Router and Infrastructure Hacking (CCC conference last week)

Hi! Happy new year!

At CCC last week Raven Alder gave a talk on the subject (Router and
Infrastructure Hacking), which was pretty neat!

I figure some of you may enjoy this. I hope the video for her talk becomes
available soon.

http://events.ccc.de/congress/2006/Fahrplan/attachments/1197-CCC_infrastructure_hacking_12_29_06.ppt

2. There was also a lecture on sFlow, by Elisa Jasinska:
Video:
ftp://ftp.fortunaty.net/video/23c3/wmv/sflow-t4s2.wmv
Presentation and paper:
http://events.ccc.de/congress/2006/Fahrplan/attachments/1229-sflow.pdf
http://events.ccc.de/congress/2006/Fahrplan/attachments/1137-sFlowPaper.pdf

3. Just for kicks, for those of you interested, here is Lawrence Lessig's
talk, which is not related to net-ops in any way:
ftp://ftp.fortunaty.net/video/23c3/wmv/lawrence-lessig-code-vs-culture-t3s1.wmv

4. I do wish the talk on how CCC set up their multiple-uplink GigE network
for the conference was filmed, I call this type of "create an ISP in 24
hours", in a very very hostile and busy environment such as at
defcon or CCC "extreme networking".

They got their own ASN for 4 days. Set up a hosting farm,
surfing, mass wireless, etc. for users, and what-not. Discovered a
wireless network vulnerability, a router DoS with NextHop memory issues,
etc.

Not to mention having to fight off DDoSs non stop, fake APs, thousands of
active and abusive users and BGP (I really liked their presentation on
RIPE's bgplay - very cool stuff - http://www.ris.ripe.net/bgplay/ ).

3000 end points. 1.6 gigs up, 1.0 gigs down.

CCC itself was very good and a lot of fun, there are many other
presentations and videos available for download:

ftp://ftp.fortunaty.net/video/23c3/wmv/
http://events.ccc.de/congress/2006/Fahrplan/index.en.html

  Gadi.

* ge@linuxbox.org (Gadi Evron) [Thu 04 Jan 2007, 00:16 CET]:

4. I do wish the talk on how CCC set up their multiple-uplink GigE network for the conference was filmed, I call this type of "create an ISP in 24 hours", in a very very hostile and busy environment such as at defcon or CCC "extreme networking".

AFAIK I was filmed. Slides for it are online. And it took slightly more than 24 hours to set it all up. :slight_smile:

  -- Niels.

* ge@linuxbox.org (Gadi Evron) [Thu 04 Jan 2007, 00:16 CET]:
>4. I do wish the talk on how CCC set up their multiple-uplink GigE network
>for the conference was filmed, I call this type of "create an ISP in 24
>hours", in a very very hostile and busy environment such as at
>defcon or CCC "extreme networking".

AFAIK I was filmed. Slides for it are online. And it took slightly
more than 24 hours to set it all up. :slight_smile:

Ahh! Can't find the video, but here are the slides:
http://events.ccc.de/congress/2006/Fahrplan/attachments/1231-23c3-noc-review.pdf

Great stuff!

Well, considering you got fedex to actually deliver the equipment at 2 AM
Xmas night and the conference started the day after... slightly more,
yes. :stuck_out_tongue:

Gadi Evron wrote:

4. I do wish the talk on how CCC set up their multiple-uplink GigE network
   for the conference was filmed, I call this type of "create an ISP in 24
   hours", in a very very hostile and busy environment such as at
   defcon or CCC "extreme networking".

We do the same for Dreamhack [1] twice each year, very fascinating. Takes a little
bit more than 24h, but not THAT much. Usually drags attention from media & geeks
on how it all works.

We had 7800 connected nodes in the network last time we ran (december 2006)
and a total of ~10800 participants, filling a 10Gigabit connection onto the
Internet. 10Gigabit core, every 22 participants share a Gigabit uplink to
the core. We don't believe we're fully ready to let each visitor get a Gig
uplink to their computer yet, but in a year or so possibly. We'll see.

We've been given a /16 each time so each visitor has had a fully public IP,
and the bandwidth has been provided by Telia the last couple of years. On
the hardware side we've both built it all with Extreme Networks equipment
and Cisco (and a mix of both).

Interesting event, indeed. I recommend visiting us, Guinness book of World
Records did and signed us up. :stuck_out_tongue:

[1]: DreamHack - Where the gaming community comes to life

Mattias Ahnberg wrote:

We've been given a /16 each time so each visitor has had a fully public IP,
and the bandwidth has been provided by Telia the last couple of years. On
the hardware side we've both built it all with Extreme Networks equipment
and Cisco (and a mix of both).

You forgot to mention that there was also IPv6
connectivity :wink:

-- amar

Amar wrote:

You forgot to mention that there was also IPv6
connectivity :wink:

*grin* How many kilobit IPv6 traffic did we push, you know? :stuck_out_tongue:

* mattias@ahnberg.pp.se (Mattias Ahnberg) [Thu 04 Jan 2007, 12:31 CET]:

Amar wrote:

You forgot to mention that there was also IPv6 connectivity :wink:

*grin* How many kilobit IPv6 traffic did we push, you know? :stuck_out_tongue:

23C3 did a few hundred Mbps - check the slides Gadi posted a link to.
(Data was based on sFlow samples, so it's based on statistics, but usually pretty accurate)

  -- Niels.

For another form of "extreme networking", you could check out what's
built every year for the SC Conference: https://scinet.supercomp.org/

Given the huge list of sponsors, equipment usually isn't the problem,
getting everything/one to play nice is another thing though ... :wink:

Diagram (1.5MB): http://scinet.supercomp.org/2006/SCinet_2006_Public.pdf

Kind regards,
JP Velders
(disclaimer: bottom left hand corner of the banner ;D)

Mattias Ahnberg wrote:

> We've been given a /16 each time so each visitor has had a fully public IP,
> and the bandwidth has been provided by Telia the last couple of years. On
> the hardware side we've both built it all with Extreme Networks equipment
> and Cisco (and a mix of both).

You forgot to mention that there was also IPv6
connectivity :wink:

hehehe. :slight_smile: I am definitely coming to the next dreamhack, than, if anybody
there speaks English.

Speaking of IPv4, an interesting thing from the CCC presentation was that
the IPV6 space used equaled (if I got this right) the entire EU IPv6
normal use.

Would this be that the 100-150 megabit/s of IPv6 used at 23C3 equaled the 100-150 megabit/s of IPv6 used at AMS-IX? I think it was also mentioned that this was because some major news providers used IPv6 for their NNTP sessions.

But yes, I was surprised at the amount of IPv6 used at 23C3, wonder if it was because local services was IPv6 enabled. There was no distinction between internal IPv6 traffic and external IPv6 traffic so I don't know.

> defcon or CCC "extreme networking".

For another form of "extreme networking", you could check out what's

I "stole" the name from the programming world with "extreme coding". I
somehow feel it fits.

built every year for the SC Conference: https://scinet.supercomp.org/

Given the huge list of sponsors, equipment usually isn't the problem,
getting everything/one to play nice is another thing though ... :wink:

Diagram (1.5MB): supercomp.org

Very cool, but somehow doesn't feel as hostile. heh :stuck_out_tongue:
:slight_smile: