|
|
whats up with this: traceroute to m-net.arbornet.org (209.142.209.161), 64 hops max, 40 byte packets 1 10.0.0.1 (10.0.0.1) 0.546 ms 0.507 ms 0.452 ms 2 10.96.128.1 (10.96.128.1) 7.713 ms 9.331 ms 14.570 ms 3 dstswr1-vlan-2.rh.nantny.cv.net (67.83.252.161) 8.384 ms 17.946 ms 8.736 ms 4 r1-ge-11-0.mhe.prnynj.cv.net (67.83.252.129) 9.560 ms 9.314 ms 9.978 ms 5 r1-srp-1-0.cr.prnynj.cv.net (67.83.239.49) 9.433 ms 8.123 ms 9.103 ms 6 r2-srp13-0.in.nycmny83.cv.net (167.206.12.148) 11.184 ms 11.909 ms 9.401 ms 7 so-2-0-0.gar2.NewYork1.Level3.net (167.206.8.62) 10.759 ms 10.315 ms 11.025 ms 8 unknown.Level3.net (209.247.9.205) 13.191 ms 10.876 ms 12.096 ms 9 so-0-0-0.mp1.Detroit1.Level3.net (64.159.0.193) 48.693 ms 48.387 ms 47.497 ms 10 gige9-0.hsipaccess2.Detroit1.Level3.net (64.159.0.206) 46.737 ms !H * 49.558 ms !H
42 responses total.
YUPS DOWN-EEEEEEDDD [naftee@austin naftee]$ ping arbornet.org Warning: no SO_TIMESTAMP support, falling back to SIOCGSTAMP PING arbornet.org (209.142.209.161) from 209.196.48.203 : 56(84) bytes of data. --- arbornet.org ping statistics --- 10 packets transmitted, 0 packets received, 100% packet loss [naftee@austin naftee]$
so.. any info? any official or un-official word?
I have my personal opinions but I whould piss of most of the staff with them so I will not say anything
This response has been erased.
oh no . . we wouldn't want to *piss off*
any mnet staff . .
This just in.
Republican Guard paratroopers have siezed the
Ann Arbor Municipal Airport, opening a second
front in the war against M-Net.
This response has been erased.
i'm not sure what aryeh is getting at, but he can feel free to share his thoughts here. think we were BUFFER OVERFLOWED? HAXORED? all possible, i guess. i talked to wwnet. someone launched a DoS against us last night and our ip address is being filtered. hopefully the attack has stopped and our address will stop being filtered again. makes me feel really great that people care so much about public access systems these days.
Yeah, we were null routed late last night. I'm on m-net right now though. :) Of course, it's through the serial port of ratbert. :)
a little update: wwnet is not the one that has filters in place, it's level3. level3 is wwnet's upstream provider. It's pretty bad when we piss off our ISP's ISP. :)
This response has been erased.
re #6. That reminds me. I was driving home from work on Tuesday, and when I was getting on to the highway, there were 6 Appache helecopters up in the sky right to the left of me. I thought "Holy Shit, what's going on." and just then the traffic dude came on and said not to be alarmed cause they were just on a transport mission from Fort Carson, WY to Colo. Springs. heh
This response has been erased.
mmm....sweaty, sweaty ray liotta.
This response has been erased.
...and if you're sally struthers, YELL REAL LOUD.
This response has been erased.
This response has been erased.
WE SHOULD IMPEACH HIM / WE DID IT TO VOID!
how are things going re getting ,mnet up?
This response has been erased.
resp:18,resp:19,resp:20,resp:21 : I've talked to Rex, and he's aware of the issue. WWNet does not wish to call Level3 or XO (their 2 providers, who are currently null routing us) until EOB today, because if the attack is still ongoing, they do not wish to have their customers impacted. We understand this. Dave will contact both Level3 and XO this evening and have those null routes removed and plug m-net back into the wwnet network. Here is the information I received from james this afternoon regarding the exact circumstances of the incident: 03/27/2003 @ 13:14:40 james: well last night there was a huge DoS attack on them... so they are unplugged here, as well as being null routed at level3 and xo 03/27/2003 @ 13:14:54 james: dave said it was enough to take down all of xo michigan 03/27/2003 @ 13:18:35 james: it looked like it was a botnet that was spoofing packets.... some of the IPs were real, but most of them were not valid IPs 03/27/2003 @ 13:21:30 james: i dont know if the attack is still going on, but we need to contact level3 to have them remove the filters when its stopped 03/27/2003 @ 13:23:37 james: oh yeah, we only have 20Mbits from them and it was full... but the amount of bandwidth wasnt the major problem it was the packets per second that hurt 03/27/2003 @ 16:02:54 james: dave said he wasn't going to try to get it removed from level3 until after business hours... if it was still going on and it gets removed it would fuck everything up
sounds like a bunch of your liberal friends decided that shutting down m-net as a civil disobedance act to protest the war.
More like aryeh threw a fit.
your a fine one to be talking ;-)
so whats the story now?
We've notifed Homeland Security.
Homerland Insecurity
DID ARYEH DO IT OR POLYTARP? WHICH ONE TONSTER?
This response has been erased.
Because polytarp pissed off the intarweb.
Tony, thanks for doing so much on this.
yeah, thanks.
I didn't do anything. THANK U DONEY!
M-Net is back up now.
DANKS DONY AND JEP
really? coool
You're welcome. I'm glad you appreciate my efforts in the matter for I certainly strove mightily to combat the awful forces which separated us all from M-Net.
M-box is unreachable. Trace ends at a Cisco within wwnet. Is it another DoS attack?
|
|
- Backtalk version 1.3.30 - Copyright 1996-2006, Jan Wolter and Steve Weiss