Re: Google DNS Oddity

2019-09-06 Thread Chip Marshall via NANOG
On 2019-09-06, Stephen Stuart sent: > Do you see the same behavior when you execute your dig query without > the trailing dot? Yes. dig adds on the trailing dot to make it an FQDN anyway, so the on-wire qname is the same either way. -- Chip Marshall

Re: Google DNS Oddity

2019-09-06 Thread Chip Marshall via NANOG
IN 2001:4860:4802:32::75 www-anycast.google.com. 300 IN 2001:4860:4802:34::75 www-anycast.google.com. 300 IN 2001:4860:4802:38::75 www-anycast.google.com. 300 IN 2001:4860:4802:36::75 ;; Received 167 bytes from 216.239.38.10#53(n

Google DNS Oddity

2019-09-06 Thread Chip Marshall via NANOG
the right thing by ignoring the answer, as there's no linkage between www and www-anycast. Is this broken, or is this just some weird DNS trick I've not come across before? -- Chip Marshall

Re: WASD Keyboards now offers FreeBSD OS keys

2019-01-25 Thread Chip Marshall via freebsd-advocacy
ssible to get keycaps with that design? I think the sphere/orb logo is a trademark of the FreeBSD Foundation, may need to seek permission before doing something like that. https://www.freebsdfoundation.org/legal/trademark-usage-terms-and-conditions/ That said, it would be pretty neat :) -- Chip

Re: BGP Communities

2018-07-05 Thread Chip Marshall via NANOG
. Is there > any standard convention for community numbering (*:666 for RTBH for > example)? I’ve looked at some examples from other carriers and it looks > like everyone does their own thing. > > -Matt > > -- > Matthew Crocker > Crocker Communications, Inc. > President > -- Chip Marshall http://2bithacker.net/

Re: Yet another Quadruple DNS?

2018-03-29 Thread Chip Marshall
is "when are we going to get some memorable IPv6 public recursive DNS servers?" 2001:4860:4860:: or 2620:fe::fe just aren't quite as catchy as 8.8.8.8 or 9.9.9.9. -- Chip Marshall http://2bithacker.net/

Re: New Active Exploit: memcached on port 11211 UDP & TCP being exploited for reflection attacks

2018-02-27 Thread Chip Marshall
; > Also, policer all UDP all the time... UDP is unsafe at any speed. Hi, DigitalOcean here. We've taken steps to mitigate this attack on our network. Also, we've only seen udp/11211 being a problem. I'd be interested to hear of anyone seeing tcp/11211 attacks. -- Chip Marshall http://2bithacker.net/

Re: Structured output

2017-06-21 Thread Chip Marshall
e ability to request structured data > back? i.e. receive a response with the data encoded in json, protobuf, or > even xml. Something like libxo support would be pretty cool, https://github.com/Juniper/libxo That'd provide text, XML, JSON, and HTML output. -- Chip Marshall:

[j-nsp] Snapshot from shell?

2016-03-23 Thread Chip Marshall
the equivalent of a `request system snapshot` from the shell, rather than through the cli. Thanks -- Chip Marshall http://2bithacker.net/ signature.asc Description: PGP signature ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puc

Re: mrtg alternative

2016-03-23 Thread Chip Marshall
local bespoke measurements > > > > PS you can get a free Eval of statseeker. Obnote, don't work for them just > > a fairly happy customer > > > > alan > > > > > > -- > > > Anurag Bhatia > anuragbhatia.com -- Chip Marshall http://2bithacker.net/ signature.asc Description: PGP signature

[ansible-project] Problems with 2.0 and ansible_shell_type

2016-01-15 Thread Chip Marshall
It appears Ansible 2.0 doesn't like my hosts, though 1.9 was working fine. I control a bunch of FreeBSD 10.2 boxes from an OS X host. Upon upgrading, my playbooks started to fail with errors like: fatal: [tor1.2bit.co]: UNREACHABLE! => {"changed": false, "msg": "ERROR! Authentication or permiss

IPsec Documentation

2015-12-28 Thread Chip Marshall
(10/8, 192.168/16, etc) in the Handbook. Is there any interest in revising it to use RFC 5737 space instead? That's dedicated documentation space that is never supposed to be used in a live network. There's a corresponding IPv6 space as well, defined in RFC 3849. Thanks in advance

Re: sfp "computer"?

