home.social

#netops — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #netops, aggregated by home.social.

  1. Every network vendor has an "AI-powered" story right now. Most of them are 10% of the actual solution. I broke down what the other 90% looks like after watching Aviz Networks demo their AI NOC platform at Network Field Day. #NFD #Networking #NetOps #AI

    packitforwarding.com/index.php

  2. Autonomie scheitert nicht an schlechter AI, sondern an schlechter Architektur.

    Skalierende Teams sind nicht smarter – sie sind besser designed. Sie behandeln Telemetry als Produkt, validieren mit Digital Twins und bauen Rollback ein. Auch das Human System muss mitgedacht werden. #AI #Automation #NetOps - Link im 2. Post

  3. Как в Авито построили систему мониторинга BGP

    Всем привет! Меня зовут Антон Ильичев, я сетевой инженер в Авито. В этой статье расскажу, зачем мы централизованно собираем и анализируем маршрутную информацию с сетевых устройств, причём тут протокол BMP и как устроена наша система мониторинга. В конце вас будет ждать лаба на docker-compose, которую вы можете запустить у себя и посмотреть на систему в действии. Статья будет полезна в первую очередь сетевым инженерам, командам SRE и мониторинга, которые отвечают за доступность и качество сервиса.

    habr.com/ru/companies/avito/ar

    #bmp #bgp #monitoring #netops #troubleshooting #kafka #clickhouse #cisco #grafana #juniper

  4. Как в Авито построили систему мониторинга BGP

    Всем привет! Меня зовут Антон Ильичев, я сетевой инженер в Авито. В этой статье расскажу, зачем мы централизованно собираем и анализируем маршрутную информацию с сетевых устройств, причём тут протокол BMP и как устроена наша система мониторинга. В конце вас будет ждать лаба на docker-compose, которую вы можете запустить у себя и посмотреть на систему в действии. Статья будет полезна в первую очередь сетевым инженерам, командам SRE и мониторинга, которые отвечают за доступность и качество сервиса.

    habr.com/ru/companies/avito/ar

    #bmp #bgp #monitoring #netops #troubleshooting #kafka #clickhouse #cisco #grafana #juniper

  5. Как в Авито построили систему мониторинга BGP

    Всем привет! Меня зовут Антон Ильичев, я сетевой инженер в Авито. В этой статье расскажу, зачем мы централизованно собираем и анализируем маршрутную информацию с сетевых устройств, причём тут протокол BMP и как устроена наша система мониторинга. В конце вас будет ждать лаба на docker-compose, которую вы можете запустить у себя и посмотреть на систему в действии. Статья будет полезна в первую очередь сетевым инженерам, командам SRE и мониторинга, которые отвечают за доступность и качество сервиса.

    habr.com/ru/companies/avito/ar

    #bmp #bgp #monitoring #netops #troubleshooting #kafka #clickhouse #cisco #grafana #juniper

  6. Как в Авито построили систему мониторинга BGP

    Всем привет! Меня зовут Антон Ильичев, я сетевой инженер в Авито. В этой статье расскажу, зачем мы централизованно собираем и анализируем маршрутную информацию с сетевых устройств, причём тут протокол BMP и как устроена наша система мониторинга. В конце вас будет ждать лаба на docker-compose, которую вы можете запустить у себя и посмотреть на систему в действии. Статья будет полезна в первую очередь сетевым инженерам, командам SRE и мониторинга, которые отвечают за доступность и качество сервиса.

    habr.com/ru/companies/avito/ar

    #bmp #bgp #monitoring #netops #troubleshooting #kafka #clickhouse #cisco #grafana #juniper

  7. Sometimes figuring out whats happening over time in the Mikrotik changelogs isn't as easy as it should be..... I made a tool to display changelog entries and data in different ways, as well as searching all changelogs for keywords. (MLAG for instance is a good search keyword).

