home.social

#dn42 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #dn42, aggregated by home.social.

fetched live
  1. @arichtman I believe you're thinking of the first half of the ULA range. Which is already what's being used in #dn42, I understand

  2. Does anyone know if there's still someplace to obtain a small sliver of GUA #IPv6 address space? I remember this one from a while back by @cr : chaos.social/@cr/1118050934626

    I figure it'd be interesting to use GUAs for routing on #dn42 , neatly avoiding any issue with prefix collisions.

  3. Sooooo....
    since 4/5 "dead" sessions are probably "gone from dn42" (can't find the addresses in the routing table anymore, maintainers domains dead, etc.pp), I only have one person, I think, which I need to contact.

    #dn42

  4. Half of my #dn42 bgp sessions are down. This is not really acceptable :|
    I probably need to go into the irc again...

  5. Uhhh?
    Apparently, I fucked something up at one point, I dunno when?
    But my tinc connection suddenly doesn't work anymore.

    And/or it's a firewall rule problem?

    I expect the path to go
    my home router -> my hetzner server
    but instead it goes
    my home router -> my netcup server --/didn't forward b/c not allowed/--> my hetzner server.

    uhhh???

    #dn42

  6. Uhhh????
    My #dn42 is down because...
    ....
    over tinc vpn, http and ping requests arrive at the server:; but dns requests (UDP!) don't?
    I.e. I run tcpdump, but I don't see anything arriving on port 53.

  7. So after running a @prosodyim container and a #dn42 node on my #MikroTik it was only logical to also host the dn42 authoritative #DNS zone on it... using #dnsmasq 🤪

    Blog post: op-co.de/blog/posts/mikrotik_a

  8. Should I try the DN42 thing? :dragn_thinkhappy:

    (I don't know anything about BGP and barrely know how to use git. :dragn_crysmile: )

    #DN42 #BGP

  9. Finally got around to adding the next level of connectivity to #DN42 - IBGP between my routers. I'm now correctly receiving the full DN42 table on a router at home and connectivity is working fine over #Wireguard tunnel. Still got quite a bit to do before I can actually host anything, but I'm glad to be making some progress.

    #openbsd #freebsd #openbgpd

  10. BgpLookup, a web service I wrote that displays the relationships between ASes and prefixes, now also shows multicast.

    #dn42 #IPv6 #Multicast

  11. So, today I enrolled in #dn42, configured a dedicated VRF on my #MikroTik RB4011, ran into a bug where re-using the same link-local #IPv6 address on multiple tunnels resulted in wrong egress routing, got #BGP set up, and even managed to port-forward iperf from the VRF into a container running on the RB4011.

    And I only bought it as a better home lab LAN switch. 🤷

  12. I'm now connected to @minerva Route Collector as well.
    You can see that resource usage is going up slightly as a result.

    Happy route collecting!

    #dn42

  13. New on the blog: patching FreeBSD machines inside DN42 without giving them a clearnet route.

    A small dual-homed VM lazily caches pkg.freebsd.org, update.freebsd.org and ftp.freebsd.org with nginx proxy_store, chases CDN redirects server-side, and serves it all over IPv6 into the mesh. pf default-denies both directions, and clients keep verifying signatures against the official FreeBSD keys.

    It is also a public DN42 service: point freebsd-update, pkg or bastille at bsdmirror.chofstede.dn42 and go from empty jail host to fully patched without touching the clearnet.

    blog.hofstede.it/a-caching-fre

    #FreeBSD #DN42 #nginx #RunBSD #SelfHosting

  14. Had the problem on DN42 (a distributed overlay network, that is sperated from the internet), that my FreeBSD servers couldn't update without hacky firewall tricks (NAT etc.)

    Did now finally solve that cleanly with a single caching Nginx server that is dual-homed (internet+dn42) and that enables me to use freebsd-update AND pkg from systems that only have DN42 connectivity :-)

    Also add that to the DN42 wiki and offer others to use it as infrastructure!

    bsdmirror.chofstede.dn42 (IPv6-only by design)

    #freebsd #dn42 #selfhosting #networking #ipv6

  15. I really wanna fw Telephony42 so bad but my server is dead ​:cry_cirno:​

    #dn42 #networking

  16. I'm not sure me learning about #DN42 was a good thing.

    I'm not a network engineer, and I don't really plan to become one.

    But holy shit if community-based darknets sounds like a thing I want to participate in.

    And as a side bonus I got enough inspiration to run my own DNS server for my home network so I don't necessarily have to remember all the IP addresses by heart and edit hosts files by hand anymore...

  17. Since I run my #dn42 nodes on a *different* VPS than where my blog is running now, (and I don't want to copy my blog in two places!) I now employ socat.

    Also, since I run dn42 inside a Linux network namespace, I also had to utilize NAT.

    It's messy and I hate it.

  18. There are people who want to delete the dn42 article on Wikipedia. How creepy and unfortunate.

    en.wikipedia.org/wiki/Wikipedi

    #dn42 #Wikipedia

  19. Hey #dn42 -has one of you tried putting your setup into podman/rootless podman?
    Sides
    Does Wireguard even work in rootless podman?

  20. There’s no need to “learn” BGP with #DN42.
    At this point, I would even recommend against doing so. Want to play “Internet”? Search for a “sponsoring LIR”, get an ASN and an IPv6 prefix, and participate in the grownup’s full table! 🚀

    Don’t let network aristocrats and gate keepers tell you, you need to be extremely cautious and experienced when messing with the full table.

    See? My funny toy ASN runs off a ShitGPT generated Bird config. Unfortunately, I didn’t break the internet. 😇

  21. #DN42 community received an AI agent join request.

    Whatever you think the ending of this story is, it's better

    lantian.pub/en/article/fun/ai-