2015-10-19 Thread Chip Marshall
n some small things that I feel is missing in my > >> switches/routers. Plug in this imaginary "SFP computer" to enhance the > >> switch with a small Linux. The SFP slot provides both networking and power > >> to the device. > >> > >> Regards, > >> > >> Baldur > > -- Chip Marshall http://2bithacker.net/ signature.asc Description: PGP signature

Re: BGP rejected by protocol

2015-07-21 Thread Chip Marshall
On 2015-07-21, Ondrej Zajicek sent: > On Tue, Jul 21, 2015 at 01:19:56PM -0400, Chip Marshall wrote: > > bird6: edge1 < rejected by protocol 2407:dc20::/27 via [removed] on eth0 > > 'rejected by protocol' covers plenty of cases - not forwarding > route back, not f

BGP rejected by protocol

2015-07-21 Thread Chip Marshall
AS and others from an internal AS, but I've tried changing them all to the same AS and it didn't help. Any pointers would be appreciated. I just wish "rejected by protocol" would provide a bit more detail on why it was rejected. -- Chip Marshall http://2bithacker.net/ pgph1BbVN2emv.pgp Description: PGP signature

Re: Virtual machine host provider recommendations

2015-07-15 Thread Chip Marshall
good, but it has to be reliable, too. I'd rather pay more > for a provider that has less trouble, than have to tinker with it > constantly. > > I think this has been discussed before, but not recently, and I can't find > the thread. > > Suggestions welcome, but we

Re: PC Build

2015-06-02 Thread Chip Marshall
tps://freephile.org > > > > ___ > > gnhlug-discuss mailing list > > gnhlug-discuss@mail.gnhlug.org > > http://mail.gnhlug.org/mailman/listinfo/gnhlug-discuss/ > > > > > __

Re: Drill Press Local to Nashua/Amherst/Milford needed

2014-12-16 Thread Chip Marshall
x27;d expect MakeIt Labs[1] (Nashua's hacker space) to have that sort of thing available. 1. http://makeitlabs.com/ -- Chip Marshall http://2bithacker.net/ pgpZNZXU7UraM.pgp Description: PGP signature ___ gnhlug-discuss mailing list gnhlug-disc

Re: Scriptable speedtest for network connection?

2014-11-18 Thread Chip Marshall
am getting, vs. what I am paying for. Any suggestions? https://github.com/sivel/speedtest-cli -- Chip Marshall http://2bithacker.net/ pgpvqXwfImWJj.pgp Description: PGP signature ___ gnhlug-discuss mailing list gnhlug-discuss@mail.gnhlug.org http://m

Re: inexpensive KVMoIP

2014-10-24 Thread Chip Marshall
esn't use Java for the client though. With things like NoVNC and Guacamole out there now, it seems like a HTML5 based remote KVM should be possible and not a nightmare to work with. -- Chip Marshall http://2bithacker.net/ pgp86f06gDycO.pgp Description: PGP signature

[collectd] bind plugin failing

2014-09-26 Thread Chip Marshall
he BIND side of things is working. I'm using collectd 5.4.1 on FreeBSD 10.0-RELEASE with BIND 9.10.1. -- Chip Marshall http://2bithacker.net/ pgpRh9_9BjiPm.pgp Description: PGP signature ___ collectd mailing list collectd@verplant.org http://mailman.verplant.org/listinfo/collectd

[dns-jobs] Dyn Inc - Sr. Network Engineer

2014-09-09 Thread Chip Marshall
specialist with common networking gear (Juniper, Cisco, A10, firewalls, load balancers, switches, etc.) Full job description and application info: Sr. Network Engineer (527-DM-CM) - http://2bit.cx/4a6 -- Chip Marshall Manager of Network Engineering Dynamic Network Services Inc. direct

Re: another one gnhlug probably likes

2014-08-26 Thread Chip Marshall
; here may be interested to know they have a 3D printer now. > They are in the process of setting up a policy on how > patrons can use it. NHPR did a piece about this last week: http://nhpr.org/post/granite-geek-3-d-printers-help-turn-libraries-makerspaces -- Chip Marshall http://2b

Re: Network & system monitoring tools? Nagios, Zabbix, ...?