    This is still in really early public availability, but its been useful for 2 out of 2 people I shared it with and so I expect it will be useful for a wider audience.

    mikrotik-changelog-tracker.hex

    #mikrotik #changelogs #neteng #netops #networking #networks

  8. Just had a discussion on routable #IPv4 address space. This lead me to check #Bogon IP address space. I briefly fetched a public bogon list of a large provider, parsed the CIDR blocks and calculated the number of IPv4 addresses. Dividing this by 0.0.0.0/0 eventually lead to the discovery that 13.89% of the IPv4 address space is non-routable. Way more than I had anticipated.

    Your daily dose of #netops knowledge... :)

  9. Just had a discussion on routable #IPv4 address space. This lead me to check #Bogon IP address space. I briefly fetched a public bogon list of a large provider, parsed the CIDR blocks and calculated the number of IPv4 addresses. Dividing this by 0.0.0.0/0 eventually lead to the discovery that 13.89% of the IPv4 address space is non-routable. Way more than I had anticipated.

    Your daily dose of #netops knowledge... :)

  10. Just had a discussion on routable #IPv4 address space. This lead me to check #Bogon IP address space. I briefly fetched a public bogon list of a large provider, parsed the CIDR blocks and calculated the number of IPv4 addresses. Dividing this by 0.0.0.0/0 eventually lead to the discovery that 13.89% of the IPv4 address space is non-routable. Way more than I had anticipated.

    Your daily dose of #netops knowledge... :)

  11. Just had a discussion on routable #IPv4 address space. This lead me to check #Bogon IP address space. I briefly fetched a public bogon list of a large provider, parsed the CIDR blocks and calculated the number of IPv4 addresses. Dividing this by 0.0.0.0/0 eventually lead to the discovery that 13.89% of the IPv4 address space is non-routable. Way more than I had anticipated.

    Your daily dose of #netops knowledge... :)

  12. Looking for a sponsoring LIR for my ASN.
    I run a small non‑commercial network with a WireGuard uplink via Route64 and plan a second upstream (HE POP) for redundancy and BGP/IPv6 learning.
    I can maintain IRR/RPKI. Any LIR willing to sponsor an ASN is welcome.

    #BGP #ASN #IPv6 #Multihoming #HomeLab #NetOps #NetworkEngineering #RIPE #LIR #NOG #PLNOG #DENOG #NLNOG #UKNOF #Routing #Sysadmin #Route64 #HurricaneElectric

  13. Looking for a sponsoring LIR for my ASN.
    I run a small non‑commercial network with a WireGuard uplink via Route64 and plan a second upstream (HE POP) for redundancy and BGP/IPv6 learning.
    I can maintain IRR/RPKI. Any LIR willing to sponsor an ASN is welcome.

    #BGP #ASN #IPv6 #Multihoming #HomeLab #NetOps #NetworkEngineering #RIPE #LIR #NOG #PLNOG #DENOG #NLNOG #UKNOF #Routing #Sysadmin #Route64 #HurricaneElectric

  14. Looking for a sponsoring LIR for my ASN.
    I run a small non‑commercial network with a WireGuard uplink via Route64 and plan a second upstream (HE POP) for redundancy and BGP/IPv6 learning.
    I can maintain IRR/RPKI. Any LIR willing to sponsor an ASN is welcome.

    #BGP #ASN #IPv6 #Multihoming #HomeLab #NetOps #NetworkEngineering #RIPE #LIR #NOG #PLNOG #DENOG #NLNOG #UKNOF #Routing #Sysadmin #Route64 #HurricaneElectric

  15. Pour finir, l’info a fait son chemin
    jusqu’à la mailing-list des administrateurs de relais #tor.

    Donc c’est bien une des campagnes ...académiques de sensibilisation de masse.

    Mais comme souvent, au final ça suscite plus de questions que de réponses,
    vu qu’on parle d’une attaque au niveau AS / BGP.

    Thread côté Tor
    👇
    lists.torproject.org/mailman3/

    Et bien évidemment, ça déclenche des réactions très humaines 😅

    Extrait qui résume assez bien l’ambiance :

    “ Is the stated vulnerability an actively exploited problem or is this a DoS attack by scaremongering?

