Live data from Hacker News

Why I quit this battle

badmodems.com

111–120 of 126 posts

Re: Why I quit this battle

#111

Earlier quoted context omitted.

> And you, the customer, are now stuck with 6Mbps DSL from a single provider for $80 a month. Almost everywhere in the US you can get at least 25mbps for less than $80 a month. And within almost all cities and their suburbs, you can easily get 100mbps+ for less than that. Unbundled network elements was a stupid utopian idea to begin with. No one who knows a lick about broadband policy actually wants to go back to any…

My house can only get a max of 6Mbps from DSL, but I do have 12 since I am able to use 2 DSL at one.

Oh, yeah, that can be fun, in theory I can have at the same time :

- 4 different fiber ISPs (in practice only 2-3, because 2-3 of them are sharing the same fiber line)

- 1 ADSL on the copper line

- up to 4 5G connections

- who knows how many satellite connections

That would be total overkill for 99+% of the people of course, but it's really nice to have 0 downtime when switching ISPs because the previous one still works when you start using the new one !

Re: Why I quit this battle

#112
post #43

Earlier quoted context omitted.

I'll echo the dead commenter. The text is quite bitter, but nothing about seems "psychotic".

Me too. Not sure why artifact_44's comment is dead so I vouched for it, I don't see what is gained by throwing around psychiatric terms, used pejoratively, for no good reason (could there be a good reason on HN? I doubt it but I don't see one here).

It's far easier for the lazy to dismiss based on tone rather than content. Crazy people are distressed (at least when we notice them), so distressed people are crazy. But hidden in PC language about concern, illness, and help, while pretending to be a psychologist.

Re: Why I quit this battle

#113
post #94

Earlier quoted context omitted.

I forgot, VPNs are unpopular on HN because? Someone popular said so? Lol. This includes wireguard to your vps too if that helps. Anything but nude networking as I call it.

It's unpopular from my standpoint because it "necessitates/assumes the trustworthyness of an external provider of compute service". It being considered a default implies you waive 4th Amendment protections. Whereas securing your own network keeps them intact within your infrastructure. Cloud is not always the answer. Learning to network and compute, is.

Not at all, the external provider (cloud/tor) is still untrusted, I never implied that. It is a risk reduction strategy. If you care about security you must define threat model and risk boundaries.

Re: Why I quit this battle

#114

Who is this Kevin from DSLReport?

Well from reading the thread on DSLreports he seems quite knowledgeable. The same frankly cannot be said for the badmodems site operator. This guy makes a self deprecating comment (he called himself a moron) and is offended when it is repeated back to him. The comment from kevinds about "grown-ups" was not the most polite comment ever - but really if that was all it took this xymox dude definitely needed a change of…

I have participated in the forums of dslreports.com for years and kevinds is one of the more knowledgeable in various areas.

The badmodems guy seems to be upset that he is outsmarted, honestly. Thanks to him for the good he has done, but if he can't handle being in a room with others smarter than him, this departure is for the better.

Re: Why I quit this battle

#115
post #32

I don't know about the work he's been doing or what fight he's been part of. But the text itself seems bitter and psychotic, it's good that he leaves the battle behind and takes a break. I know that too much truth can be tough to handle, but don't singlehandedly try and fix the bad corners of the world. I'm just typing my honest opinion at risk of sounding insensitive, but it truly is great to just let go and move on…

It reads exactly like a typical ranty tech forum post to me. I think us readers may exaggerate the effect if those same words are put to front-page HTML.

Re: Why I quit this battle

#116

Earlier quoted context omitted.

Usually, dark fiber means that you got that cable (with one or more hairs) completely for yourself, as a customer. It is not leased line, you are not sharing it, it is your fibre to communicate with. It is more expensive, for sure, since Carrier could make lot of $$ out of it (many many Internet Customers for example), but at the end of the day it is cost efficient actually since you have no other interference on you…

I think you got your definitions mixed up. Even the name means: "it's dark, no light, as in no data, because that's what light is in this case"

https://flexnetworks.ca/what-is-dark-fibre-why-would-i-want-....