2014-08-13 Thread Chip Marshall
orth looking at if you're used to Nagios. For things that would have traditionally been monitored with MRTG or Cacti, I'd recommend taking a look at Observium. If you're more into a roll your own thing, collectd + Graphite + grafana makes some nice looking graphs. -- Chi

Re: 3356 leaking routes out 3549 lately?

2014-03-28 Thread Chip Marshall
56. For example, Renesys reports "x 3549 33517" where it should only be able to see "x 3356 33517" or maybe "x 3549 3356 33517". (Due to Renesys policy, I can't know what x is) -- Chip Marshall http://2bithacker.net/ pgpUcrBhQwmHj.pgp Description: PGP signature

Re: misunderstanding scale

2014-03-27 Thread Chip Marshall
y granular enough for a lot of cases. -- Chip Marshall http://2bithacker.net/ pgpDfvwQUlHki.pgp Description: PGP signature

Re: why IPv6 isn't ready for prime time, SMTP edition

2014-03-25 Thread Chip Marshall
ipate in things like the PBL. Why not establish something similar for allocation sizes in IPv6? -- Chip Marshall http://2bithacker.net/ pgplU52TRFvXb.pgp Description: PGP signature

Re: [j-nsp] SLAX import problem

2013-12-16 Thread Chip Marshall
rt "/var/db/scripts/import/junos.xsl"; -- Chip Marshall http://2bithacker.net/ pgpPrEbS2B4Ct.pgp Description: PGP signature ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] SLAX import problem

2013-12-16 Thread Chip Marshall
10:18 lib drwxrws--- 2 root wheel 512 Dec 13 18:19 op This is on an SRX running 12.1X44-D10.4. Any ideas? -- Chip Marshall http://2bithacker.net/ pgpJl2aePRazq.pgp Description: PGP signature ___ juniper-nsp mailing list juniper-nsp@puck.nether.ne

Re: [j-nsp] Format of SHA1 Passwords

2013-12-03 Thread Chip Marshall
rypt(3) library function after it > generates a salt. > > Digging through the sources, we find the following comment block > in src/lib/libcrypt/crypt-sha1.c Ah ha! Perfect! It appears this is specifically a NetBSD thing, or at least my OpenBSD and FreeBSD boxes don't have cryp

Re: [j-nsp] Format of SHA1 Passwords

2013-12-03 Thread Chip Marshall
calculated? > > we do this calculation I believe your intended format is: > $1$salt$hash > > or that seems to be what our code does. That's for MD5 passwords. I have a requirement to use SHA-1. -- Chip Marshall http://2bithacker.net/

[j-nsp] Format of SHA1 Passwords

2013-12-03 Thread Chip Marshall
umented anywhere. I get things like "$sha1$19418$aoTClyGU$cix8MhZsXwG6OrwUgeHAoOA8f.AX" where it appears to have the format, some number, what I think is the salt, and then the hash. Anyone know how these things are calculated? -- Chip M

Re: Suggestions for primary DNS hosting

2013-08-07 Thread Chip Marshall
e primary DNS for both forward and reverse zones. > > 3) Support IPv4 and IPv6 records > > 4) Provide IPv6 nameservers (not required, but nice to have) > > 5) Allow arbitrary RR records such as SPF, TXT, etc... > > > > Any suggestions? -- Chip Marshall http://2bithac

Re: Password storage?

2013-07-19 Thread Chip Marshall
yncing mechanism, perhaps BTsync. -- Chip Marshall http://2bithacker.net/ pgp1v_ZZ_pLNO.pgp Description: PGP signature ___ gnhlug-discuss mailing list gnhlug-discuss@mail.gnhlug.org http://mail.gnhlug.org/mailman/listinfo/gnhlug-discuss/

Re: MacOS/Samba not playing nice

2013-07-08 Thread Chip Marshall
On 2013-07-08, Derek Atkins sent: > Are you talking AFS as in OpenAFS (www.openafs.org)? In which > case, there is an AFS client for all major (and most minor) > OSes out there. Whoops, wrong acronym. Netatalk implements AFP, the Apple Filing Protocol, not AFS. -- Chip Marsh

Re: MacOS/Samba not playing nice

2013-07-03 Thread Chip Marshall
On 2013-07-03, Tom Buskey sent: > Another approach would be to use NFS for MacOSX and see how > that works. NFS is more native to Linux & Macintosh than CIFS. If you're going to set up another file sharing protocol just for Mac OS X clients, why not go with Netatalk and support

Re: [dns-operations] 20130625 survey version.bind

2013-06-26 Thread Chip Marshall
> > Here are the results: > > http://openresolverproject.org/version.bind.20130616.20130625.parsed.txt Interesting! 14558 SERVFAIL Is that resolvers that return a SERVFAIL code, or are they actually returning "SERVFAIL" in a TXT record? -- Chip Marshall http://2bithac

[dns-operations] Best Practices

2013-06-14 Thread Chip Marshall
s for things like DNSSEC, but to the best of my knowledge there's not a good repository for things like RRL, making sure your recursive resolver isn't open, ensuring source port randomization (I know I still see a lot of source 53 queries) and so on. -- Chip Marshall http:/

Re: Prism continued

2013-06-12 Thread Chip Marshall
On 2013-06-12, Phil Fagan sent: > Speaking of Splunk; is that really the tool of choice? I've been hearing a lot of good things about logstash these days too, if you prefer the open source route. http://logstash.net/ -- Chip Marshall http://2bithacker.net/ pgpSopEO5YDs6.pgp Des

Re: gre and MONITOR

2013-05-10 Thread Chip Marshall
On 2013-05-10, Hiroki Sato sent: > Chip Marshall wrote > ch> It appears the MONITOR flag doesn't work on gre interfaces. > > The attached patch should fix this. Can you try it? Appears to work for what I need it for, thank you! -- Chip Marshall http://2bithacker.net/

Re: Mailing list "reply-to" setting

2013-05-08 Thread Chip Marshall
to line causes information to be lost, and can make it difficult to reply to the original poster of a message. Mail-Followup-To is more appropriate for replying to the mailing list. See: http://cr.yp.to/proto/replyto.html -- Chip Marshall http://2bithacker.net/

gre and MONITOR

2013-05-08 Thread Chip Marshall
ved, 0% packet loss round-trip min/avg/max/stddev = 0.265/0.297/0.382/0.043 ms -- Chip Marshall http://2bithacker.net/ pgpf2sYlrRecn.pgp Description: PGP signature

[mosh-users] Idle determination on server

2013-05-02 Thread Chip Marshall
my laptop isn't actively talking to the mosh-server, but I'm not sure how to determine if the session is idle or not on the server end. Any pointers? -- Chip Marshall http://2bithacker.net/ pgp9BCm1BhMp2.pgp Description: PGP signature ___ mos

Re: [dns-operations] DNS Issue

2013-04-24 Thread Chip Marshall
://www.dns-oarc.net/oarc/services/porttest -- Chip Marshall http://2bithacker.net/ pgprO_I77NsYe.pgp Description: PGP signature ___ dns-operations mailing list dns-operations@lists.dns-oarc.net https://lists.dns-oarc.net/mailman/listinfo/dns-opera

[j-nsp] SNMP on logical-system fxp0

2013-04-19 Thread Chip Marshall
to be possible with a logical- system, and I can't use fxp0 with a routing-instance. I feel like this should be a fairly common configuration, placing the management interface out-of-band and doing SNMP on that interface, but I haven't found a lot of useful information through sear

