!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

917 Members
Declaratively manage your switching, routing, wireless, tunneling and more.275 Servers

Load older messages


SenderMessageTime
21 Aug 2021
@6aa4fd:tchncs.de6aa4fdseems pretty straightforward on paper02:57:25
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zone
In reply to @6aa4fd:tchncs.de
I'm not really qualified to comment on it. I couldn't design something that would get me mail from Tokyo in an hour, let alone a quarter second
I only know that there's better things out there, not that I could design them.
02:57:54
@6aa4fd:tchncs.de6aa4fdBTW if you have a server center where you have ipv6 without HE, you don't need HE at home, you can just tunnel to that DC02:58:05
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneSCION being one of them, the most promising.02:58:07
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneThere's actually a remarkable amount of layer 2 replacements though.02:58:16
@6aa4fd:tchncs.de6aa4fdmaybe I misunderstood your network topography02:58:23
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zone
In reply to @6aa4fd:tchncs.de
BTW if you have a server center where you have ipv6 without HE, you don't need HE at home, you can just tunnel to that DC
Tunnel to it how?
02:58:37
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneYou mean use it as my ipv6 provider instead of hurricane electric?02:58:47
@6aa4fd:tchncs.de6aa4fd
In reply to @matthewcroughan:defenestrate.it
You mean use it as my ipv6 provider instead of hurricane electric?
yeah. that is all you are paying he for, using their servers as endpoints
02:59:21
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneI suppose. Though I actually can't do that, because I don't have control over the network there.02:59:43
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneAdditionally, they only have a /64 block, so they can't actually do that.02:59:51
@6aa4fd:tchncs.de6aa4fda data center with only a /64? what a joke03:00:11
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneWell, it's just a business connection.03:00:22
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneBT (British Telecom)03:00:27
@6aa4fd:tchncs.de6aa4fdthat is like a v4 network with only one vlan03:00:30
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneYup :D03:00:35
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneHorrible.03:00:36
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneand the network administrator is a BOFH03:00:54
@6aa4fd:tchncs.de6aa4fddo they just use Mac based firewalling?03:01:01
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneNot sure about the firewall details, it's a free for all.03:01:18
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zonehttps://youtu.be/GE94BJg3U1Q03:01:26
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneThis video should explain it.03:01:28
@6aa4fd:tchncs.de6aa4fd
In reply to @matthewcroughan:defenestrate.it
Not sure about the firewall details, it's a free for all.
time to get ya shit out brotha
03:06:05
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneI'm not that paranoid really.03:06:16
@6aa4fd:tchncs.de6aa4fdanyways good luck with the tunnel, ping me if it hisses03:06:37
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneA NixOS machine is a pretty good and secure internet facing base.03:06:39
@6aa4fd:tchncs.de6aa4fdsure unless they get any user with read access03:07:00
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneOnly two users on the machine. Me and the other Administrator.03:07:31
@6aa4fd:tchncs.de6aa4fduntil we have granular store permissions its pretty dicey as production03:07:37
@matthewcroughan:defenestrate.itmatthewcroughan - nix.zoneTwo users with a shell, and ssh access, ssh keys only.03:07:47

Show newer messages


Back to Room ListRoom Version: 6