Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Job Snijders
On Thu, Oct 29, 2020 at 09:14:16PM +0100, Alex Band wrote: > In fact, we argue that it's actually a bad idea to do so: > > https://blog.nlnetlabs.nl/why-routinator-doesnt-fall-back-to-rsync/ > > We're interested to hear views on this from both an operational and > security perspective. I don't se

Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Alex Band
> On 30 Oct 2020, at 01:10, Randy Bush wrote: > > i'll see your blog post and raise you a peer reviewed academic paper and > two rfcs :) For the readers wondering what is going on here: there is a reason there is only a vague mention to two RFCs instead of the specific paragraph where it say

100G over 100 km of dark fiber

2020-10-30 Thread Jared Brown
Hello NANOG! I need to push 100G over 100 km of dark fiber. Since there are no 100G pluggable optics with this reach (~25 dB), I have been offered coherent transport systems to solve my problem. This is all good and well, except total system costs start from high five figures. So, my question

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Tarko Tikan
hey, I need to push 100G over 100 km of dark fiber. Since there are no 100G pluggable optics with this reach (~25 dB), I have been offered coherent transport systems to solve my problem. This is all good and well, except total system costs start from high five figures. 100G-ZR4 QSFP28 is on

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Vincentz Petzholtz
Hi Jared, If it’s just a single 100G channel needed you could try 100GBASE-ZR4. Specified for 80km, 30db power budget they could actually reach more the 80km. Dispersion should also be „no" problem in the 1310nm length. I have to say that I never tried this on 100km distance without coherent sol

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Dale W. Carder
You may also find that 100G PAM4 could work. There are some vendors that sell the optic, and an outboard EDFA + DCF pizza box. Dale Thus spake Tarko Tikan (ta...@lanparty.ee) on Fri, Oct 30, 2020 at 04:25:58PM +0200: > hey, > > > I need to push 100G over 100 km of dark fiber. Since there are

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Brandon Martin
On 10/30/20 10:27 AM, Vincentz Petzholtz wrote: If it’s just a single 100G channel needed you could try 100GBASE-ZR4. Specified for 80km, 30db power budget they could actually reach more the 80km. Dispersion should also be „no" problem in the 1310nm length. I have to say that I never tried this

Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Tom Beecher
Alex: When I follow the RFC rabbit hole : RFC6481 : A Profile for Resource Certificate Repository Structure The publication repository MUST be available using rsync > [RFC5781 ] [RSYNC > ]. Support of

RE: 100G over 100 km of dark fiber

2020-10-30 Thread Brian Turnbow via NANOG
Hi jared as others have pointed out there are lots of options inphi offers these https://www.inphi.com/products/colorz/ or use a box like packetlight, here is a Arista solution brief https://www.arista.com/assets/data/pdf/Whitepapers/Arista_Packetlight_100G_Extension_Solution.pdf and if you

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Nick Hilliard
Dale W. Carder wrote on 30/10/2020 14:33: You may also find that 100G PAM4 could work. not at 100km. This would be outside the dispersion tolerance limits for pam4. Nick

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Ben Cannon
You could break this into 10x 10g coherent lanes, but you’re going to end up back close to coherent 100g prices. You’re at the threshold distance where you’re past all the short range tech and are seriously pushing it - whereas the 100g coherent tech is just taking off. How important is this

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Tarko Tikan
hey, If it’s just a single 100G channel needed you could try 100GBASE-ZR4. Specified for 80km, 30db power budget they could actually reach more the 80km. Dispersion should also be „no" problem in the 1310nm length. I have to say that I never tried this on 100km distance without coherent soluti

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Jared Brown
The 100 km leg completes a ring.   Jared   Sent: Friday, October 30, 2020 From: "Ben Cannon" To: "Jared Brown" Cc: nanog@nanog.org Subject: Re: 100G over 100 km of dark fiber You could break this into 10x 10g coherent lanes, but you’re going to end up back close to coherent 100g prices.   You

bgp dampening and anycast networks (particularly cloudflare)

2020-10-30 Thread David Hubbard
Hi all, was curious if anyone has found it necessary to alter their route dampening rules related to anycast networks, and Cloudflare especially? I’ve got a customer whose target web server has been going intermittently inaccessible from a very geographically distant Cloudflare location (AU), w

Weekly Routing Table Report

2020-10-30 Thread Routing Analysis Role Account
This is an automated weekly mailing describing the state of the Internet Routing Table as seen from APNIC's router in Japan. The posting is sent to APOPS, NANOG, AfNOG, SANOG, PacNOG, SAFNOG TZNOG, MENOG, BJNOG, SDNOG, CMNOG, LACNOG and the RIPE Routing WG. Daily listings are sent to bgp-st...@li

Re: Apple Catalina Appears to Introduce Massive Jitter - SOLVED!

