Live data from Hacker News

The Pirate Bay – North Korean hosting? No, it’s fake

rdns.im

51–60 of 66 posts

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#51
post #46

Earlier quoted context omitted.

Yes, let's make internet freedom a joke. But we already have anonymous for that. Edit: The real tragedy is the people excusing NK so they can have their way. I'm not saying they are dumb, just unlucky at thinking. Edit2: No defense of hackivists making a mockery of themselves? How much does TPB make?

> The real tragedy is the people excusing NK so they can have their way. I've read this sentence a few times, left, come back, and re-read it a few times, and I still can't really make heads or tails of it. Are you saying that people doing this (pretending their website is hosted in North Korea) makes light of the suffering of people who live in North Korea? I don't understand how you can conclude that: The whole poi…

> The whole point is that, as bad as North Korea is, it still doesn't go after torrent sites.

You might be unlucky at thinking.

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#52
post #46

Earlier quoted context omitted.

> The real tragedy is the people excusing NK so they can have their way. I've read this sentence a few times, left, come back, and re-read it a few times, and I still can't really make heads or tails of it. Are you saying that people doing this (pretending their website is hosted in North Korea) makes light of the suffering of people who live in North Korea? I don't understand how you can conclude that: The whole poi…

> The whole point is that, as bad as North Korea is, it still doesn't go after torrent sites. You might be unlucky at thinking.

Hey, I never implied North Korea had any torrent sites to go after.

Besides, that's their thinking, not mine. If anyone's unlucky it's them.

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#53
post #27

Earlier quoted context omitted.

Hmm, isn't the Korean subnet allocation fixed? If an IP falls in that range, doesn't it belong to the Korean ISP? How can someone be assigned that IP by someone other than the ISP who owns it?

BGP has almost no security. Anyone can hijack any IP address, especially if you can find an unused /24 so that the owner isn't inconvenienced.

Considering the ever impending IPv4 exhaustion, couldn't we just "re-use" NK's IP range, since they're unlikely to need them soon?

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#54
post #53
post #27

Earlier quoted context omitted.

BGP has almost no security. Anyone can hijack any IP address, especially if you can find an unused /24 so that the owner isn't inconvenienced.

Considering the ever impending IPv4 exhaustion, couldn't we just "re-use" NK's IP range, since they're unlikely to need them soon?

They actually do run services on those ranges and make use of at least a portion of their IP space.

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#55
post #34

Earlier quoted context omitted.

So you can basically start telling the internet "I AM THIS IP" and eventually the internet will go "YOU ARE THIS IP" ?

Yes. As far as I know, that's what happened when Iran started blocking YouTube in Iran and mistakenly blocked it in entire world. Luckily, AFAIK, BGP is trust-based, so things go to normal pretty quickly.

Did you mean Pakistan?

http://www.ripe.net/internet-coordination/news/industry-deve...

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#58
post #52

Earlier quoted context omitted.

> The whole point is that, as bad as North Korea is, it still doesn't go after torrent sites. You might be unlucky at thinking.

Hey, I never implied North Korea had any torrent sites to go after. Besides, that's their thinking, not mine. If anyone's unlucky it's them.

> as bad as North Korea is, it still doesn't go after torrent sites.

Because they don't have any? I think I'll stick with my previous answer.

Re: The Pirate Bay – North Korean hosting? No, it’s fake

#59

Earlier quoted context omitted.

> when ti comes down to it any AS can advertise any route they want If the provider isn't filtering, sure. > Most edge routes are configured to simply trust routes as they come in Actually, edge routers are where your prefix filtering takes place. It's much more difficult to filter at the "core".

Very true, but where is the core? I've setup many BGP peering sessions, and yes all of those direct edge connections into tier 1 providers is generally filtering prefixes longer than /24. These are where the big propagation problems happen. Whoops, I just advertised my internal network (including a bunch of /31 and /32s) to the Internet either clobbering route tables (capacity problem) or stomping routes. This is why…

It's not hard to "do things right". We filter our customers advertisements to us (requiring them to register their routes in a routing registry and then manually verifying them before allowing the prefixes to be accepted) as well as filtering what we advertise upstream (and our upstream performs filtering on our advertisements as well).

If you advertise /31s and /32s, well, you shouldn't be redistributing into BGP and, of course, your upstream should be filtering those prefixes and throwing them away. Problem solved.

Perhaps the majority of people here on HN don't understand BGP. Then again, most of them probably don't need to.

Post reply on HN