cablespaghetti.dev is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
On 14h July (though it was already the 15th here), some of my monitoring jails started throwing errors. Not all of them, though. On the same host, an Uptime Kuma instance was showing a ton of servers down, while LibreNMS wasn't displaying any issues. After investigating, I discovered why. The jail running LibreNMS was using local_unbound (integrated into FreeBSD), while the other, perhaps for speed, was using Cloudflare's DNS.
DNS is like email, the Fediverse, and other similar services: they work better and make us freer when they're decentralized.
Let's go back to decentralizing the internet. Its very existence, as we've known it, depends on it.
#BeFree #Decentralization #SysAdmin #IT #Technology #Internet #Networking
Cloudflare 1.1.1.1 Incident on July 14, 2025
https://blog.cloudflare.com/cloudflare-1-1-1-1-incident-on-july-14-2025/
@socketwench ah right - so where I left mDNS I was working out how to write nftables rules that would force any outbound traffic back to localhost to the systemd-resolved stub, which I could THEN enforce prioritizing mDNS responses, but also mDNS isn't kindof a closed and done thing like DNS is, it can just kinda, hang open for a but waiting for replies to the broadcast, and slowing everything down.
...yea I didn't get as far as investigating mDNS caching before this smelled awful
So excited about getting my new home firewall/router:
TLSense N100L4: 4x 2.5Gbit LAN, N100 CPU, 256GB NVMe SSD, 16GB RAM.
It will be running OPNSense and I'm really looking forward replacing all these horrible ASUS Routers that I've insisted on running.
Anyone here have experience with connecting a Mellanox Connect X3 network card to a Mikrotik RB3011 router?
I managed to flash the ethernet firmware unto the card, and ethtool sees is correctly:
root@cold-backup:~# ethtool enp1s0
Settings for enp1s0:
Supported ports: [ FIBRE ]
Supported link modes:
1000baseX/Full
10000baseCR/Full
10000baseSR/Full
Supported pause frame use: Symmetric Receive-only
Supports auto-negotiation: No
Supported FEC modes: Not reported
Advertised link modes:
1000baseX/Full
10000baseCR/Full
10000baseSR/Full
Advertised pause frame use: Symmetric
Advertised auto-negotiation: No
Advertised FEC modes: Not reported
Speed: Unknown!
Duplex: Unknown! (255)
Auto-negotiation: off
Port: FIBRE
PHYAD: 0
Transceiver: internal
Supports Wake-on: d
Wake-on: d
Current message level: 0x00000014 (20)
link ifdown
Link detected: no
And I tried three different cables, one optical and two DACs, and neither of them is working.
On the other side there is my Mikrotik RB3011, which also does not see any connection on the SFP port.
Yes, The Book of PF, 4th Edition Is Coming Soon https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html
Long rumored and eagerly anticipated by some, the fourth edition of The Book of PF is now available for preorder https://nostarch.com/book-of-pf-4th-edition #openbsd #pf #packetfilter #freebsd #networking #security #tcpip #ipv6 #ipv4 #bookofpf
Good morning!
Tonight it is #NetMCR (https://www.netmcr.uk/) again in #Manchester.
Join them for a #Networking #MeetUp at the Northern Monk (https://www.northernmonk.com/pages/manchester) from 7pm.
Talks will include:
* *Sam Cater, 'CHERI - Bolstering security by baking it into silicon'*:
A quick run-down of what the CHERI Alliance is and how it came to be, what the technology does, how it's being utilised today with wins & losses. There will be some use-cases demonstrated and a little spin on how that's useful to Sam's employer.
* *Christian Farrow, 'From networked clocks to TikTok: atomic timekeeping makes its retro return!'*:
Our resident Time Lord is back once again with a neat run down on atomic timekeeping. Arcane mysteries or run-of-the-mill devices? Come find out!
*You?*:
Feel free to come and speak to us if you've something to speak about, on the evening or ahead of time!
Hopefully see you there for some 🍻 , 🍔, 🍟 and ℹ️ 😀
Long rumored, eagerly anticipated by some, you can now PREORDER "The Book of PF, 4th edition" https://nostarch.com/book-of-pf-4th-edition for the most up to date guide to the OpenBSD and FreeBSD networking toolset #openbsd #freebsd #networking #pf #packetfilter #firewall #preorder #security
The #mikrotik replacement switch is now in place. UI took a little time to get used to, but wasn't a huge deal. Fan is audible with the current temperatures in my office but at least it doesn't sound like I'll be picking shrapnel out of the walls any second. Plus, I do have the Noctua fan that a lot of people put into these.
