ITB Status Report Spring AI3 Meeting 19-21 June 2003 Tokyo, Japan.

Slides:



Advertisements
Similar presentations
Symantec 2010 Windows 7 Migration Global Results.
Advertisements

1. XP 2 * The Web is a collection of files that reside on computers, called Web servers. * Web servers are connected to each other through the Internet.
Computer Networks TCP/IP Protocol Suite.
© 2004 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice Installation & management of SUSE.
1 UNIT I (Contd..) High-Speed LANs. 2 Introduction Fast Ethernet and Gigabit Ethernet Fast Ethernet and Gigabit Ethernet Fibre Channel Fibre Channel High-speed.
Virtual Trunk Protocol
Network Programming and Java Sockets
1 Copyright © 2002 Pearson Education, Inc.. 2 Chapter 2 Getting Started.
IPv6 Support and Auto-Config. LAC NIC VII October 26, 2004 Wilfried
Stacking it Up Experimental Observations on the operation of Dual Stack Services in todays Network Geoff Huston APNIC R&D February
1 IPv6 Development in China Xing Li Outline l A brief history l Experience l CNGI project l CERNET2 design.
1 Network Monitoring with Nagios Asian Internet Interconnection Initiatives Project Yan Adikusuma Nara Institute of Science and Technology
AI3 Malaysia (USM) Activity Report Jun 2003 By Wan Tat Chee.
IPv6 deployment at Netnod (Nurani streaming Kurtis - but slower and without an Åland accent…) Who is Netnod? –IXP in Sweden, operator of i.root-servers.net,
Copyright (c) 2002 Japan Network Information Center Introduction of JPNICs New Registry System Izumi Okutani IP Address Section Japan Network Information.
Copyright © 2001 Nominum, Inc. IPv6 DNS Ashley Kitto Nominum, Inc.
Presenter: Mark Elkins Topic: Things not getting done.
Stacking it Up Experimental Observations on the operation of Dual Stack Services Geoff Huston IETF-80 March
FACTORING ax2 + bx + c Think “unfoil” Work down, Show all steps.
© Tally Solutions Pvt. Ltd. All Rights Reserved Shoper 9 License Management December 09.
Internet Applications INTERNET APPLICATIONS. Internet Applications Domain Name Service Proxy Service Mail Service Web Service.
Protocol layers and Wireshark Rahul Hiran TDTS11:Computer Networks and Internet Protocols 1 Note: T he slides are adapted and modified based on slides.
INTERNET PROTOCOLS Class 9 CSCI 6433 David C. Roberts Entire contents copyright 2011, David C. Roberts, all rights reserved.
Chapter 1 Data Communications and NM Overview 1-1 Chapter 1
ACT User Meeting June Your entitlements window Entitlements, roles and v1 security overview Problems with v1 security Tasks, jobs and v2 security.
Chapter 1: Introduction to Scaling Networks
Application Layer: functionality and Protocols
CCENT Study Guide Chapter 12 Security.
Christophe Jelger – CS221 Network and Security - Universität Basel Christophe Jelger Post-doctoral researcher IP Multicasting.
Technical Services Report March 6th, 1999 Singapore.
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 1 © 2010 Cisco and/or its affiliates. All rights reserved. LISP Mobility.
SLP – Endless Possibilities What can SLP do for your school? Everything you need to know about SLP – past, present and future.
DMZ (De-Militarized Zone)
DMZ (De-Militarized Zone)
IPv6 and.HK Ben Lee HKIRC 01 March Agenda 1. Why IPv6 for.hk 2. Roadmap of IPv6 deployment 3. Current status 4. Considerations 5. Further work.
Macromedia Dreamweaver MX 2004 – Design Professional Dreamweaver GETTING STARTED WITH.
Chapter 9: Subnetting IP Networks
XP New Perspectives on Browser and Basics Tutorial 1 1 Browser and Basics Tutorial 1.
: 3 00.
5 minutes.
1 Institutional Repository Workshop 1 – 3 April 2009 Presented by Leonard Daniels.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA TCP/IP Protocol Suite and IP Addressing Halmstad University Olga Torstensson
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 1 v3.1 Module 9 TCP/IP Protocol Suite and IP Addressing.
Installing Windows XP Professional Using Attended Installation Slide 1 of 30Session 8 Ver. 1.0 CompTIA A+ Certification: A Comprehensive Approach for all.
TCP/IP Protocol Suite 1 Chapter 18 Upon completion you will be able to: Remote Login: Telnet Understand how TELNET works Understand the role of NVT in.
© Copyright 1997, The University of New Mexico C-1 Internet Service Provider Services What to do once you’re connected.
The Internet Useful Definitions and Concepts About the Internet.
Lesson 20 – OTHER WINDOWS 2000 SERVER SERVICES. DHCP server DNS RAS and RRAS Internet Information Server Cluster services Windows terminal services OVERVIEW.
Chapter 13 Chapter 13: Managing Internet and Network Interoperability.
Technical Overview Qube 2. Presentation I. Solutions –A Gateway to the World –A Business Server –An Internet Server –An Server II. Concept –Server.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Chapter 7: Using Windows Servers to Share Information.
SMTP PROTOCOL CONFIGURATION AND MANAGEMENT Chapter 8.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.1 ISP Services Working at a Small-to-Medium Business or ISP – Chapter 7.
Csci5233 Computer Security1 Bishop: Chapter 27 System Security.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Application Layer Functionality and Protocols.
CH2 System models.
Chapter 1: The Internet and the WWW CIS 275—Web Application Development for Business I.
Application Layer Khondaker Abdullah-Al-Mamun Lecturer, CSE Instructor, CNAP AUST.
NETWORK HARDWARE AND SOFTWARE MR ROSS UNIT 3 IT APPLICATIONS.
Chapter 2 The Internet Underlying Architecture. How the DNS works? DNS: Domain Name System Visiting a website: - Write the address - IP will use the address.
ITGS Network Architecture. ITGS Network architecture –The way computers are logically organized on a network, and the role each takes. Client/server network.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 Application Layer Functionality and Protocols.
17 Establishing Dial-up Connection to the Internet Using Windows 9x 1.Install and configure the modem 2.Configure Dial-Up Adapter 3.Configure Dial-Up Networking.
4343 X2 – Outline The Domain Name System The Web.
Web Server Administration Chapter 4 Name Resolution.
Application of the Internet 1998/12/09 KEIO University, JAPAN Mikiyo
SUBMITTED BY: NAIMISHYA ATRI(7TH SEM) IT BRANCH
Welcome To : Group 1 VC Presentation
Chapter 7 Network Applications
Presentation transcript:

ITB Status Report Spring AI3 Meeting June 2003 Tokyo, Japan

Observatorium Bosscha One and the only star observatorium in South East Asia, currently run by Astronomy Dept, ITB Stationed at Lembang, West Java, about 6 km North from Bandung Website : ac.id ac.id

Live Observation at Bosscha The use of Internet Technology for (near) real-time sky object observation Input –CCD camera attached to the telescope Output –Live streaming video using RealPlayer –Periodic Image capture using Webcam Apps Audience can watch live observation directly from their computer!

Live Observation at Bosscha (contd) Conducted at May 7 th 2003, observing Mercury Transit (Mercury will pass through the sun, so looks visible from Earth) Done with portable telescope, with CCD camera attached CCD camera output is splitted in two direction by video splitter –For RealProducer, creating Streaming Media files –For Webcam apps (Durgem, creating periodic (30 sec) image capture

Live Observation at Bosscha (contd) Bosscha is connected to ITB using b Wireless Link Audience can watch video stream and image capture in website live.ai3.itb.ac.idhttp://bosscha- live.ai3.itb.ac.id Two video stream created : –56 kbps for Internet audience –384 kbps for ITB audience (LAN)

Responses about Live Observation at Bosscha Public Announcement about live observation was made in public mailing list and newspaper Responses was high at websites : see live.ai3.itb.ac.id/ live.ai3.itb.ac.id/

Results Cloudy weather makes hard to get good pictures of the Mercury Transit Thanks to the Durgem, 15 picture out of 300 picture captures the Transit Astronomers is very delighted about the results Planned to do live observation in late August, observing Mars at Perihelion (nearest distance to Earth)

Portable Telescope CCD Camera attached to the telescope

Real Producer & Webcam ServerVideo Splitter Journalists came to the observation site Observation site, at the top of the roof

