<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>my web 0.2 website &#187; Sys Admin</title>
	<atom:link href="http://www.andyd.net/category/sys-admin/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.andyd.net</link>
	<description>Andy Davidson's tech blog</description>
	<lastBuildDate>Sun, 27 Jun 2010 00:29:55 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Can you fill all of the Great Lakes with M&amp;M sized /64s?</title>
		<link>http://www.andyd.net/2010/can-you-fill-great-lakes-with-mm-sized-64s/</link>
		<comments>http://www.andyd.net/2010/can-you-fill-great-lakes-with-mm-sized-64s/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 19:23:24 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[networking]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=180</guid>
		<description><![CDATA[<p>Posted to my blog at the request of <a href="http://www.lentil.org/" onclick="javascript:urchinTracker ('/outbound/article/www.lentil.org');">RobL </a>!</p>
<p>On Nanog, <a href="http://www.delong.com/" onclick="javascript:urchinTracker ('/outbound/article/www.delong.com');">Owen DeLong </a>and Larry Sheldon were discussing the relative size of the IPv6 address space:</p>
<pre>&gt;&gt; 64 bits is enough networks that if each network was an almond M&amp;M,
&gt;&gt; you would be able to fill all of the great lakes with M&amp;Ms before you
&gt;&gt; ran out of /64s.
&gt; Did somebody once say something like that about Class C addresses?
</pre>
<p>Well, this seemed like a challenge for <em><u>Maths</u></em>, and the answer is:</p>
<p>No.  There are only 2,097,152 Class C networks.</p>
<p>Assuming all M&amp;Ms are spheroids of uniform oblate nature, radius major axis=6mm, minor axis=3mm.  <a href="http://en.wikipedia.org/wiki/Spheroid#Volume" onclick="javascript:urchinTracker ('/outbound/article/en.wikipedia.org');">Volume is (4/3)Pi (Major<sup>2</sup>) Minor</a></p>
<p>They will be poured into a great lake of your choice, and we will assume random close packing (agitation mechanisms are probably best discussed off-list) and <a href="http://en.wikipedia.org/wiki/Random_close_pack" onclick="javascript:urchinTracker ('/outbound/article/en.wikipedia.org');">a (generous, but this Wikipedia article insists) void fraction of 32%.</a></p>
<p>Volume of m&amp;m = 0.452cm<sup>3</sup>, occupies 0.665cm<sup>3</sup>.</p>
<p>Lake Erie is 484km<sup>3</sup> &#8211; See: <a href="http://www.epa.gov/glnpo/factsheet.html" onclick="javascript:urchinTracker ('/outbound/article/www.epa.gov');">http://www.epa.gov/glnpo/factsheet.html</a></p>
<p>1 km<sup>3</sup> = 1,000,000,000,000,000 cm<sup>3</sup></p>
<p>484,000,000,000,000,000 * 0.665 = 321,860,000,000,000,000 m&amp;ms needed to<br />
fill this lake.</p>
<p>There are 4,294,967,296 /64s in my own /32 allocation.  If we only ever use 2000::/3 on the internet, I make that 2,305,843,009,213,693,952 /64s.  This is enough to fill over seven Lake Eries.  The total amount<br />
of ipv6 address space is exponentially larger still &#8211; I have just looked at 2000::/3 in these maths.</p>
<p>THE IPv6 ADDRESS SPACE IS VERY, VERY, VERY BIG.</p>
<p><strong> Can we please now just go ahead and roll out some ipv6 services? <strong></strong></strong></p>
<p></p>

<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2010/can-you-fill-great-lakes-with-mm-sized-64s/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2010 will be a bad year for ipv4</title>
		<link>http://www.andyd.net/2010/2010-will-be-a-bad-year-for-ipv4/</link>
		<comments>http://www.andyd.net/2010/2010-will-be-a-bad-year-for-ipv4/#comments</comments>
		<pubDate>Mon, 25 Jan 2010 20:08:28 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[The 'net]]></category>
		<category><![CDATA[ecommerce]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[telecoms]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=178</guid>
		<description><![CDATA[<p>We are now at the end of January, but IPv4, the Internet&#8217;s core addressing protocol still has a nasty hangover, and all signs are pointing to 2010 being a bad year for the protocol.</p>
<p>Since January 1st, a few key milestones have passed, indicating how urgent the IPv4 rundown problem has become. Firms that rely on internet connectivity must take urgent action in light of the events:</p>
<ul>
<li>The allocation last week of two further /8s (blocks of IPv4 addresses with the same number before the first dot) to APNIC mean that for the first time, less than <a href="http://www.nro.net/media/less-than-10-percent-ipv4-addresses-remain-unallocated.html" onclick="javascript:urchinTracker ('/outbound/article/www.nro.net');">just ten percent of the IPv4 unallocated pool is available </a>to be assigned.  At current utilisation rates, this pool will be exhausted in only 600 days.  Of course, the internet could stop growing, but all signs point away from this&#8230;</li>