So far, so good. Yes, the #Ubiquiti unified UI across all devices is nice, but I don't play with the configuration of my home network often enough for it to make a massive difference.
TIL about MAC address records in DNS.
I was thinking "man, WoL converting IPs to MACs is unsolvable given ND/ARP cache TTLs and powered-off machines". Guess it's another one we stuff in the garbage can that is DNS 😹
Want stable networking? FreeBSD’s TCP/IP stack is used by Netflix, Juniper, and
NetApp.
It’s one of the most battle-tested in the world.
New blog post: A detailed look at the new network setuphttps://blog.transitory.social/posts/2025-07-02-network-rebuild-project/ Almost everything was rebuilt, and multiple layers of complexity were eliminated
Monday #Workout:
220 seconds of plank.
11 minutes of yoga for runners.
20 minutes of strength training.
10.1 KM of #Cycling (16°C, 100% humidity, and 8 KM/H wind)
What an interesting day for me; after the workouts and biking to site, I started off with telehandler training (why not? it's fun!), then some #networking fun, including the most insane ping result I've ever seen, before biking home in the hot (35C humidex) afternoon sun.
Not a bad day. But I would appreciate it to be 20°C cooler. 🫠
Confirmed: There will be a full day PF tutorial "Network Management with the OpenBSD Packet Filter Toolset" at #eurobsdcon 2025 in #zagreb.
Details to emerge via https://2025.eurobsdcon.org/, and expect more goodies to be announced!
#openbsd #freebsd #pf #packetfilter #networking #security #freesoftware #libresoftware #bsd
Writing my first meshcore PR 🤘🏿
It's still a work-in progress, but having a lot of fun learning this code base!
https://github.com/ripplebiz/MeshCore/pull/96
#lora #meshcore #meshtastic #privacy #networking #esp32 #offgrid
Wrote a little parser for meshcore packets tonight. It's still messy and a lot more to implement. But, it reads the container format so I'm happy for now.
I have meshcore packets flowing from multiple repeaters(on different frequencies) talking on wifi using udp broadcasts.
The repeaters automatically discover each other on the network and now I'm able to watch their chatter with a quick nodejs server.
#lora #meshcore #networking #radio #nodejs #container #incus
Working on a meshcore testbed.
I want to have several radios on the roof so I can develop in production
Fun fact: I've always mounted my access points on the ceiling or placed them high up on furniture, as the technical specs usually recommend. But today, I decided to try something different: I moved mine and mounted it on the wall.
Surprisingly, the Wi-Fi coverage in the most remote parts of my house has dramatically improved! It just goes to show how fascinating the study of wave propagation truly is.
#WiFi #TechTip #Networking #HomeNetwork #Wireless #GeekFacts
When adopting a new 100GbE switch, it’s important to follow gradual introduction procedures to keep your existing cats from becoming stressed and developing RDMA aggression.
Out of curiosity: are IPv6 addresses some kind of wild west, unclaimed territory?
When trying to look up who owns some of them that I see in my server logs, I frequently run into "the big void" it seems.
For example: 2200:2242:2064:246::42:6
ipinfo.io says... no ASN, no hostname, no nuffin' available.
Similarly, IP Netblocks says it's part of the range :: - ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff (no shit!😂) and that's all.
Can anyone shed some light on this?
Do I have anyone within my reach who would be willing to help me debug a DNAT issue on OPNsense?
I can sincerely say that it's *probably* trivial, and I am *probably* just missing something obvious; but it's not obvious when you're not quite sure what you're looking for. Reading the documentation, browsing the forum and searching the web has not led me to find a solution.
Boosts appreciated.
Woo my new t-shirts arrived. Extremely niche even by geek t-shirt standards. You can get one at https://www.spreadshirt.co.uk/shop/user/bencc/ if you’re strange like me (and I get a couple of quid if you do so) #fibre #cwdm #networking #tshirt
What’s the best Wi-Fi dongle you’ve used with BSD? Help out a friend looking to upgrade. 📡 #networking #homelab
Start your own Internet Resiliency Club via @mjturner https://lobste.rs/s/xsmnaz #culture #networking #scaling
https://bowshock.nl/irc/