Re: need help about free bandwidth graph program

2013-04-08 Thread Chip Marshall
On 2013-04-08, Andrew Latham sent: > Maybe http://en.wikipedia.org/wiki/Cacti_(software) would do what you want. > > www: http://www.cacti.net/index.php If we're talking SNMP counters, Observium might be worth a look. http://www.observium.org/ -- Chip Marshall http://

Network Configuration Management

2013-03-12 Thread Chip Marshall
ke to have: * Interface configs * Firewall filter configs * BGP session configs * User management * Support for multiple router and switch vendors (at least Juniper and Cisco) -- Chip Marshall http://2bithacker.net/ pgp4mvtHzIASB.pgp Description: PGP signature

Re: Linux-centric curricula in New England?

2013-01-10 Thread Chip Marshall
ver to Linux? -- Chip Marshall http://2bithacker.net/ pgpadvSnEROIv.pgp Description: PGP signature ___ gnhlug-discuss mailing list gnhlug-discuss@mail.gnhlug.org http://mail.gnhlug.org/mailman/listinfo/gnhlug-discuss/

IPv6

2012-12-14 Thread Chip Marshall
ric for IPv6, just doing SLAAC on the inside for addressing. -- Chip Marshall http://2bithacker.net/ pgpz5LLcPX7y8.pgp Description: PGP signature ___ gnhlug-discuss mailing list gnhlug-discuss@mail.gnhlug.org http://mail.gnhlug.org/mailman/listinfo/gnhlug-discuss/

Re: IPv6 Netowrk Device Numbering BP

2012-11-01 Thread Chip Marshall
6, n) '2001:abcd::c010:a0a' Or is the issue just the ntop part not giving you back the decimalized string? -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpXgIGWgwfyD.pgp Description: PGP signature

Re: [dns-operations] DNS ANY record queries - Reflection Attacks

2012-09-11 Thread Chip Marshall
ending to authoritatives in the first place. We've used that to identify and block apparently source IPs. -- Chip Marshall pgpMyesyeir0T.pgp Description: PGP signature ___ dns-operations mailing list dns-operations@lists.dns-oarc.net https://lists.

Re: pkg (aka pkgng) 1.0 released

2012-09-07 Thread Chip Marshall
s to be able to do some degree of load balancing and failover. There's no easy way to do that with just A records. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpN7zYp4whin.pgp Description: PGP signature

mosh

2012-04-18 Thread Chip Marshall
as needed. I've been using it for a few days now, and have been pretty impressed, roaming seamlessly between wired and wireless networks, between home and work, without losing my session has been pretty nice. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4

Re: I'm considering a new laptop, looking for experiences.

2012-04-13 Thread Chip Marshall
ak to it's quality, but just thought I'd mention it. http://woot.com/ -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpaUj

Re: ManchLUG needs a new home!

2012-01-24 Thread Chip Marshall
up where WYW was, The Farm. I've had a lunch there and wasn't terribly impressed, but some other people seem to like it. How would people feel about firing up the ManchLUG again? http://www.yelp.com/biz/the-farm-bar-and-grille-manchester http://www.farmbargrille.com/ -- Chip Marsha

Re: Odd TCP RFC1323 Behavior

2011-08-16 Thread Chip Marshall
put. In this case, both sides are using RFC1323 window scaling: Before HPN: chip@test-server:~$ scp testfile test-client:~/ testfile100% 10MB 409.6KB/s 800.0KB/s 00:25 After HPN: chip@test-server:~$ scp testfile test-client:~/ testfile 100%

Odd TCP RFC1323 Behavior

2011-08-12 Thread Chip Marshall
is via lo0. ssh is OpenSSH_5.2p1, compiled from ports with default options. I'm really at a loss to explain this. Why does named use RFC1323 on bce0 when sshd doesn't? Why does sshd use RFC1323 on lo0 but not on bce0? I can provide PCAPs of the SYN, SYN/ACK exchanges if that will help. --

Re: "Do one thing well..."