    My guess is it is neither. I would be that it's just some over-excited
    researchers who want to get the news out about just how awful BGP is.
    But, while it is "exploitable", there's not much that can be done with
    it. All an attacker could do is cause the connections destined for your
    relay to go to their servers instead. But crucially, they do not have
    your relay key, so all other relays and clients would refuse to connect
    to them..”

    Bref,
    je vais quand même ouvrir un ticket chez Scaleway,
    histoire de voir ce qu’ils en pensent de leur côté.

    #BGP #NetOps #bgphijacking

  16. Pour finir, l’info a fait son chemin
    jusqu’à la mailing-list des administrateurs de relais #tor.

    Donc c’est bien une des campagnes ...académiques de sensibilisation de masse.

    Mais comme souvent, au final ça suscite plus de questions que de réponses,
    vu qu’on parle d’une attaque au niveau AS / BGP.

    Thread côté Tor
    👇
    lists.torproject.org/mailman3/

    Et bien évidemment, ça déclenche des réactions très humaines 😅

    Extrait qui résume assez bien l’ambiance :

    “ Is the stated vulnerability an actively exploited problem or is this a DoS attack by scaremongering?

    My guess is it is neither. I would be that it's just some over-excited
    researchers who want to get the news out about just how awful BGP is.
    But, while it is "exploitable", there's not much that can be done with
    it. All an attacker could do is cause the connections destined for your
    relay to go to their servers instead. But crucially, they do not have
    your relay key, so all other relays and clients would refuse to connect
    to them..”

    Bref,
    je vais quand même ouvrir un ticket chez Scaleway,
    histoire de voir ce qu’ils en pensent de leur côté.

    #BGP #NetOps #bgphijacking

  17. Pour finir, l’info a fait son chemin
    jusqu’à la mailing-list des administrateurs de relais #tor.

    Donc c’est bien une des campagnes ...académiques de sensibilisation de masse.

    Mais comme souvent, au final ça suscite plus de questions que de réponses,
    vu qu’on parle d’une attaque au niveau AS / BGP.

    Thread côté Tor
    👇
    lists.torproject.org/mailman3/

    Et bien évidemment, ça déclenche des réactions très humaines 😅

    Extrait qui résume assez bien l’ambiance :

    “ Is the stated vulnerability an actively exploited problem or is this a DoS attack by scaremongering?

    My guess is it is neither. I would be that it's just some over-excited
    researchers who want to get the news out about just how awful BGP is.
    But, while it is "exploitable", there's not much that can be done with
    it. All an attacker could do is cause the connections destined for your
    relay to go to their servers instead. But crucially, they do not have
    your relay key, so all other relays and clients would refuse to connect
    to them..”

    Bref,
    je vais quand même ouvrir un ticket chez Scaleway,
    histoire de voir ce qu’ils en pensent de leur côté.

    #BGP #NetOps #bgphijacking

  18. Pour finir, l’info a fait son chemin
    jusqu’à la mailing-list des administrateurs de relais #tor.

    Donc c’est bien une des campagnes ...académiques de sensibilisation de masse.

    Mais comme souvent, au final ça suscite plus de questions que de réponses,
    vu qu’on parle d’une attaque au niveau AS / BGP.

    Thread côté Tor
    👇
    lists.torproject.org/mailman3/

    Et bien évidemment, ça déclenche des réactions très humaines 😅

    Extrait qui résume assez bien l’ambiance :

    “ Is the stated vulnerability an actively exploited problem or is this a DoS attack by scaremongering?

    My guess is it is neither. I would be that it's just some over-excited
    researchers who want to get the news out about just how awful BGP is.
    But, while it is "exploitable", there's not much that can be done with
    it. All an attacker could do is cause the connections destined for your
    relay to go to their servers instead. But crucially, they do not have
    your relay key, so all other relays and clients would refuse to connect
    to them..”

    Bref,
    je vais quand même ouvrir un ticket chez Scaleway,
    histoire de voir ce qu’ils en pensent de leur côté.