Website and RealPlayer

Image captured using CCD CameraProcessed image by Bosscha Astronomer

ITB Campus-wide IPv6 ITB Dual-stack services – server –Web server –DNS server –FTP server –SSH and Telnet (remote login)

Campus-wide IPv6 Deployment Problem : –Campus Backbone is not IPv6-compliant Cisco Catalyst 6500 Sup1A/MSFC1 Cisco only released IPv6 on Sup2 and Sup720 Solutions : –One PC router (IPv6 w/ Zebra routing daemon) on each Catalyst –Each router is connected via IPv6 tunnel –Router connects subnets on each Catalyst using VLAN trunk 802.1q

Campus-wide IPv6 Deployment (contd)

Dual-stack Services DNS server –ns1.itb.ac.id/ns2.itb.ac.id now resolve IPv6 address server –MX.itb.ac.id has IPv6 address, with postfix (IPv6-patched) Web server –ITB official website ( has IPv6 addresshttp://

> uname -a FreeBSD itb2-v6-router.itb.ac.id 4.7-RELEASE FreeBSD 4.7-RELEASE #0: Fri May 9 23:56:42 GMT 2003 router.itb.ac.id:/usr/source/kame/freebsd4/sys/compile/itb2_v6_router- kame freebsd47 i386 > host -t AAAA fileserver.lapi.itb.ac.id fileserver.lapi.itb.ac.id has address 2001:200:830:11:2e0:18ff:fe8c:180a > ftp -6 fileserver.lapi.itb.ac.id Connected to fileserver.lapi.itb.ac.id. 220 fileserver.lapi.itb.ac.id FTP server (Version 6.00LS) ready. Name (fileserver.lapi.itb.ac.id:admin): dikshie 331 Password required for dikshie. Password: 230 User dikshie logged in. Remote system type is UNKNOWN. ftp> pwd 257 "/home/dikshie" is current directory. ftp> FTP Server

> uname -a FreeBSD ipv6.ppk.itb.ac.id 4.8-STABLE FreeBSD 4.8- STABLE #1: Sun Apr 6 18:26:06 WIT 2003 i386 > ssh -6 The authenticity of host 'fileserver.lapi.itb.ac.id (2001:200:830:11:2e0:18ff:fe8c:180a)' can't be established. DSA key fingerprint is 55:cb:3d:b8:cc:08:2d:44:a2:f2:9d:94:36:77:de:2a. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added 'fileserver.lapi.itb.ac.id' (DSA) to the list of known hosts. Password: SSH (Remote Login)

> uname -a FreeBSD ipv6.ppk.itb.ac.id 4.8-STABLE FreeBSD 4.8- STABLE #1: Sun Apr 6 18:26:06 WIT 2003 i386 > telnet -6 fileserver.lapi.itb.ac.id Trying 2001:200:830:11:2e0:18ff:fe8c:180a... Connected to fileserver.lapi.itb.ac.id. Escape character is '^]'. Trying SRA secure login: User (dikshie): Password: [ SRA accepts you ] TELNET (Remote Login)

Jun 16 21:36:27 ipv6 postfix/smtpd[355]: connect from mx2.itb.ac.id[2001:200:800:3000:202:44ff:fe35:2285] Jun 16 21:36:27 ipv6 postfix/smtpd[355]: 94A2620: client=mx2.itb.ac.id[2001:200:800:3000:202:44ff:fe35:2285] Jun 16 21:36:27 ipv6 postfix/cleanup[328]: 94A2620: message- id= Jun 16 21:36:27 ipv6 postfix/qmgr[327]: 94A2620: from=, size=7908, nrcpt=1 (queue active) Jun 16 21:36:27 ipv6 postfix/smtpd[355]: disconnect from mx2.itb.ac.id[2001:200:800:3000:202:44ff:fe35:2285] Jun 16 21:36:27 ipv6 postfix/local[330]: 94A2620: to=, relay=local, delay=0, status=sent (delivered to command: IFS=' ' && exec /usr/bin/procmail -f- || exit 75 #dikshie) SMTP (Incoming)

