Since taking on a BGP routed /24 several weeks ago I've occasionally
watched my gateway firewall logs in realtime to get a sense of how much
traffic I get from the Internet at large for my little section of the
AMPRNet.
I get an average of 2.7 packets a second in random scanning traffic.
Scaling this up to the /8 that comprises AMPRNet, I surmise that the UCSD
gateway must get something like 176k packets a second. Assuming an average
SYN packet of 20 bytes, this is something like 283 gigabytes per day.
Is that about right, Brian?
-J
Hi there...just noticed in my Mikrotik log this is bouncing. Anyone know
anything?
seems to have started 9:33:34 AM EST
---
This email has been checked for viruses by AVG.
https://www.avg.com
> The subject line of this message is clearly wrong.
> 255 of the 821 subscribers to this mailing list use @gmail.com
> mailboxes.
> If there were a problem with gmail, it would have shown up long
> ago.
I have a bit mixed feelings about it. As a coordinator I get regular mail
from gmail users and often experience that my replies do not arrive or get
marked as SPAM. I get reminders about requests that I have already processed,
and sometimes a message "oh sorry I found your reply in the SPAM folder".
At first I blamed my use of an @amsat.org address, and also using that address
as a From: address in my replies. Due to the SPF record on amsat.org it can be
expected that such use leads to marking of mail as suspicious.
So I switched to using another alias service (@vrza.nl being offered by one of
our amateur radio societies), but the situation did not improve. I still get
reports of my mail ending up in the SPAM folder at gmail. But the vrza.nl
domain has no SPF record.
Apparently there is some relation to the user receiving the mail. Some users
receive all my mail without problem, no matter if sent from @amsat.org @vrza.nl
or another source. Others report that it is treated as SPAM for each of those.
Not being a gmail.com user myself, I do not exactly know what features it offers
for whitelisting or other special treatment of mail, or maybe what it learns
automatically. It could be that sending back and forth several mails eventually
leads to an address getting on the whitelist automatically. The same could be
true for mail server IP addresses (like a mailinglist server), and it could be
that knowledge built in the past also affects the results of new SPAM criteria
added later.
It is all a bit opaque, and when you want reliable and predictable mail service,
using those mailservices certainly is not the best choice... or at the least
check the SPAM folder regularly. (but I have also received reports of mail
being dropped and not placed there)
Rob
TL;DR:
In never ending battle against SPAM and phishing attacks, some email
providers are now using DMARC, rejecting or marking as SPAM email if the
originating mail server doesn't match the authorized ones for the
provider's service.
For example:
- Yahoo! is flat out rejecting e-mail from yahoo! mail users if it comes
from non-authorized servers.
- Google is marking e-mail from gmail users as SPAM if it comes from
non-authorized servers.
Unfortunately this breaks mailing list software like mailman (used for this
list) which tries to make e-mail from the list appear as if it is coming
from the original sender.
The changes that are required to fix the issue change the functionality of
the list software in ways users may not like.
I found this out while applying DMARC for my my own domains.
More info can be found at these sites:
https://wiki.list.org/DEV/DMARChttps://dmarc.org/
Fun.
-Neil
--
Neil Johnson
https://news.ycombinator.com/item?id=18407173
Note: I'm NOT advocating anything like that for 44.0.0.0/8.
It's just going to be fun to watch the market for IPv4 address space boom
and then bust when IPv6 adoption finally reaches critical mass.
-Neil, N0SFH
--
Neil Johnson
Hello group,
what can cause ampr-ripd to stay at " waiting for RIPV2 Broadcast".I
opened
the DMZ port of my main routerwhere my raspbery PI is connected. I know the
DMZ work. I tested if from outside.
Any tought?
73 de Jean
--
Sysop de: VE2PKT (BBS), VE2PKT-13 (URONode)
: VE2RCN-1, VE2RGM-1, VE2RGC-1, VE2RVA-1, (The-Net)
: VE2PKT-9 (DXCluster), VE2PKT-10 (Winlink Gateway)
RF:
147.435 Mhz (1200 Bps),
Internet:
Telnet://nodes-ve2pkt.dyndns.org <http://xrouter-ve2pkt.dyndns.org> port 23
(Network Node)
Telnet://fbb-ve2pkt.dyndns.org port 6300 (FBB BBS)
Telnet://ve2pkt.dyndns.org port 9000 (DXCluster)
E-Mail:
packet: ve2pkt(a)ve2pkt.#qbc.qc.can.noam
ampr net: ve2pkt(a)ve2pkt.ampr.org
Inet: ve2pkt(a)gmail.com
Hi! I am kind of new to all this ampr thing. Been following this mailing list and trying to have my setup in a way that will be stable.
I have a vps running openvpn server.
I have an edge router
I want to take my 44 IP address range and distribute them to a port on my edge router but I want to keep my wan/lan configuration as it is and transparent to the 44 range
In what way should I do it?
I am totaly lost.
Hi there
Has someone tried doing A gateway with cellular modem ?
I understand that cellular modems (at least in our country) do few times NAT (carrier-grade nat) and therefore the IP it get is not an IP accessible from the outside world so probably cant do any IPIP to the 44 net router
Is that true ? or is there any solution ?
We dont have IPV6 systems here yet which might overcome this problem only IPV4
any Info on the subject is appreciated
Regards
Ronen -4Z4ZQ
http://www.ronen.org
[http://www.ronen.org/My-QSl.jpg]<http://www.ronen.org/>
Ronen Pinchooks (4Z4ZQ) WebSite<http://www.ronen.org/>
ronen.org (Ronen Pinchooks (4Z4ZQ) WebSite) is hosted by domainavenue.comwww.ronen.org
> Possibly a router not having updated the script to 3.2 after upgrade to
> ROS 6.41 and later.
Yes, that would be the reason for sending MNDP broadcasts.
Actually I don't mind that those are sent, it can be useful as it provides the info
I gave in the first post. But of course it would be nice when system->identity is
changed e.g. to the callsign so it is easier to contact people when something is wrong.
However, the main issue is that it is using a public IP that is not in the gateway list
so these packets cause a log message and are dropped here.
Likely the public IP has changed without the owner noticing it or without him realizing
that he needs to update the portal entry.
(of course this can be avoided when using a DNS name in the portal and some dynamic DNS
update script, or even simply "IP Cloud" when this MikroTik is directly in the public IP)
Rob
Who is running an unregistered gateway at public IP address 72.192.178.228 ? (Cox communications)
It is a MikroTik RB750Gr3 router running 6.42.6 firmware with default identity "MikroTik" broadcasting
MNDP packets to all other gateways, apparently running Marius' ampr-rip script, but the address is not
appearing in the portal. Maybe its address has changed but not updated in the portal?
Rob