2020-10-30 Thread Mark Tinka
Hi all. So I may have fixed this for my end, and hopefully others may be able to use the same fix. After a tip from Karl Auerbach and this link:     https://developer.apple.com/forums/thread/97805 ... I was able to fix the problem by disabling Bluetooth. However, disabling Bluetooth was not

urpf - evil?

2020-10-30 Thread Baldur Norddahl
Hello While working on my ACLs I noticed that I was successful in blocking some apparently spoofed IPv6 traffic. The destination was Facebook and the source was IPv6 range belonging to a mobile operator that sells 4G Wifi router based solutions. So thinking about how and why a few customers end u

Re: urpf - evil?

2020-10-30 Thread Martijn Schmidt via NANOG
Hi Baldur, You are at risk of facilitating spoofed and/or reflection DDoS attacks if you don't implement BCP38.. that's why uRPF exists. :) Best regards, Martijn From: NANOG on behalf of Baldur Norddahl Sent: 30 October 2020 20:29 To: nanog@nanog.org Subject:

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Sander Steffann
Hi, On 30-10-2020 15:33, Dale W. Carder wrote: You may also find that 100G PAM4 could work. There are some vendors that sell the optic, and an outboard EDFA + DCF pizza box. We are about to deploy these on a couple of dark fibers: https://www.solid-optics.com/product/edfamux-multiplexer-ampl

Re: Apple Catalina Appears to Introduce Massive Jitter - SOLVED!

2020-10-30 Thread Doug Barton
I would hesitate to blame BT. I have a macbook pro from ~1 year ago, on Catalina, and I use BT extensively ... mouse, keyboard, and headset. I do have location services trimmed down to just find my mac. I ran: ping -c 1000 -i 0.1 1000 packets transmitted, 998 packets received, 0.2% packet los

Re: Apple Catalina Appears to Introduce Massive Jitter - SOLVED!

2020-10-30 Thread J. Hellenthal via NANOG
Heya ! Doug! Yeah I wouldn’t put this on BT either. On the other hand it seems that whether the scheduler is newreno or cubic that this situation persists pasts my previous suggestions. Seems tho that when you put strain on an upload that the jitter gets considerably worse... 90m out of a 100m

Re: A study on community-triggered updates in BGP

2020-10-30 Thread Thomas Krenc
Hi Jeff, We have tested FRR (v6.0.2) indeed and found that duplicates are not suppressed by default. We will publish more detailed results and configurations on the website soon. Thomas On 10/21/20 4:35 PM, Jeff Tantsura wrote: > > Hi Thomas, > > We had a similar discussion on FRR slack, there

Re: APOLOGIES: QB server hiccups

2020-10-30 Thread Jim Popovitch via NANOG
On Thu, 2020-10-22 at 18:04 +, Paul Nash wrote: > Autocorrect changed a misspelled recipient to “nanog”. > Not quite. What happened was sometime in the past Brian sent an email to NANOG from a domain publishing a DMARC record. Mailman on nanog@ wraps such an email and (like it or not) sets

AS33132 / Crown Castle pulling a Lumen

2020-10-30 Thread Adam Korab
If anybody that can help with CCF continuing to announce a prefix four hours after the originating session was shutdown, please contact me unicast. A ticket has been opened with their NOC but progress is not forthcoming. Thanks, Adam

RE: Linux router network cards

2020-10-30 Thread Toke Høiland-Jørgensen via NANOG
micah anderson writes: > Thanks for the reply. > > Philip Loenneker writes: >> Take a look at the Mellanox ConnectX 5 series of cards. They handle >> DPDK, PVRDMA (basically SR-IOV that allows live migration between >> hosts), and can even process packets within the NIC for some > > From what I

Configuring of MACsec for three EX4300 Switches

2020-10-30 Thread switch999--- via NANOG
Hi, following only the required configuration of https://www.juniper.net/documentation/en_US/junos/topics/task/configuration/macsec-configuring-mx-series.html for # Configuring MACsec Using Static Connectivity Association Key (CAK) Mode works fine for two switches, but with a third EX430

outlook inbound email issues?