2011-06-06 Thread Chip Marshall
redesign in question made it so the current comic was only viewable in a Flash widget. Since Flash on Unix/Linux sucked back in the day, a lot of Linux user complained that they couldn't read the strip anymore, which is likely why the link is labelled "Unix/Linux" to get the l

ManchLUG Call for Presentations

2011-03-31 Thread Chip Marshall
tware? - Had an interesting experience getting something up and running? If you're interested in presenting, please contact myself or Kenta in the next week or two. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm

Re: Some truth about Comcast - WikiLeaks style

2010-12-16 Thread Chip Marshall
On 16-Dec-2010, Paul Stewart sent: > Pardon my ignorance here but what does Comcast do for the NANOG > community? I know they attend many conferences and share their > experiences with a lot of us which is very much appreciated... > > Just asking ;) http://nanog.org/meetings/nan

Re: Last transfer time?

2010-12-03 Thread Chip Marshall
On 03-Dec-2010, Barry Margolin sent: > In article , > Chris Buxton wrote: > > > On Dec 1, 2010, at 12:46 PM, Chip Marshall wrote: > > > Just curious if there's an official and accurate way to > > > determine the last sucessful transfer time of

Last transfer time?

2010-12-01 Thread Chip Marshall
Just curious if there's an official and accurate way to determine the last sucessful transfer time of a slave zone from a BIND server. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui

Re: Backup systems?

2010-10-20 Thread Chip Marshall
7;ve been idling poking around at off-the-shelf backup solutions to replace my own hodge-podge set of scripts, and would be interested in what people thing of various OSS solutions. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck

First ManchLUG Meeting

2010-08-24 Thread Chip Marshall
next month, please let Kenta or myself know. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpY9bkid69Ge.pgp Description: PGP signature

Re: Quarantining an account from the Internet, or from all networking?

2010-08-16 Thread Chip Marshall
he user can still talk to localhost sockets. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpewDSuReiG1.pgp Description: PGP signature

Re: Spike in SSH attacks

2010-06-21 Thread Chip Marshall
dth. Sure, my logs have a lot of failed login attempts, but failed login attempts mean my security is working. It's the successful ones you need to watch out for. You don't secure your house by hiding the door, you secure it by having good locks. -- Chip Marshall http://weblog.2

Re: Spike in SSH attacks

2010-06-21 Thread Chip Marshall
ve. There's clearly a pattern in the usernames being attempted, but the source IPs are all over the place. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpT9HK1uOLeR.pgp

Re: MerriLUG meeting?

2010-06-14 Thread Chip Marshall
gh I'd lean toward holding it in Manchester rather than Nashua. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpE3ksrwIXqP.pgp Description: PGP signature _

Password Card (was: Re: bogus emails looking for money)

2010-04-27 Thread Chip Marshall
lassic password-on-a-postit. Though if you card is ever stolen, it does narrow down the amount of trying that someone would have to do to brute force your accounts. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5U

Re: IPv6 deployment?

2010-04-20 Thread Chip Marshall
a server and some are going over v6 and the server breaks on one protocol but not the other. But so far this has been pretty rare, though that might just be due to a lack of dual-stack servers in the wild. Most of my experience is on FreeBSD though, so I don't think I'll be of much help f

Re: Internet history

2010-04-08 Thread Chip Marshall
able, at least to the extent of my budget to buy more network devices. http://www.namingschemes.com/ has a huge list of lists of names, btw. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2

Re: [OT] iPad

2010-03-23 Thread Chip Marshall
can run whatever you like on it. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpfmlUXbZkbH.pgp Description: PGP signature __

Re: 19" racks

2010-03-19 Thread Chip Marshall
//esssurplus.com/ -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpWDKSEiabpC.pgp Description: PGP signature ___ gnhlug-discuss mailing lis