    #BGP #NetOps #bgphijacking

  19. You are in an admin/programmer/devops role. When you look for a solution to a problem, what is the ratio of time reach for AI first? In this poll, "Other" includes official docs, howto posts, video tutorials or similar things.

    #ai #softwaredev #sysadmin #devops #netops

  20. Just signed up my AS space for @greynoise. Curious to see what will land in my inbox as we're tiny, but it can't hurt...

    #netops, #overengineering, #selfhosting

  21. Hmmm, #NANOG discusses #IPv4 pricing falling below $20. There is also a claim that North-American ISPs sell much of their IPv4 space. Why is that happening? Is it, because #IPv6 is now the preferred method?

    #routing #bgp #netops

  22. ⚠️ Most breaches don’t require genius — just opportunity.

    Attackers don’t need zero-days. They exploit what’s already exposed:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7 at HACKTIVATE LABS.

    The Reality:
    Most orgs don’t need more security staff —
    they need faster decision loops.
    Executed by agents that never sleep.

    What we’re testing now:
    🧠 AI agents that shape the threat surface in real time
    🛰️ Pre-attack recon using live intel feeds
    ⚔️ Automated red team prep using CVE correlation
    🔄 Defense loops that execute without human approval

    The goal isn’t alerts.
    The goal is autonomous containment.

    💬 If you’re building in #AIsec, #Cybersecurity, or #DevSecOps — let’s align.
    Tag your team or @mention someone who should see this.

    #Automation #RedTeam #AISecurity #SOC #NetOps #SecurityFuture #AIagents

  23. ⚠️ Most breaches don’t require genius — just opportunity.

    Attackers don’t need zero-days. They exploit what’s already exposed:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7 at HACKTIVATE LABS.

    The Reality:
    Most orgs don’t need more security staff —
    they need faster decision loops.
    Executed by agents that never sleep.

    What we’re testing now:
    🧠 AI agents that shape the threat surface in real time
    🛰️ Pre-attack recon using live intel feeds
    ⚔️ Automated red team prep using CVE correlation
    🔄 Defense loops that execute without human approval

    The goal isn’t alerts.
    The goal is autonomous containment.

    💬 If you’re building in #AIsec, #Cybersecurity, or #DevSecOps — let’s align.
    Tag your team or @mention someone who should see this.

    #Automation #RedTeam #AISecurity #SOC #NetOps #SecurityFuture #AIagents

  24. ⚠️ Most breaches don’t require genius — just opportunity.

    Attackers don’t need zero-days. They exploit what’s already exposed:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7 at HACKTIVATE LABS.

    The Reality:
    Most orgs don’t need more security staff —
    they need faster decision loops.
    Executed by agents that never sleep.

    What we’re testing now:
    🧠 AI agents that shape the threat surface in real time
    🛰️ Pre-attack recon using live intel feeds
    ⚔️ Automated red team prep using CVE correlation
    🔄 Defense loops that execute without human approval

    The goal isn’t alerts.
    The goal is autonomous containment.

    💬 If you’re building in #AIsec, #Cybersecurity, or #DevSecOps — let’s align.
    Tag your team or @mention someone who should see this.

    #Automation #RedTeam #AISecurity #SOC #NetOps #SecurityFuture #AIagents

  25. ⚠️ Most breaches don’t require genius — just opportunity.

    Attackers don’t need zero-days. They exploit what’s already exposed:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7 at HACKTIVATE LABS.

    The Reality:
    Most orgs don’t need more security staff —
    they need faster decision loops.
    Executed by agents that never sleep.

    What we’re testing now:
    🧠 AI agents that shape the threat surface in real time
    🛰️ Pre-attack recon using live intel feeds
    ⚔️ Automated red team prep using CVE correlation
    🔄 Defense loops that execute without human approval

    The goal isn’t alerts.
    The goal is autonomous containment.

    💬 If you’re building in #AIsec, #Cybersecurity, or #DevSecOps — let’s align.
    Tag your team or @mention someone who should see this.

    #Automation #RedTeam #AISecurity #SOC #NetOps #SecurityFuture #AIagents

  26. ⚠️ Most breaches don’t require genius — just opportunity.

