Re: QinQ switch or similar

2012-01-08 Thread David Swafford
I'd check w/ the provider.  They may be giving you only 5 VLANs to
avoid explaining/configuring QinQ -- remember, most small school
environments are limited on their IT knowledge.  I bet if you ask,
they already support it, or have the gear/people to help with your
need.

David.


On Fri, Jan 6, 2012 at 6:36 PM, Matt Addison
matt.addi...@lists.evilgeni.us wrote:
 Sent from my mobile device, so please excuse any horrible misspellings.

 On Jan 6, 2012, at 15:32, Bonald bon...@gmail.com wrote:

 Hi,
 We need to purchase some switch that support 1gbit QinQ.
 Any suggestions ? We need to connect 9 schools together in layer2.
 All 9 schools have 1gb link from our provider, provider gaves us 5 vlan to
 work with.
 We have around 35 vlan in-house.

 We are low budget. Any recommendation beside QinQ ?

 Your provider won't do QinQ for you? Have you verified they support
 the appropriate MTU for you to do your own QinQ under their tag (at
 least 1502)?

 As far as equipment, most Cisco kit from 3550 on up will do QinQ.

 Other alternatives would be to light it with routers and do EoMPLS or
 VPLS, but it'll be more expensive than just doing QinQ but potentially
 more scalable/stable.




shell access to BGP router, CALEA tips??

2012-01-08 Thread N Rauhauser
  Ladies  Gentlemen,

  I wanted to check something on an IP address block this morning and,
much to my surprise, I don't have access to a single router that has a full
table in it - first time since 1999 this is the case. I see route views is
still happily serving up shells, but I'm curious to know if there are any
other viewpoints available. I am probably going to script something for
this particular problem, so I want boxes that have shell access, not
graphical looking glass type stuff.


 I am also plunged into the world of lawful intercept after a long
absence. Other than providing muddled responses ten minutes before the
deadline on obvious MPAA/RIAA trolls I haven't had to do a subpoena
response since 2005 and I've not installed anything that needed to meet
requirements since 2009. Is there a good write up somewhere on the current
state of affairs?





 Neal Rauhauser


Re: QinQ switch or similar

2012-01-08 Thread Joel jaeggli
On 1/6/12 12:31 , Bonald wrote:
 Hi,
 We need to purchase some switch that support 1gbit QinQ.
 Any suggestions ? We need to connect 9 schools together in layer2.
 All 9 schools have 1gb link from our provider, provider gaves us 5 vlan to
 work with.
 We have around 35 vlan in-house.
 
 We are low budget. Any recommendation beside QinQ ?

The alternative to QinQ would be the exercise would probably be more
scalable if the broadcast domains vlans of each,  were constrained to
their respective sites.

Something like force10 s25n would be all the l3 switch you'd need to
make this routed.



RE: QinQ switch or similar

2012-01-08 Thread Jensen Tyler
We have been using Ciena switches for QinQ.

CN3920 would fit best for low cost. Pretty easy to use.

-Original Message-
From: Bonald [mailto:bon...@gmail.com] 
Sent: Friday, January 06, 2012 2:31 PM
To: nanog@nanog.org
Subject: QinQ switch or similar

Hi,
We need to purchase some switch that support 1gbit QinQ.
Any suggestions ? We need to connect 9 schools together in layer2.
All 9 schools have 1gb link from our provider, provider gaves us 5 vlan to
work with.
We have around 35 vlan in-house.

We are low budget. Any recommendation beside QinQ ?



RE: shell access to BGP router, CALEA tips??

2012-01-08 Thread David Prall
Both ATT and Hurricane Electric have access for this.

A quick list of them.
http://www.netdigix.com/servers.html

Majority of these are telnet:// links.

David

--
http://dcp.dcptech.com



-Original Message-
From: N Rauhauser [mailto:neal.rauhau...@gmail.com] 
Sent: Sunday, January 08, 2012 12:13 PM
To: nanog@nanog.org
Subject: shell access to BGP router, CALEA tips??

  Ladies  Gentlemen,

  I wanted to check something on an IP address block this morning and,
much to my surprise, I don't have access to a single router that has a full
table in it - first time since 1999 this is the case. I see route views is
still happily serving up shells, but I'm curious to know if there are any
other viewpoints available. I am probably going to script something for
this particular problem, so I want boxes that have shell access, not
graphical looking glass type stuff.


 I am also plunged into the world of lawful intercept after a long
absence. Other than providing muddled responses ten minutes before the
deadline on obvious MPAA/RIAA trolls I haven't had to do a subpoena
response since 2005 and I've not installed anything that needed to meet
requirements since 2009. Is there a good write up somewhere on the current
state of affairs?





 Neal Rauhauser




Re: Misreporting abuse, it's not actually helpful: r...@fireslayer.maxihost.com.br

2012-01-08 Thread Suresh Ramasubramanian
And maybe ask the author of whatever goober with firewall script
that is to rm -rf and securely delete his code?

[old term from the nanae days, abbreviated to GWF]

On Sat, Jan 7, 2012 at 9:16 AM, Randy Bush ra...@psg.com wrote:
 probably does though... I'm not sure what math tricks you may have
 tried, but 39554 is in no way like 15169. Could you take some time to
 disable your report generation canon and fix it before re-enabling it?
 I'm not the only person getting mis-fired reports, if you want to help
 everyone please turn off the canon.

 procmail them back to the ceo or c.o of the idiots.



-- 
Suresh Ramasubramanian (ops.li...@gmail.com)



Re: Misreporting abuse, it's not actually helpful: r...@fireslayer.maxihost.com.br

2012-01-08 Thread Andrew D Kirch

On 1/8/2012 8:48 PM, Suresh Ramasubramanian wrote:

And maybe ask the author of whatever goober with firewall script
that is to rm -rf and securely delete his code?

[old term from the nanae days, abbreviated to GWF]

On Sat, Jan 7, 2012 at 9:16 AM, Randy Bushra...@psg.com  wrote:

probably does though... I'm not sure what math tricks you may have
tried, but 39554 is in no way like 15169. Could you take some time to
disable your report generation canon and fix it before re-enabling it?
I'm not the only person getting mis-fired reports, if you want to help
everyone please turn off the canon.

procmail them back to the ceo or c.o of the idiots.



I find that contacting the upstream of errant bulk abuse reports about 
the UBE problem tends to get things solved quickly.  Abuse desk droids 
that have to sift through 8 gallons of crap every day tend to frown on 
their own users contributions to the smelly pile on someone else's abuse 
desk.


Andrew