@njoseph from the mirror admin:
> electrical failure of the switchboard..while I am away
> will be fixed on next Saturday ouch
Notices by sahilister (sahil@toots.sahilister.in)
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Sunday, 26-Jan-2025 20:09:42 JST sahilister -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Sunday, 26-Jan-2025 20:02:10 JST sahilister @njoseph also, ideally in next Mirrorbit scan, the mirror should be marked out of rotation. Don't know how frequently Lineage check. Let's see.
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Sunday, 26-Jan-2025 19:59:51 JST sahilister @njoseph just pinged the mirror admin regarding the issue.
Will update. -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 22-Jan-2025 12:50:54 JST sahilister @pmevzek I'm strongly leaning on PowerDNS (with BIND backend) because of some experience with that.
> ... different OS and nameservers software
for security reasons that is? Can you elaborate a bit here.Also, If I understand correctly IXFR/AXFR should flow fine across different name server software primary-secondary combinations (?)
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 22-Jan-2025 12:46:07 JST sahilister @jtk what're your thoughts on having a hidden primary? Is that a common occurrence in the wild?
I'm thinking of adding some secondaries (off net, not managed by me as well), so in case my systems go down, updates can still be pushed via this "hidden" primary to everywhere as well.
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 22-Jan-2025 02:14:08 JST sahilister How good (or a bad) idea is to run ones own authoritative nameservers?
Any tips/tricks/suggestions or gotyas to remember?
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Friday, 17-Jan-2025 12:51:28 JST sahilister Using Hetzner vSwitch (https://docs.hetzner.com/robot/dedicated-server/network/vswitch/) one can connect nodes across locations and internal traffic (across locations) between them is "free of charge".
Theoretically, one can bootstrap a CDN (with a Hetzner origin) with POPs in SG, FI, US and DE and save quite a bit of transit cost for origin fetchs.
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Sunday, 12-Jan-2025 14:56:47 JST sahilister Wrote about Prosody Certificate Management With Nginx and Certbot - https://blog.sahilister.in/2025/01/prosody-certificate-management-with-nginx-and-certbot/
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Thursday, 09-Jan-2025 11:32:08 JST sahilister @yurnidiot caturday without a caturday, is a good caturday!
In conversation from toots.sahilister.in permalink -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 08-Jan-2025 03:07:14 JST sahilister another TIL, one can request complete gTLD zone (from participating TLDs) at ICANN's Centralized Zone Data Service (CZDS) at https://czds.icann.org
I just downloaded the complete .gmail zone (which only has bunch of of NSs etc. only)
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 08-Jan-2025 02:59:25 JST sahilister TIL that .gmail is a valid top level domain https://www.iana.org/domains/root/db/gmail.html
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Wednesday, 08-Jan-2025 01:36:31 JST sahilister @hiway Just by the password policy, if I'm guessing the bank name - it's name starts with the same alphabet as your name?
Am I right?
In conversation from gnusocial.jp permalink -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Tuesday, 07-Jan-2025 23:11:33 JST sahilister Putting it out - `dig txt locations.publicdns.goog.`
Details at https://developers.google.com/speed/public-dns/faq
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Monday, 06-Jan-2025 00:13:04 JST sahilister Both, Hetzner (https://www.hetzner.com/de/unternehmen/rechenzentrum/) and OVH cloud (http://weathermap.ovh.net/) has multiple direct peering links with Meta/Facebook.
I always wonder what kind of traffic traverse between these networks and Meta.
One is of course VPN traffic, what else am I missing here?
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Friday, 03-Jan-2025 17:59:41 JST sahilister @jtk with "actual NS domain" I meant the authoritative NS in this case, *.awsdns* domains.
As mentioned https://framapiaf.org/@pmevzek/113759344972541770 (in thread), one can't have NS for a CNAME (which looks right now that I think of it).
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Friday, 03-Jan-2025 17:12:41 JST sahilister @pmevzek ah! that explains it, thank you!
In conversation from toots.sahilister.in permalink -
Embed this notice
Dan Ports (dan@discuss.systems)'s status on Friday, 03-Jan-2025 07:02:23 JST Dan Ports @ricci If your NIC winds up with a sufficiently long interface name, like enp8s0f0npf0vf1, and your vlan id is high enough, you'll be unable to bring up a vlan interface like enp8s0f0npf0vf1.1024 because that exceeds the maximum interface name length (IFNAMSIZ = 16)
In conversation from discuss.systems permalink Repeated by sahil -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Friday, 03-Jan-2025 05:03:20 JST sahilister @jing seems to work fine without -t as well.
IG dig understands it's a query type.
In conversation from toots.sahilister.in permalink -
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Thursday, 02-Jan-2025 19:33:35 JST sahilister The query I ran was `dig ns aws.amazon.com`
In conversation from toots.sahilister.in permalink Attachments
-
Embed this notice
sahilister (sahil@toots.sahilister.in)'s status on Thursday, 02-Jan-2025 19:32:59 JST sahilister Okay a DNS question, while checking name server for aws.amazon.com, I get:
```
aws.amazon.com. 4092 IN CNAME tp.8e49140c2-frontier.amazon.com.
tp.8e49140c2-frontier.amazon.com. 46 IN CNAME dr49lng3n1n2s.cloudfront.net.
dr49lng3n1n2s.cloudfront.net. 12 IN A 108.158.61.79
...```
If I understand correctly, NS for aws.amazon.com is a chain of CNAME(s) to actual NS domain?
In conversation from toots.sahilister.in permalink Attachments