Viewing profile — kitteh
kitteh
HN member- Joined
- Tue, Jul 16, 2019, 7:36 AM UTC
- HN karma
- 873
- Public activity
- 227 items
- HN profile
- View on Hacker News ↗
About kitteh
No profile information was provided.
Recent public activity
-
comment
Comment #28856872
There's another forum where a Jacksonville ARTCC controller echoed they had 15 people call out (not due to some anti vax movement) and had weather looming on top of the military wh…
-
comment
Comment #27009976
It should be. Also this was covered in a reinvent presentation about the aws network.
-
comment
Comment #27006294
Inter region traffic always goes over the backbone (this includes EIP to EIP). This also includes going from EC2 to any service like S3 in another region. Except China. China to re…
-
comment
Comment #25769957
It would revert to not being signed, which routes just fine. You just don't get the additional security benefits. It won't turn it into invalid if I'm following what you are saying…
-
comment
Comment #25769087
There can be legitimate use cases why a network maybe have a very few amount of prefixes not signed or even invalid: canaries and beacons. For example, running tests to a signed, u…
-
comment
Comment #25541951
Lack of redundancy due to cost probably has something to do with it. Same issue with internet peering in quite a few cities (no viable 2nd location, costs a lot of money to double …
-
comment
Comment #25541937
AT&T has been pushing really hard on folks in the last year to take early retirement packages that would give you a fraction of what you would have gotten if you stayed on until be…
-
comment
Comment #25541480
I was a big MaxTNT customer. The cooling on those were interesting. Also worked with the earlier Cascade BSTDX 9000 and CBX 500.
-
comment
Comment #25540763
The most brutal thing I saw was when someone compromised a customer ISDN router (the small Ascend boxes with the curses UI) and changed the creds to login to their ISP and disconne…
-
comment
Comment #25540409
Tragically there was nothing simple about ISDN. A customer would have to know their switch type at the CO and there were a number of other things that could break it. At least with…
-
comment
Comment #25540353
Yep it's the main spot in nashville for voice stuff. Has local access switches (dms 100), tandem, and LD goes out of there. At&t I think also has their long haul optical transport …
-
comment
Comment #25540311
Back when I worked in a CO the engineering goal was to be able to run the building load on gen for at least 24 hours straight before getting fuel trucks. We had weekly gen tests to…
-
comment
Comment #25022136
Dark docs is kind of watered down history. The previous mentioned book is great. Back in the 90s Discovery actually had documentaries that covered this from the people actually inv…
-
comment
Comment #25022126
Cables don't equal good connectivity. Interconnection facilities are the best places to be (or rather what you want to be connected to in order to establish as many adjacencies). 1…
-
comment
Comment #24999631
Yes. Which raises the question why don't we have something to detect/mitigate this.
-
comment
Comment #24925846
Yes. Phone phreaking in the 90s involved a ton of learning the lingo and the ins and outs of the phone company. It was even weirder to go work there later on and found how much tha…
-
comment
Comment #24897512
Or ddosing a site offline. Remember that only a handful of companies today have the infrastructure to handle large attacks.
-
comment
Comment #24838731
They could use their own timing source, though? I recall back in the day being able to pull timing source off a circuit.
-
comment
Comment #24807061
Chargen isn't that popular now. The big things these days are: spoofers who generate a ton of syns to legit destinations which result in a lot of syn+ack to the victim. Bcp38 would…
-
comment
Comment #24772761
Yes. As someone who has to support network infrastructure and had many network issues (at all levels) bubble up to them since the start of covid/wfh - broadband networks are being …
-
comment
Comment #24740802
I remember as a pc tech (before they did that geek squad stuff) having to validate computer returns. The amount of stuff people would pull daily always amazed me. Putting bricks in…
-
comment
Comment #24634715
Could you drop some IP prefixes you believe are hijacked and timestamps? I can probably help out and bring this to folks who can take action. (I have to deal with hijacks frequentl…
-
comment
Comment #24630687
Yes. Many of these shops follow the same design patterns. Ports for hosts at L2 that they bill on that are part of a big Vlan/L3/SVI interface that has tons of customers. I've seen…
-
comment
Comment #24628756
It'd be nice if we could address some things like BCP38 (anti spoofing), RPKI, route filtering and folks who knowingly support infrastructure that's used for outbound ddos (c2s and…
-
comment
Comment #24628617
They're already doing massive flow sampling at the GFW complexes today. They can police down to individual flows if they want to. They scale wide by distributing out traffic based …