SMTP Port Blocking: Success or Failure?

2005-02-26 Thread Claydon, Tom

We are considering filtering outbound SMTP traffic from our ISP
customers, except from our own mail servers, to help reduce the amount
of spam originating from our network. How successful/unsucessful has
implementing outbound SMTP filtering done in stopping or slowing down
spam from your network?

Also, if outbound SMTP filtering has not worked for you, are there any
other things that you have implemented that have helped with spam
traffic?

Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
http://www.dobsonteleco.com





RE: Graphing Peering

2005-01-19 Thread Claydon, Tom

Andrew,

You could probably whip something up with a shell script, and pipe the
results to something like cacti (www.cacti.net).

Cacti is one of the easiest utilities I've worked with to graph other
types of data besides bits in/out. Check it out.

= TC

-Original Message-
From: andrew matthews [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, January 19, 2005 4:38 PM
To: nanog@merit.edu
Subject: Re: Graphing Peering


no i mean graph bgp sessions...

it's a single interface, and i want to graph every bgp session so i can
see how much traffic i'm doing between each peer.


On Wed, 19 Jan 2005 22:25:37 + (GMT), Stephen J. Wilcox
<[EMAIL PROTECTED]> wrote:
> On Wed, 19 Jan 2005, andrew matthews wrote:
> 
> > Anyone have any suggestions on graphing peering on a cisco router? 
> > I'm using mrtg and i did mac address accounting but the numbers are
off.
> 
> do you mean how to graph traffic to each host on a lan..?
> 
> what platform do you have?
> 
> Steve
> 
>




Apologies for Off-Topic Posting

2005-01-14 Thread Claydon, Tom

I apologize to everyone here for posting yesterday on an inappropriate
topic, which I have since moved to cisco-nsp. 

Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company





Cisco 7513 & Bandwidth Points

2005-01-13 Thread Claydon, Tom

Hello,

We are moving from a Cisco 7206 to a 7513, and I was wondering if we
will be limited by bandwidth points on the 7513 (as we are with the
7206). From the sparse documentation I've found so far, it doesn't
appear that this limitation exists in the 7513, correct?

Off-list replies are welcomed.

Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341




Open-Source Network Management Tools

2004-09-14 Thread Claydon, Tom

I'm looking for open-source alternatives for network management, such as
Nagios or Big Brother. We are currently using WhatsUp Gold, and would
like to move to something more flexible (and not running on a Windows
platform). Something that has email/paging capabilities, and can process
SNMP traps would be a plus for us as well.

Recommendations?

Thanks.




RE: Google?

2004-07-26 Thread Claydon, Tom

 http://money.cnn.com/2004/07/26/technology/google_site/index.htm

-Original Message-
From: Eric Brown [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 26, 2004 11:14 AM
To: [EMAIL PROTECTED]
Subject: RE: Google?


Google is failing on everything for me.  Other search engines like a9
seem to work ok.

503 Server Error from Google, with an internal service error of 27:
Your request not available at this time.


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Jeff Shultz
Sent: Monday, July 26, 2004 11:40 AM
To: [EMAIL PROTECTED]
Subject: Re: Google?


** Reply to message from "Marco Davids (SARA)" <[EMAIL PROTECTED]> on Mon,
26 Jul 2004 17:28:00 +0200

> Google seems to fail on every search containing the word 'mail' ?
> --
> Marco Davids
> SARA High Performance Networking - Amsterdam

Not for me: 

http://www.google.com/search?q=mail&sourceid=firefox&start=0&start=0&ie=
utf-8&oe=utf-8

Results 1 - 10 of about 318,000,000 for mail [definition]. (0.27
seconds)

News results for mail - View today's top stories
E-mail turns the Smith and Spencer rivalry into a personal ... -
Telegraph.co.uk - Jul 24, 2004 Mail on Sunday - The Scotsman - Jul 24,
2004 Web-based e-mail serves individuals better than corporations -
Newsday
- Jul 24, 2004

Mail.com
Full e-mail address Password Member Login Select Site: Mail.com Mail.com
Beta Forgot Your Password? Click here to sign up: ...
Copyright 2004 mail.com Corp. ...
www.mail.com/ - 10k - Cached - Similar pages - Stock quotes: EASY

Yahoo! Mail - The best web-based email!
Yahoo! Mail helps me stay in touch. New to Yahoo!? Get a free Yahoo!
Mail account ? it's a breeze to stay connected and manage your busy
life. ...
mail.yahoo.com/ - 24k - Cached - Similar pages

Sign-in Access Error
Free web-based e-mail. 2MB e-mail storage, signatures, stationery, HTML
compatible.
www.hotmail.com/ - 11k - Cached - Similar pages

--
Jeff Shultz
A railfan pulls up to a RR crossing hoping that there will be a train. 