It has two meanings. I have heard it most commonly used in reference to private fibre networks.

Re: Why I quit this battle

#117
post #63

His experience is similar to one I had a long while back when trying to report to Comcast that I found one of their sysadmin's home directory on GitHub. It had ssh keys, passwords, configs, scripts, etc etc. When I reported it on their support forum, some random dude responded basically saying I found nothing, insulting me, etc. It's wild to me how quickly people will go to insult in these situations. I ended up maki…

> and that if they did a bug bounty program, they'd go bankrupt.

This is why the bad guys win so often. Even companies that do pay bug bounties often pay very little compared to what exploits could be sold for.

Re: Why I quit this battle

#119
I can understand some of the concern. And while I will admit havent dove too deeply into the minutia how many of these DOCSIS manage modems at scale, after watching his presentation i felt most of that could or should be inferred.

For example:

I was well aware that you needed to get a MAC address whitelisted and then from there a config, including your speed tier would be pushed. I somewhat assumed DHCP reservations were used for that, on a management network, with TFTP for the config file. It makes sense.

This was also solidified by that fact that in most cases during an internet outage, my routers IP would revert back to an RFC1918 address.

Ive never used "landline" services from these providers so SIP wouldn't really be in scope but its not surprising that would be on a separate network and there may be some ability there to "sim-ring" calls. Thats standard in a lot of SIP implementations and probably a feature even a home user would want (ie: ring my cell phone and allow it to connect if phones on the modem dont work).

Things like redirecting traffic etc would get noticed with a ton of stuff being SSL/TLS encrypted. But i would agree some/a lot of this should be using TLS as well.

That said I have never mucked with any of it because.

1. I consider the modem, which i own, to be untrusted and while its inside my DMARC, its outside my security perimeter. Its not directly managed or controlled by me. Anything on it or passing through it should be considered hostile and subject to inspection or filtering.

1a. This is 100% of the reason why i run my own firewall, separately, from a device managed by the ISP and why i avoid AIO style modem/router/firewall devices.

2. I am unsure what mechanisms an ISP may employ to ensure certain things (like upstream/downstream configs) are not tampered with. This could be as simple as a hash check monthly or when billing rolls over to ensure my version is the same as theirs on their servers. Changing that could get be out of bounds with the TOS and canceled, which i have few other options.

So its incumbent of me to basically mind my business. I can also see me "unleashing" my speed tier could impact others on my node, which may cause calls from other customers and an investigation shows that theres a sudden over subscription outside of their norms/standards. Again could be considered malicious and cancel my service/blacklist me or the address.

WITH that said, i do understand the concern with respect to AIO style devices. But again i would consider anything on the ISP network to be "red" and no different from the relative hostility of the greater internet. But i dont see the concern with DHCP traffic and arp traffic, that seems normal, even on a ISP net, its how devices get online and authenticate and find the next hops on the network.

ISP's should do better about segmenting that though, and should probably not provide an AIO solution in general or if they do have one with actual phsyical segementation (ie a box with 2 boards independent of each other connected the same way a modem and router would separately) but I understand why they may want to have simpler setups as well from a customer support standpoint considering the average technical prowess of their userbase.

Re: Why I quit this battle

#120

Earlier quoted context omitted.

I thought "dark fiber" meant unused fiber. How can it be dark if you've got services running over it? Is there some other meaning in this context?

I used the term "dark" as in unshared, and as a result, you use it the way you like it. Also, the term looks like it has both meanings. Having a "dark fiber infrastructure" means having a web of unconnected fiber cables point to point, but since you connect your own devices to it, you don't have to share it with others. As a result, its presence and its state is only known to you (i.e. it's in the dark). I understand…

It's also not uncommon - people often describe big tech using dedicated lines they didn't lease from people as "dark fiber".
Post reply on HN