    Attackers don’t need zero-days. They exploit what’s already exposed:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7 at HACKTIVATE LABS.

    The Reality:
    Most orgs don’t need more security staff —
    they need faster decision loops.
    Executed by agents that never sleep.

    What we’re testing now:
    🧠 AI agents that shape the threat surface in real time
    🛰️ Pre-attack recon using live intel feeds
    ⚔️ Automated red team prep using CVE correlation
    🔄 Defense loops that execute without human approval

    The goal isn’t alerts.
    The goal is autonomous containment.

    💬 If you’re building in #AIsec, #Cybersecurity, or #DevSecOps — let’s align.
    Tag your team or @mention someone who should see this.

    #Automation #RedTeam #AISecurity #SOC #NetOps #SecurityFuture #AIagents

  27. RE: infosec.exchange/@Hacktivate/1

    ⚠️ Most breaches don’t require genius — just opportunity.

    Here’s what attackers actually exploit:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7.

    If you’re in #Cybersecurity #AIsec or #DevSecOps — let’s talk.
    Tag a team that needs this operational.

    #Automation #RedTeam #AISecurity #SOC #NetOps

  28. ⚠️ Most breaches don’t require genius — just opportunity.

    Here’s what attackers actually exploit:
    • Default creds still active
    • Config drift no one monitors
    • Cloud misconfigs after updates
    • APIs exposed by accident

    We’re building autonomous agents to close those gaps 24/7.

    If you’re in #Cybersecurity #AIsec or #DevSecOps — let’s talk.
    Tag a team that needs this operational.

    #Automation #RedTeam #AISecurity #SOC #NetOps

  29. RE: infosec.exchange/@Hacktivate/1

    ⚡ 3 Fast Checks Every Network Should Run Today

    1️⃣ Unknown devices on VLANs?
    2️⃣ Unused open ports pre-attack?
    3️⃣ Default creds still active anywhere?

    You don’t need a full audit — just a disciplined recon loop.

    AI + automation makes this continuous.

    #Cybersecurity #AIsec #NetOps #DevSecOps
    Want micro playbooks or scripts? @mention me.

  30. I'm going to be actively looking for work later in the year with a view to starting a new role at the beginning of next year.

    Basics here:

    linkedin.com/in/adam-sweet-453

    Job offers or suggestions on how to better present myself welcome

    #HireMe #Linux #OpenSource #DevOps #NetOps

  31. @jpmens - I am convinced, the #netops team put more effort into the DNS service, than the PA team on the website.

    Jokes aside: Since the start of the project, I felt various times, that the website's quality and information is not en par with what should be expected from a project of that scale. Without following the actual stakeholder meetings, you would have had a hard time on keeping up. Updates on the project were very loosely and irregularly shared, if at all. The public meetings however were very helpful. Yet I would have expected more from a project that aims for the reach of 450 million EU citizens.

  32. Productive morning:

    * Fitted new UPSs
    * All my home Cisco FW+R+S infrastructure upgraded to latest releases
    * Broken out the core network segment into second rack
    * New Catalyst switch wired in for second NAS and lab kit
    * Firewall logs now go to SIEM (finally got around to fixing the access-list!)
    * MRTG configs updated

    Afternoon question, should I build a second domain controller on the lab LAN?

    #netops, #overengineering, #selfhosting

  33. 🔍 What's the difference between an ALG, a Proxy, and a Firewall?

    We’ve put together a clear comparison chart to help you understand how these three critical components operate at the application and network layers.

    ➡️ relianoid.com/resources/knowle

  34. Me: netbox is like bitwarden for datacenter stuff!
    G: yeah exactly haha, grumpy it rep goes over to grumpy netops guy "grrs" in "where address" "grunts" in "check source truth"
    G: both go on about their day hunting problems with clubs >_<

    #it #iit #infotech #infosec #datacenters #netops #worklife #cavemen #convosfromtheoffice

  35. ↪️ What did people say about #IDI - Incontro DevOps Italia? ↩️ [1/3]

    Here’s some feedback from participants of the last edition.