More on Anti-Spam/Anti-Virus Solutions

2004-05-17 Thread Claydon, Tom
Title: More on Anti-Spam/Anti-Virus Solutions






Thanks to everyone who has responded regarding the Barracuda Network Spam Firewall. They look like very low cost but very powerful boxes.

We are in the process of choosing an anti-spam/anti-virus solution for our current email enviroment (Sendmail Pro on RH9 Enterprise). One of the vendors that caught our eye was Sophos, and their PureMessage product http://www.sophos.com/products/pm/.

However, I have not read much regarding integration issues with PM into an existing Sendmail Pro enviroment. Anyone have any success/horror stories on this?

Thanks,

Tom Claydon





Barracuda Networks Spam Firewall

2004-05-17 Thread Claydon, Tom

Doing evaluations on anti-spam, anti-virus solutions, and ran across
this:

http://www.barracudanetworks.com/

Looks like a good box -- even won an Editor's Choice award from Network
Computing recently.

Does anyone on list have any experience with these boxes? If so, how are
they with false positives, quarantine capabilities, etc?

Thanks,
Tom Claydon
Dobson Telephone




RE: Cisco website www.cisco.com 403 forbidden?

2004-03-15 Thread Claydon, Tom

Al Qaeda packets? 

-Original Message-
From: Laurence F. Sheldon, Jr. [mailto:[EMAIL PROTECTED] 
Sent: Monday, March 15, 2004 2:25 PM
To: [EMAIL PROTECTED]
Subject: Re: Cisco website www.cisco.com 403 forbidden?


Jay Hennigan wrote:

> Is it just me that they don't like?

I've seen one or two other reports.

Seems like a good opportunity for a round of Wild Speculation.
--
Requiescas in pace o email



RE: Cisco website www.cisco.com 403 forbidden?

2004-03-15 Thread Claydon, Tom

Nope. It's horked.

= TC 

-Original Message-
From: Jay Hennigan [mailto:[EMAIL PROTECTED] 
Sent: Monday, March 15, 2004 2:19 PM
To: [EMAIL PROTECTED]
Subject: Cisco website www.cisco.com 403 forbidden? 


Is it just me that they don't like?

--
Jay Hennigan - CCIE #7880 - Network Administration - [EMAIL PROTECTED]
WestNet:  Connecting you to the planet.  805 884-6323  WB6RDV
NetLojix Communications, Inc.  -  http://www.netlojix.com/


T1 Customer CPE Replacement?

2004-02-23 Thread Claydon, Tom
Title: T1 Customer CPE Replacement?





Hello,


We're looking for a good replacement for fractional T1 customers with Cisco 1600-  & 1700-series routers as their CPE. They are good routers, but the ongoing support costs are an issue, and we need to replace them ASAP.

Someone had mentioned several CPE vendors, such as Adtran and Netopia. Are there any others, and does anyone have any pros/cons of what they're familiar with?


Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341





Cisco: limit number of DHCP addresses per VC?

2004-02-04 Thread Claydon, Tom
Title: Cisco: limit number of DHCP addresses per VC?





Question for the list:


Cisco introduced a command in 12.3T to limit DHCP leases on ATM unnumbered interfaces (ip dhcp limit lease per interface). This feature works fine on our 7206VXR, but my problem is that this is a global command. The Redback we were using before had us spoiled by allowing us to specify max DHCP leases per ATM VC! We would like to put other ATM VC's on this router that have different DHCP lease requirements.

Is there any way of limiting DHCP leases per VC? Cisco TAC said they didn't have a non-global version of the ip dhcp limit lease per interface command.

Our DHCP server is running dhcpd 2.0p15, BTW.



Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341





Lucent APX / Data Filter Question

2004-01-09 Thread Claydon, Tom

Hello,

Would someone familiar with the Lucent APX and filtering contact me
off-list?