2020-10-30 Thread nanog
I have a client who is receiving 50% of their mail on outlook servers for the past few hours. MX records point to: x-com.mail.protection.outlook.com has address 104.47.38.36 x-com.mail.protection.outlook.com has address 104.47.36.36 Anyone aware of outlook issues or have someone they ca

Re: Disney+ geolocation error for 213.134.224.0/19

2020-10-30 Thread Johan Hedberg
I had a similar issue here in Sweden. The contact point listed at http://thebrotherswisp.com/index.php/geo-and-vpn/ (netad...@disneystreaming.com ) helped me with this pretty quickly. — Johan Hedberg >

Newbie Questions: How-to remove spurious IRR records (and keep them out for good)?

2020-10-30 Thread Pirawat WATANAPONGSE
Dear Guru(s), I am seeking advice concerning someone else announcing IRR records on resources belonging to me. [I was referred to this mailing list from the DNS-OARC community.] Context: I have already registered all my IP address blocks with ROA/RPKI [evidence: https://stat.ripe.net/widget/as-r

dark fiber connection between 111 E 8th and Coresite NYC1 or NYC2

2020-10-30 Thread Eric Germann
Looking for a recommendation of a provider who can give us a dark fiber cross connect or an L2 connection between the two in the subject for an AWS Direct Connect out of Coresite Thanks Eric

Re: Apple Catalina Appears to Introduce Massive Jitter

2020-10-30 Thread Cory Sell via NANOG
Might be worth disabling each AP to see if there's one out there having an issue playing nice with the MacBook. Also try different combinations of two APs working together. It's possible the MacBook is flip flopping because the power levels are fighting each other. Does the Mac have this issue

Re: DE-CIX - Wednesday 11:00am - 1:30pm Eastern

2020-10-30 Thread Ed dAgostino
All, For clarification, DE-CIX New York operates over a dozen switches as part of our local switch fabric. ONE of our switches malfunctioned for about a two hour period prior to rebooting and that caused problems for customer networks connected to that switch during that period. All other

RE: [SPAM] Re: Apple Catalina Appears to Introduce Massive Jitter

2020-10-30 Thread p.fazio
PLEASE REMOVE ME FROM THE LISTTHANK YOU Original Message Subject: [SPAM] Re: Apple Catalina Appears to Introduce Massive Jitter From: colin johnston Date: Thu, October 29, 2020 11:12 am To: Mark Tinka Cc: NANOG H

Re: Apple Catalina Appears to Introduce Massive Jitter

2020-10-30 Thread David Curado
I was curious, so poked at this... my results from a macbook pro 2019 running Catalina 10.15.3 sudo /usr/local/sbin/mtr -r 10.200.200.200 Start: 2020-10-29T14:09:08-0400 HOST: bos-mp36c Loss% Snt Last Avg Best Wrst StDev 1.|-- 10.200.200.200 0.0%10 11

RE: [SPAM] Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread p.fazio
please remove me from list Original Message Subject: [SPAM] Re: plea for comcast/sprint handoff debug help From: Alex Band Date: Thu, October 29, 2020 2:14 pm To: Randy Bush Cc: North American Network Operators' Group > On

Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Tim Bruijnzeels
Hi Job, all, > On 30 Oct 2020, at 11:06, Job Snijders wrote: > > On Thu, Oct 29, 2020 at 09:14:16PM +0100, Alex Band wrote: >> In fact, we argue that it's actually a bad idea to do so: >> >> https://blog.nlnetlabs.nl/why-routinator-doesnt-fall-back-to-rsync/ >> >> We're interested to hear view

Incorrect GeoIP filtering of 185.83.72.0/22

2020-10-30 Thread Adam Pavlidis
Hello, We are reaching out to NANOG since the following issue is mostly observed in US-based service providers. We are advertising the prefix *185.83.72.0/22 *, that seems to be blocked by various popular US-based services, thus our customers originating from this prefix ha

Re: 100G over 100 km of dark fiber

2020-10-30 Thread Lady Benjamin PD Cannon
Very impressive! Can you share your fiber type and link-loss? —L.B. Lady Benjamin PD Cannon, ASCE 6x7 Networks & 6x7 Telecom, LLC CEO b...@6by7.net "The only fully end-to-end encrypted global telecommunications company in the world.” FCC License KJ6FJJ > On Oct 30, 20

Anyone have a contact at Microsoft RE: Microsoft Defender SmartScreen removal?