    So, why would you miss the 13th edition?😃

    #DevOps #Kubernetes #cloud #microservizi #Casestudy #bestpractices #SecOps #NetOps #MLOps

    ---
    Incontro DevOps Italia 2025 is the Italian conference about DevOps topics.
    The conference has two tracks and the talks are in Italian and English.
    📍Bologna (Italy) | 📆 March 14, 2025
    Tickets 🔗bit.ly/3BFzNSR

  36. He was raving too hard and got put into cookie prison. #netops #networking

  37. Is AS208046 just the latest iteration of Ecatel?
    Their downstream are disgusting and spamming the shit out of customers. Time to blackhole? 🤔

    #networking #bgp #netops #sysadmin #servers #hosting

  38. A post on using Custom Links to be able to navigate to those other systems related to the device. Sometimes you just need to have that other system. Such as a link to the Git backup of config by app. Powerful customization!

    josh-v.com/nautobot-custom-lin

  39. Anyone has some experience with linux bridge vlan tagging? I'm slightly confused about the "self" bit in bridge vlan add.

    I have a br0 with 3 tap devs plugged into it—one trunk and two access ports. That alone is easy, but I'm still confused as to how do I set up the br0 itself as an access port (i.e. having the bridge host machine on the specific vlan)

    #linux #networking #bridging #8021q #netops

  40. New year, new skills! Kick off 2024 with a free course through Learning @ Internet Society ➡️ internetsociety.org/learning/ All courses are free and are offered in English, French, and Spanish with some courses available in Arabic. ⭐️ Register today

    #Internet #networking #encryption #communitynetworks #MANRS #NetOps #privacy #InternetGovernance #IXPs #InternetAccess

  41. Today is officially the last day at NSCON for me. After almost 13 years I decided to leave the company I was Co-Founder because of personal reasons. 👋

    Many thanks to all employees, colleagues, partners, and customers who worked together with me during the past years. I‘m very thankful for all the support and the great projects we accomplished together as a team. 🤝

    Now I‘m looking for a new challenge in the area of IT Networking with focus on Network Programmability and Automation! 🤓

    #NetworkProgrammability #NetworkAutomation #DevNet #NetOps #NetDevOps #Python #PyATS #Netmiko #Nornir #Ansible #Terraform #Docker #Kubernetes #CICD #Git #Gitlab #IaC #REST #NETCONF #RESTCONF #YANG #Postman #NSO #CML #Cisco #Meraki #CheckPoint #Fortinet

  42. Today is officially the last day at NSCON for me. After almost 13 years I decided to leave the company I was Co-Founder because of personal reasons. 👋

    Many thanks to all employees, colleagues, partners, and customers who worked together with me during the past years. I‘m very thankful for all the support and the great projects we accomplished together as a team. 🤝

    Now I‘m looking for a new challenge in the area of IT Networking with focus on Network Programmability and Automation! 🤓

    #NetworkProgrammability #NetworkAutomation #DevNet #NetOps #NetDevOps #Python #PyATS #Netmiko #Nornir #Ansible #Terraform #Docker #Kubernetes #CICD #Git #Gitlab #IaC #REST #NETCONF #RESTCONF #YANG #Postman #NSO #CML #Cisco #Meraki #CheckPoint #Fortinet

  43. Today is officially the last day at NSCON for me. After almost 13 years I decided to leave the company I was Co-Founder because of personal reasons. 👋

    Many thanks to all employees, colleagues, partners, and customers who worked together with me during the past years. I‘m very thankful for all the support and the great projects we accomplished together as a team. 🤝

    Now I‘m looking for a new challenge in the area of IT Networking with focus on Network Programmability and Automation! 🤓

    #NetworkProgrammability #NetworkAutomation #DevNet #NetOps #NetDevOps #Python #PyATS #Netmiko #Nornir #Ansible #Terraform #Docker #Kubernetes #CICD #Git #Gitlab #IaC #REST #NETCONF #RESTCONF #YANG #Postman #NSO #CML #Cisco #Meraki #CheckPoint #Fortinet