Author: j2sw
Equinix Exchange Port FAQ
For customers ordering ports on the Equinix exchange
Mikrotik Router OS 6.22 Released
From the ChangeLog
What’s new in 6.22 (2014-Nov-11 14:46):
*) ovpn – added support for null crypto;
*) files – allow to remove empty disk folders;
*) sntp – fix problems with dns name resolving failures that were triggering
system watchdog timeout;
*) eoip/eoipv6/gre/gre6/ipip/ipipv6/6to4 tunnels have new features:
tunnels go down when no route to destination;
tunnels go down for 1 minute when transmit loop detected, warning gets logged;
new keepalive-retries setting;
keepalives enabled by default for new tunnels (10sec interval, 10 retries);
*) improved connection-state matcher in firewall – can match multiple states in one rule, supports negation;
*) added connection-nat-state matcher – can match connections that are srcnatted,dstnatted or both;
*) 100% CPU load caused by DNS service fixed;
*) 100% CPU load caused by unclassified services fixed;
*) 6to4 tunnel fixed;
*) new RouterBOOT firmware for Metal 2SHPn to improve wireless stability;
Download at http://www.mikrotik.com/download
Monday Video – Fiber to the Premisis
Post Show Specials
MTIN is offering some post WISPAPALOOZA specials
-Dude monitoring Instance. Bring up your own external Dude service for monitoring your network.
$20 a month with a free setup ($400 value)
-Hosted Spam Filtering for 1 domain $12 per month. 99.99% accurate
-Backup DNS Services $10 per month.
These specials are good until Halloween. After that they expire.
Brothers WISP WispaPalooza 2014
WispaPalooza Highlights
Wanted to do some quick Highlights from the WISPAPALLOZA 2014 show. This is not a comprehensive list by any means. Just some companies that caught my eye that I am doing more research on:
Rohn was there with some good information. Was nice to see such an industry anchor be at the show.
ET Industries with their multi beam sector
Chat with us at WISPAPALOOZA 2014
Find and talk to Justin at WISPAPALLOZA 2014
Some things to help you in Vegas:
Twitter Hash tags:
#wispapalloza
#wispalooza2014
Twitter accounts to follow:
@j2sw
@mtinnet
@rharnish
@mhammett
@wisapboard
Facebook Page for MTIN:
https://www.facebook.com/mtinnet
BGP lockdown hints
As I am preparing talks for the upcoming WISPAPALOOZA 2014 in Las Vegas I am making some notes on advanced BGP. If you are running BGP, and want to lock it down a little here are some general hints. If you want more attend my session in Vegas or look here afterwords for the full rundown.
General Hints for BGP filter.
1.Filter all all the bogon addresses unless you have a specific need. If you have to ask you probably don’t have a need so filter it. Bogons are:
10.0.0.0/8
,
172.16.0.0/12
192.168.0.0/16
169.254.0.0/16
2.Don’t accept your own IP space from upstreams. There should be no reason someone is advertising your own IP space back to you that is not a downstream customer. I mean dowstream as to someone you have assigned your own IP space to.
3.Limit the maximum number of prefixes your router will accept.
4.Most ISPs don’t announce anything less than a /24. Configure your filters to not accept anything smaller than a /24 unless you have a specific need to do so.
5. Separate iBGP from eBGP.
6.Understand the defaults for the platform you are using.
We are excited to announce the Midwest Internet Exchange (midwest-ix). Current Locations include:
733 West Henry Street Indianapolis, Indiana
350 East Cermak Chicago, Illinois.
Please visit www.midwest-ix.com for details (web-site under construction)