2020-10-30 Thread Matt Rauch via NANOG
Hello, We have a hosting customer who had a brand new domain flagged from day one. Reported the site safe several weeks ago, and still no change. Microsoft Support chat said it could take a couple weeks to review. Matt Rauch

Re: Apple Catalina Appears to Introduce Massive Jitter - SOLVED!

2020-10-30 Thread Aaron Atac via NANOG
Hi Mark, I'm running a MacBook Pro (Retina, 15-inch, Mid 2015) with Mojave 10.14.6 (latest). I've always had location services off (including all system services within). I haven't seen any jitter issues on my end. Along with, no matter if I have bluetooth turned on with my wireless mouse and

RPKI over RSYNC vs RRDP (Was: plea for comcast/sprint handoff debug help)

2020-10-30 Thread Job Snijders
On Fri, Oct 30, 2020 at 12:47:44PM +0100, Alex Band wrote: > > On 30 Oct 2020, at 01:10, Randy Bush wrote: > > i'll see your blog post and raise you a peer reviewed academic paper > > and two rfcs :) > > For the readers wondering what is going on here: there is a reason > there is only a vague me

Re: dark fiber connection between 111 E 8th and Coresite NYC1 or NYC2

2020-10-30 Thread Robert DeVita
You can probably order an extended XC from Digital realty between the two sites. Robert DeVita Founder & CEO Mejeticks c. 469-441-8864 e. radev...@mejeticks.com From: NANOG on behalf of Eric Germann Sent: Tuesday, October 27, 2020 3:30:00 PM To: nanog@nanog.org

Re: dark fiber connection between 111 E 8th and Coresite NYC1 or NYC2

2020-10-30 Thread Mehmet Akcin
You can visit https://live.infrapedia.com (no login required anymore..) and see the providers On Fri, Oct 30, 2020 at 18:15 Eric Germann wrote: > Looking for a recommendation of a provider who can give us a dark fiber > cross connect or an L2 connection between the two in the subject for an AWS

Re: Newbie Questions: How-to remove spurious IRR records (and keep them out for good)?

2020-10-30 Thread Rubens Kuhl
YMMV, but my take: 1 - You should worry a little, but not much. Filters allowing unwanted announcements might be created using these erroneous IRR records, but they won't do any damage by themselves. An actual wrong BGP announcement is required for any damage to happen, and even without those IRR r

Re: Incorrect GeoIP filtering of 185.83.72.0/22

2020-10-30 Thread Brian Ellwood
Adam, ip2location.com has that IP block listed as "(DCH) Data Center/Web Hosting/Transit” which we’ve seen cause issues for residential users in the past, most notably on Cogent IP space. We worked with supp...@ip2location.com to have the address block re-analyzed and updated to "(ISP) Fixed L

Re: Incorrect GeoIP filtering of 185.83.72.0/22

2020-10-30 Thread TJ Trout
http://thebrotherswisp.com/index.php/geo-and-vpn/ If you find anything not on our list let me know On Fri, Oct 30, 2020, 6:38 PM Adam Pavlidis wrote: > Hello, > > We are reaching out to NANOG since the following issue is mostly observed > in US-based service providers. > > We are advertising th

Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Randy Bush
> If there is a covering less specific ROA issued by a parent, this will > then result in RPKI invalid routes. i.e. the upstream kills the customer. not a wise business model. > The fall-back may help in cases where there is an accidental outage of > the RRDP server (for as long as the rsync ser

Re: plea for comcast/sprint handoff debug help

2020-10-30 Thread Tony Tauber
As I've pointed out to Randy and others and I'll share here. We planned, but hadn't yet upgraded our Routinator RP (Relying Party) software to the latest v0.8 which I knew had some improvements. I assumed the problems we were seeing would be fixed by the upgrade. Indeed, when I pulled down the new