Thanks,
 
= TC

--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341



Lucent APX1000

2004-01-06 Thread Claydon, Tom

Does anyone here have experience with the APX1000? We just got one of these
beasts (to replace two AS5300's), and I need some help on OSPF
configurations (specifically, how to integrate it into our Cisco-based
network).

Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341



RE: california quake

2003-12-22 Thread Claydon, Tom

If a fault line slips, then the terrorists have already won.

-Original Message-
From: Gerald [mailto:[EMAIL PROTECTED] 
Sent: Monday, December 22, 2003 1:34 PM
Cc: [EMAIL PROTECTED]
Subject: Re: california quake



On Mon, 22 Dec 2003, Scott Granados wrote:

> Apparently there was just a 6.4 quake in central california.

Terrorists!

Gerald


RE: california quake

2003-12-22 Thread Claydon, Tom

According to current data, it was a 6.5, and the epicenter was 7 miles NE of
San Simeon, CA.

-Original Message-
From: Scott Granados [mailto:[EMAIL PROTECTED] 
Sent: Monday, December 22, 2003 1:27 PM
To: [EMAIL PROTECTED]
Subject: california quake



Apparently there was just a 6.4 quake in central california.

We felt it here in San Jose but its probably to minor up here to cause any 
disruptions.  However closer to the center there may be.




RE: Bandwidth Control Question

2003-12-19 Thread Claydon, Tom

Yep. There's plenty of fiber between the two buildings, so we may go that
route. Anyone know if there's any easy way to limit bandwidth on the
PA-POS-OC3 adapters?

Sounds like another job for rate limiting to me...

= TC

-Original Message-
From: David Lesher [mailto:[EMAIL PROTECTED] 
Sent: Friday, December 19, 2003 10:56 AM
To: [EMAIL PROTECTED]
Subject: Re: Bandwidth Control Question



Speaking on Deep Background, the Press Secretary whispered:
> 
> 
> Roy wrote:
> 
> >  Why waste a T3 port.  Run ethernet if they are that close.  Don't
> >  overlook the benefit of using the old thin-net for 200m.
> 
> I'd be cautious about metal between buildings, but Ethernet on fiber 
> might make sense.

WhatHeSaid. You do NOT want to smoke an expensive box or two.

Fiber is your friend. 



-- 
A host is a host from coast to [EMAIL PROTECTED]
& no one will talk to a host that's close[v].(301) 56-LINUX Unless
the host (that isn't close).pob 1433 is busy, hung
or dead20915-1433


RE: Bandwidth Control Question

2003-12-19 Thread Claydon, Tom

Hi Mark,

Yes, it's a point-to-point link.

= TC

-Original Message-
From: Mark E. Mallett [mailto:[EMAIL PROTECTED] 
Sent: Friday, December 19, 2003 10:36 AM
To: Claydon, Tom
Cc: '[EMAIL PROTECTED]'
Subject: Re: Bandwidth Control Question


On Fri, Dec 19, 2003 at 10:24:36AM -0600, Claydon, Tom wrote:
> Thanks to everyone who responded. Looks like I'm going to have to 
> invest in a PA-MC-2T3+ card for the 7206...I have at least four 
> PA-MC-T3 cards, and they're not going to work the way I want them to 
> (unless I rate-limit them).

This is for point-to-point DS3, right?  I don't think you want -MC-
anything, you'd want e.g. PA-2T3+ .  (I don't remember the original message
though.)

mm


RE: Bandwidth Control Question

2003-12-19 Thread Claydon, Tom
Title: RE: Bandwidth Control Question





Thanks to everyone who responded. Looks like I'm going to have to invest in a PA-MC-2T3+ card for the 7206...I have at least four PA-MC-T3 cards, and they're not going to work the way I want them to (unless I rate-limit them).

Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341





Bandwidth Control Question

2003-12-19 Thread Claydon, Tom
Title: Bandwidth Control Question





Hello,


A customer of ours in the next building would like 6M of Internet bandwidth from us, so we would wire a DS3 between the two buildings for connectivity.

The question is: how to we control the amount of bandwidth that we give them? Could we use rate limiting to contain the bandwdith to 6M, our would we need to get external IDSU's to do that?

Note: we have a Cisco 7206VXR router on our end. The customer has a Cisco 7513.



Thanks,
 
= TC
 
--
Tom Claydon, IT/ATM Network Engineer
Dobson Telephone Company
phone: (405) 391-8201  cell: (405) 834-0341