Re: The illegality of playing DVDs on Linux

2010-03-09 Thread Chip Marshall
On 09-Mar-2010, Benjamin Scott sent: > On Tue, Mar 9, 2010 at 11:04 AM, Chip Marshall wrote: > > Legal DVD playback in Linux is entirely possible, you just have > > to buy software to do it. > > *Technically*, I think what you have to buy is a *license*. > > I d

Re: The illegality of playing DVDs on Linux

2010-03-09 Thread Chip Marshall
to Wikipedia[1], Dell ships Ubuntu with LinDVD preinstalled, and Mandriva includes it in their commercial distro. Legal DVD playback in Linux is entirely possible, you just have to buy software to do it. [1] http://en.wikipedia.org/wiki/LinDVD -- Chip Marshall http://weblog.2bithacker.net/

Re: Good USB+802.11/WiFi adapter?

2010-02-23 Thread Chip Marshall
least. I discovered this a few years back when I had ordered a Series 2 and bought a USB Ethernet adapter assuming I'd need it. Quite surprised when I opened the box to find an RJ- 45ish jack on the back. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C48

Re: MerriLUG or Manchester meets planned? + Twitter

2010-01-19 Thread Chip Marshall
't be interested in reviving the Nashua group? -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpltweCX1Sgs.pgp Description: PGP signature __

Re: Looking for stuff that you forgot to throw out

2009-11-30 Thread Chip Marshall
Ethernet adapter! It's an old D-Link thing, and it might be 10base2 rather than 10baseT, but it might work, and I'm more than happy to offer it up. IIRC, it is not one of the ones that works with Linux. (See? Keeping it on-topic!) -- Chip Marshall http://weblog.2bithacker.net/ K

Re: Software RAID issues (was Re: Suggestions solicited, server bring up)

2009-11-23 Thread Chip Marshall
ent, I don't really see NFS and iSCSI really being in the same realm. NFS is more of a NAS/fileserving technology, useful for shared storage amongst many clients. iSCSI is a SAN technology, useful for dedicated storage for clients in a central location, analogous to fibre channel or ATAoE.

Re: Software RAID issues (was Re: Suggestions solicited, server bring up)

2009-11-16 Thread Chip Marshall
On 15-Nov-2009, Alan Johnson sent: > On Sun, Nov 15, 2009 at 12:29 PM, Chip Marshall wrote: > > I've heard that the RAID is unstable under older Linux > > kernels, but that was 3~4 years ago, so I suspect it's been > > fine for a while now. > > Software RAI

Re: Suggestions solicited, server bring up

2009-11-15 Thread Chip Marshall
Edge servers, mostly 2850s and 2950s, and for the most part everything works very well. I've heard that the RAID is unstable under older Linux kernels, but that was 3~4 years ago, so I suspect it's been fine for a while now. -- Chip Marshall http://weblog.

Re: [semi-OT] Pretty vs. Useful output

2009-10-06 Thread Chip Marshall
2009-10-06 14:13:55 UTC 00:04:38 2009-10-06 14:14:31 UTC 00:04:02 2009-05-27 16:35:20 UTC 18w5d 21:43 root 2:18PM

Re: wok-key: dealing with keyloggers on net-cafe computers

2009-08-26 Thread Chip Marshall
all Tin Foil Hat Linux had some sort of on-screen password mechanism to foil keyloggers. http://tinfoilhat.shmoo.com/ -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgp

Re: Network/System Monitors

2009-08-21 Thread Chip Marshall
pretty much any language you like. The UI isn't as polished as Cacti though. OpenNMS looks interesting to me, I think I'll have to try it out sometime when I get spare cycles... -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4

Re: Finding *unfiltered* free WiFi? (was: WAP/Router for use with OpenVPN)

2009-07-14 Thread Chip Marshall
x27;re referring to is from Skyhook Wireless. http://www.skyhookwireless.com/ -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpVJlMB25U05.pgp Description: PGP signature __

Re: Analog Modems?