Jun 16 21:42:29 ipv6 postfix/pickup[326]: C8C2376: uid=1000 from= Jun 16 21:42:29 ipv6 postfix/cleanup[328]: C8C2376: message-id= Jun 16 21:42:29 ipv6 postfix/qmgr[327]: C8C2376: from=, size=1046, nrcpt=1 (queue active) Jun 16 21:42:40 ipv6 postfix/smtp[535]: C8C2376: to=, relay=mail.rootshell.be[3ffe:8100:200:1fff::25], delay=11, status=bounced (host mail.rootshell.be[3ffe:8100:200:1fff::25] said: User unknown (in reply to RCPT TO command)) SMTP (Outgoing)

Service Report By

Network Map

Recent Condition (1/2) All MX-ITB are IPv6 compliant. mx1.itb.ac.id –Pentium III-1000 MHz 128 MB RAM –Postfix with tls+ipv pf patch (migrated from qmail 1.03) –Apache –mailman 2.1 (migrated from ezmlm) mx2.itb.ac.id –AMD Duron 750 MHz 128 MB RAM –SMTP-auth using cyrus-sasl –Postfix with tls+ipv pf patch

Recent Condition (2/2) mx3.itb.ac.id –Pentium III-500 MHz 128 MB RAM –Postfix with tls+ipv pf patch mxout.itb.ac.id –Load balancing server using Cisco Catalyst 6500 (not IPv6 compliant) –Provide outgoing mail server for /16

Traffic/day on Mei 2003

Top 10 Mailing (by members) cdc-itb4907 itb696 dokter561 dosen421 jobs385 cdc-hrdstar341 hindu-dharma252 sysop-l203 itb75159 politeknik152

Filter Methods Filtered by RBL –sbl.spamhaus.org (transfer zone) –relays.ordb.org Filtered by regex –ftp://ftp.worldless.net/pub/postfix/ftp://ftp.worldless.net/pub/postfix/

Known Problems mx1.itb.ac.id –Queue file corrupt could make mailman stop sending to the list members –Database file corrupt could make a mailinglist whole configuration lost. Spamassasin implementation –Failed because of the lackness of resources (CPU+Memory) mx3.itb.ac.id crash within five minutes.

Others B/W usage Next : –Try using centralized database to maintain spam list –Try combining Postfix smtp-auth with sasl and ldap

ITB Looking Glass Source code from : ftp://ftp.enterzone.net/looking-lass/CURRENT/ ftp://ftp.enterzone.net/looking-lass/CURRENT/ with little adjustment

Domain Name Service Report

Recent Condition [1/2] DNS in ITB Network is handled by : ns1.itb.ac.id IP Address : :200:830:0:250:baff:fecb:9fcf Computer Specification : Processor : Intel Pentium 166 MHz 64 MB RAM FreeBSD 4.7-RELEASE BIND IPv6 Support ns2.itb.ac.id IP Address : :200:830:1:200:21ff:fee0:6d2e Computer Specification : Processor : Intel Pentium 200 MHz 128 MB RAM FreeBSD 4.7-RELEASE BIND IPv6 Support

Recent Condition [2/2] ns3.itb.ac.id IP Address : Computer Specification : Processor : Intel Pentium III 730 MHz 128 MB RAM OS : FreeBSD 3.5-RELEASE Software : BIND 9.22

DNS Handling ns1.itb.ac.id - Handling transfer zone between itb.ac.id domain and The Internet - Organizing domain *.itb.ac.id name server delegation ns2.itb.ac.id -Master & secondary name server for domain *.itb.ac.id -Master & secondary name server for /16 reversed ns3.itb.ac.id -Master & secondary name server for domain *.itb.ac.id -Master & secondary name server for /16 reversed

IPv6 DNS Server ITB use AAAA addressing, not A6 addressing ITB does not have its reverse for ipv6, [hopefully, we will get as soon as possible] ITB use ip6.arpa addressing on reverse, not ip6.int There are not specific domain for ipv6. if 1 server has ipv6, hostname has 2 ip (or more), ipv6 & ipv4

Load Traffic in ns2.itb.ac.id DNS traffic in ai3- indonesia- ether.itb.ac.id DNS traffic is shown in blue color, its not significant if its compared with other traffics

Known Problems ITB could not resolved some other domains. solution : DNS administrator in both domain (ITB domain and the troubled domain) would make zone transfer manuallybetween ns1.itb.ac.id and their name server Delegated name server down for a longtime, thus delegated domain disappeared from The Internet solution : ITB DNS Administrator would take off its delegation and use ns2/ns3 for primary name server of its domain