Live data from Hacker News

Viewing profile — kitteh

kitteh

HN member
Joined
Tue, Jul 16, 2019, 7:36 AM UTC
HN karma
873
Public activity
227 items

About kitteh

No profile information was provided.

Recent public activity

  1. comment
    Comment #28856872

    There's another forum where a Jacksonville ARTCC controller echoed they had 15 people call out (not due to some anti vax movement) and had weather looming on top of the military wh…

  2. comment
    Comment #27009976

    It should be. Also this was covered in a reinvent presentation about the aws network.

  3. comment
    Comment #27006294

    Inter region traffic always goes over the backbone (this includes EIP to EIP). This also includes going from EC2 to any service like S3 in another region. Except China. China to re…

  4. comment
    Comment #25769957

    It would revert to not being signed, which routes just fine. You just don't get the additional security benefits. It won't turn it into invalid if I'm following what you are saying…

  5. comment
    Comment #25769087

    There can be legitimate use cases why a network maybe have a very few amount of prefixes not signed or even invalid: canaries and beacons. For example, running tests to a signed, u…

  6. comment
    Comment #25541951

    Lack of redundancy due to cost probably has something to do with it. Same issue with internet peering in quite a few cities (no viable 2nd location, costs a lot of money to double …

  7. comment
    Comment #25541937

    AT&T has been pushing really hard on folks in the last year to take early retirement packages that would give you a fraction of what you would have gotten if you stayed on until be…

  8. comment
    Comment #25541480

    I was a big MaxTNT customer. The cooling on those were interesting. Also worked with the earlier Cascade BSTDX 9000 and CBX 500.

  9. comment
    Comment #25540763

    The most brutal thing I saw was when someone compromised a customer ISDN router (the small Ascend boxes with the curses UI) and changed the creds to login to their ISP and disconne…

  10. comment
    Comment #25540409

    Tragically there was nothing simple about ISDN. A customer would have to know their switch type at the CO and there were a number of other things that could break it. At least with…

  11. comment
    Comment #25540353

    Yep it's the main spot in nashville for voice stuff. Has local access switches (dms 100), tandem, and LD goes out of there. At&t I think also has their long haul optical transport …

  12. comment
    Comment #25540311

    Back when I worked in a CO the engineering goal was to be able to run the building load on gen for at least 24 hours straight before getting fuel trucks. We had weekly gen tests to…

  13. comment
    Comment #25022136

    Dark docs is kind of watered down history. The previous mentioned book is great. Back in the 90s Discovery actually had documentaries that covered this from the people actually inv…

  14. comment
    Comment #25022126

    Cables don't equal good connectivity. Interconnection facilities are the best places to be (or rather what you want to be connected to in order to establish as many adjacencies). 1…

  15. comment
    Comment #24999631

    Yes. Which raises the question why don't we have something to detect/mitigate this.

  16. comment
    Comment #24925846

    Yes. Phone phreaking in the 90s involved a ton of learning the lingo and the ins and outs of the phone company. It was even weirder to go work there later on and found how much tha…

  17. comment
    Comment #24897512

    Or ddosing a site offline. Remember that only a handful of companies today have the infrastructure to handle large attacks.

  18. comment
    Comment #24838731

    They could use their own timing source, though? I recall back in the day being able to pull timing source off a circuit.

  19. comment
    Comment #24807061

    Chargen isn't that popular now. The big things these days are: spoofers who generate a ton of syns to legit destinations which result in a lot of syn+ack to the victim. Bcp38 would…

  20. comment
    Comment #24772761

    Yes. As someone who has to support network infrastructure and had many network issues (at all levels) bubble up to them since the start of covid/wfh - broadband networks are being …

  21. comment
    Comment #24740802

    I remember as a pc tech (before they did that geek squad stuff) having to validate computer returns. The amount of stuff people would pull daily always amazed me. Putting bricks in…

  22. comment
    Comment #24634715

    Could you drop some IP prefixes you believe are hijacked and timestamps? I can probably help out and bring this to folks who can take action. (I have to deal with hijacks frequentl…

  23. comment
    Comment #24630687

    Yes. Many of these shops follow the same design patterns. Ports for hosts at L2 that they bill on that are part of a big Vlan/L3/SVI interface that has tons of customers. I've seen…

  24. comment
    Comment #24628756

    It'd be nice if we could address some things like BCP38 (anti spoofing), RPKI, route filtering and folks who knowingly support infrastructure that's used for outbound ddos (c2s and…

  25. comment
    Comment #24628617

    They're already doing massive flow sampling at the GFW complexes today. They can police down to individual flows if they want to. They scale wide by distributing out traffic based …