2009-06-22 Thread Chip Marshall
e range though. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpOWOifSwv2N.pgp Description: PGP signature ___ gnhlug-discuss mailing list

Re: Linux-compatible scanner with ADF

2009-06-05 Thread Chip Marshall
est cost way to get an ADF scanner is to buy an MFP. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM pgpw3EWIUJgPE.pgp Description: PGP signature

Re: Odd log messages from ISC BIND named

2009-02-03 Thread Chip Marshall
lock of text takes more brain cycles to process than a short list of links, and when your nameserver is breaking and you need to refer to the docs in a hurry, brain cycles are a precious commodity :) I'm also not a fan of light blue links on a white background, but that's just me. And if I

Re: Odd log messages from ISC BIND named

2009-02-03 Thread Chip Marshall
t people have been looking up, but I assume it could be used to aid in another attack. By the way, does anyone else find the new ISC site to be really annoying to navigate? Instead of nice lists for BIND version and documentation, they've embedded all the links inside paragraphs of text.

Re: Blackduck Software and IP

2009-01-14 Thread Chip Marshall
the EFF (or similar) then their products/services make sense. It doesn't strike me as something that should exist in a health open source environment, where everybody shares code and all that good stuff. -- Chip Marshall http://weblog.2bithacker.net/ KB1QYW

Re: Rodents (mice)

2008-12-08 Thread Chip Marshall
ne click of the wheel, then as another button press. Very odd. I just avoid using them. -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM signature.asc Des

Re: a call for colos

2008-12-02 Thread Chip Marshall
On December 01, 2008, Bill McGonigle sent me the following: > On 2008-12-01 5:16 PM, Chip Marshall wrote: >> I am currently colocated here. >> As such, I can't divulge too much info due to NDA type stuff. > > They make customers sign contracts including a clause to not ta

Re: a call for colos

2008-12-01 Thread Chip Marshall
due to NDA type stuff. I have had some connectivity issues with them in the past, including unannounced switch outages. They are fairly inexpensive though. -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u

Re: [GNHLUG] GNHLUG is back on the Internet

2008-11-10 Thread Chip Marshall
ine had the penguin page's A record (64.30.13.248) cached for at least another 3000 seconds. The authoritatives are returning 199.125.75.42 with a TTL of 604800. -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5p

Re: Converting HTML and MIME to plain text mail

2008-10-07 Thread Chip Marshall
o clear ASCII signatures. -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM signature.asc Description: Digital signature _

Re: Serial admin console program

2008-09-23 Thread Chip Marshall
t less expensive than a 48 port KVM over IP system. I've had very good experiences with the Lantronix SLC series, available in a variety of port densities. They're also Linux based, though I think their software is closed source. I have a dmesg around somewhere if anyone is interested. -

Re: Serial admin console program

2008-09-23 Thread Chip Marshall
ition of reinventing wheels, the BSD cu is not the same as the cu found on most Linux boxes. -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKOen6a2Xs5IMr2g6CM

Re: Looking for mini-itx rackmount cases...

2008-09-01 Thread Chip Marshall
gh, which may not be ideal for redundancy, but should help with power density. http://supermicro.com/products/nfo/1UTwin.cfm -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWPGP key ID 43C4819E v4sw5PUhw4/5ln5pr5FOPck4ma4u6FLOw5Xm5l5Ui2e4t4/5ARWb7HKO

Malformed DNS server reply

2008-08-08 Thread Chip Marshall
xchanger before, and am guessing this is seen as a bad answer. At the very least, . has no A or records. Is this some sort of odd anti-spam thing? Or is the domain just set up badly? -- Chip Marshall <[EMAIL PROTECTED]> http://weblog.2bithacker.net/ KB1QYWP

Re: Quick DNS perfromance measurement trick

2008-07-11 Thread Chip Marshall
r small range of ports that you generate DNS queries from, it becomes easier to poison your cache with invalid answers. Since that security announcement, there's been a big push to deploy updated versions of BIND that use a wider souce port range. -- Chip Marshall <[EMAIL PROTECTED]

  1   2   >