Adding Stratum 2 servers in *some* underrepresented zones

2017-01-02 Thread Ask Bjørn Hansen
> On Jan 2, 2017, at 20:16, Drew wrote: > > Are there any specific requirements for hosts to be considered for adding > into an under served pool? Depending on how underserved then being vaguely nearby is good, but for the severely underserved it doesn’t really matter.

Re: [Pool] Adding Stratum 2 servers in *some* underrepresented zones

2017-01-03 Thread Ask Bjørn Hansen
> On Jan 3, 2017, at 0:00, James Andrewartha > wrote: > > Looks like you added me to the UK zone? Doh, fixed. Thanks! Ask ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

[Pool] China zone

2017-01-03 Thread Ask Bjørn Hansen
Let me know if I can add your IP to the China zone. Let’s see if we can make it work. :-) https://community.ntppool.org/t/adding-servers-to-the-china-zone/88 Ask ___ pool mailing list pool@lists.ntp.org http://lists.ntp.org/listinfo/pool

Re: [Pool] No more recruiting? :-)

2017-01-05 Thread Ask Bjørn Hansen
> On Jan 4, 2017, at 9:55 PM, Kiss Gábor wrote: > > I have just noticed that I cannot see the former invitation on > http://www.pool.ntp.org/zone/ > pages > having too few servers. ("This zone needs more servers" or so.) > Is

Re: [Pool] China zone

2017-01-05 Thread Ask Bjørn Hansen
> On Jan 3, 2017, at 5:00 PM, Ask Bjørn Hansen <a...@ntppool.org> wrote: > > Let me know if I can add your IP to the China zone. Let’s see if we can make > it work. :-) > > https://community.ntppool.org/t/adding-servers-to-the-china-zone/88 > <https://communit

Re: [Pool] From our advice: "every 43200 seconds since boot is good" - is it?

2017-06-19 Thread Ask Bjørn Hansen
> On Jun 19, 2017, at 4:31 PM, Daniel 'hackbyte' Mitzlaff > wrote: > > Are you really telling me, […] Dan told about his experience with the clients he supports, not how he’s running his servers. (So no, what you thought wasn’t what he was telling). Ask

Re: [Pool] Problems with IPv6

2017-05-21 Thread Ask Bjørn Hansen
> On May 21, 2017, at 12:49, Marco Senft wrote: > > Well, as far as I understand from the conversation so far, nobody blamed the > monitoring node for the problems. I completely agree with you that a > peering/routing issue is most probably the root cause of it.

Re: [Pool] Problems with IPv6

2017-05-21 Thread Ask Bjørn Hansen
Hi everyone, Phyber disabled the IPv6 routes via Cogent about 20 minutes ago and so far it looks like it helped. I reset all the IPv6 scores that were low to be close to the “ok for the pool” threshold so they should be back shortly. Ask ___ pool

[Pool] Changing the monitoring system to do multiple queries

2017-09-05 Thread Ask Bjørn Hansen
https://community.ntppool.org/t/changing-monitoring-system-to-do-multiple-queries/670 > Testing the new monitoring daemon I noticed that unexpectedly many servers > seem to drop return “RATE” (rate limiting / KoD) response when the client > does more than 2 (or a few more) queries. > > I think

Re: [Pool] Joining the Pool error

2017-09-13 Thread Ask Bjørn Hansen
> On Sep 12, 2017, at 9:03 PM, Jake Visser wrote: > > I am trying to join my new NTP server to the pool and am getting the > following error: > > Invalid stratum response from 103.47.62.25 (Your server is in stratum ). Is > your server configured properly? Is

Re: [Pool] Server still in the pool?

2019-07-30 Thread Ask Bjørn Hansen
> On Jul 30, 2019, at 8:00 AM, Thom van der Boon wrote: > > Is there a way to contact the systemadmins of everybody in the > nl.pool.ntp.org ? Users of the pool, no. The server operators, yes, I have an email address for each operator and can send a note (though

Re: [Pool] Server still in the pool?

2019-07-23 Thread Ask Bjørn Hansen
[ resending from an account that doesn’t have -all in it’s spf record ] > On Jul 21, 2019, at 14:51, Hal Murray wrote: > > Is there any way for client code to determine if an IP Address is still in > the > pool? Maybe something like a DNS lookup on d.c.b.a.pool.ntp.org Hi Hal, There isn’t

Re: [Pool] NTS, Network Time Security

2020-03-12 Thread Ask Bjørn Hansen
> On Mar 12, 2020, at 09:45, Miroslav Lichvar wrote: > One of my suggestions was to specify a NTS-KE redirect where the > server wouldn't provide cookies, but a TTL and a list of hostnames and > addresses. It would basically be DNS over NTS-KE. Easy to implement on > both servers and clients. If

Re: [Pool] NTS, Network Time Security

2020-03-12 Thread Ask Bjørn Hansen
> On Mar 12, 2020, at 11:36, Miroslav Lichvar wrote: > > I think that's no different from how NTP clients currently work with the > pool. If a server is removed from the pool, the clients will use it until > it's marked as a falseticker or unreachable. It doesn't matter if it was > removed

Re: [Pool] NTS, Network Time Security

2020-03-12 Thread Ask Bjørn Hansen
On Mar 12, 2020, at 09:45, Miroslav Lichvar wrote: > > One of my suggestions was to specify a NTS-KE redirect where the > server wouldn't provide cookies, but a TTL and a list of hostnames and > addresses. It would basically be DNS over NTS-KE. Easy to implement on > both servers and clients. If

Re: [Pool] NTS, Network Time Security

2020-03-11 Thread Ask Bjørn Hansen
(Again from an address that can email the list...) > On Mar 11, 2020, at 16:40, Ask Bjørn Hansen wrote: > >  > I haven’t carefully weighed the pros and cons, but variations on the > following is what I have considered. I don’t know that they’d work as the RFC > has be

Re: [Pool] Can't add IPv6-only server

2020-12-27 Thread Ask Bjørn Hansen
> On Dec 24, 2020, at 10:25, Koos van den Hout wrote: > > So I wonder whether manage.ntppool.org has IPv6 > connectivity. It has no > IPv6 address according to DNS. The check is done via a small program[1] running on the monitoring server. It was down (ugh) and

<    1   2