<li>The allocation of 1.0.0.0/8 is the assignment of the first really &#8216;dirty&#8217; block of addresses, signalling that we really are in the run-down period.  Bad network design decisions in the past have meant that networks have &#8216;borrowed&#8217; the use of addresses starting 1. for &#8216;internal use only&#8217; or special applications on their network.  This means that organisations assigned address space starting &#8216;1&#8242; may well have partial connectivity even though they are rightfully assigned the space.  Examples are the <a href="http://www.zapzone.com.my/faq.php#u7" onclick="javascript:urchinTracker ('/outbound/article/www.zapzone.com.my');">braindead hotspot operators who take addresses like 1.1.1.1 </a>to trigger hotspot logout, but a handful of examples appear across this address range.</li>
<li>RIPE NCC, the organisation who assign addresses to networks in and around Europe have this month implemented their &#8216;run down&#8217; policy which will mean that organisations requesting space will only be able to cater for their <a href="http://www.ripe.net/ripe/policies/proposals/2009-03.html" onclick="javascript:urchinTracker ('/outbound/article/www.ripe.net');">growth requirements for a very short amount of time</a>.  This is to evenly spread the inevitable misery across the ISP community.</li>
</ul>
<p>RIPE members should thoroughly audit their address space so that they can ensure that their records are accurate, because RIPE are more likely to ensure that address space is assigned to your end users in line with the community&#8217;s policies.  ISPs and services providers who need help can contact me for further information or specific assistance.</p>
<p>Organisations who rely on internet connectivity for their products should ensure their providers have an IPv6 migration plan in place.  Otherwise end-to-end connectivity for your home or office is unlikely to be something you can enjoy looking beyond the runout period.  Companies hosting network services, for example a website, should enquire what their host&#8217;s IPv6 plans are, and start to enable their services via v6.</p>
<p>There is real traction to ensure v6 support appears in both the hardware and services you need to connect to the internet.  It is easier today than before to find help making your services available via v6.  The alternatives &#8211; patchy connectivity via nested stacks of ipv4 islands, or no more end-to-end connectivity (so that your internet service is a walled garden), have much worse consequencies than learning to roll v6.</p>
<p>Engineers know the facts by now and have no excuse.  For more information, see the RIPE NCC&#8217;s information site, <a href="http://www.ipv6actnow.org/" onclick="javascript:urchinTracker ('/outbound/article/www.ipv6actnow.org');">ipv6actnow</a>.</p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2010/2010-will-be-a-bad-year-for-ipv4/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>DNSSEC and SSL certificates</title>
		<link>http://www.andyd.net/2009/dnssec-and-ssl-certificates/</link>
		<comments>http://www.andyd.net/2009/dnssec-and-ssl-certificates/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 11:48:45 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[The 'net]]></category>
		<category><![CDATA[domains]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=169</guid>
		<description><![CDATA[<p>Dr. Jörg Schweiger of the German domain name registry DENIC posed an interesting question at this morning&#8217;s first <a href="http://www.denog.de/"title="Deutsche Network Operators Group"  onclick="javascript:urchinTracker ('/outbound/article/www.denog.de');">DENOG </a>meeting, in Frankfurt.</p>
<p>Would domain name users who are concerned about the accuracy of data served pay extra for the ability to sign their DNS zone ?  A handful of people in the room raised their hand in agreement, but the overwhelming majority of operators did not.</p>
<p>His argument was that this compared well with SSL certification authorities who sell certificates that suggest that visitors to a website are interacting with a validated entity, and the technology guarantees privacy between the visitor and the website.  It&#8217;s this technology which makes buying and selling online safe.</p>
<p>However, I think that DNSSEC has different aims altogether &#8211; simply to guarantee that DNS data is not changed en-route between the authoratative server, through the caches, all the way to users.  Therefore there are significant attack mitigation reasons to deploy DNSSEC, so I hope that operators will begin trials (we are doing so), and that the pace of trials will quicken as <a href="http://www.ripe.net/ripe/meetings/ripe-59/presentations/abley-dnssec-root-zone.pdf" onclick="javascript:urchinTracker ('/outbound/article/www.ripe.net');">the root zone will be signed this year</a>.</p>
<p>If DNSSEC is deployed as designed, then temporary and brief mistakes will not be imported into DNS caches, users will not fall foul to tampered data in caches, and we all receive an authenticated/secure channel for distributing DNS data inside an organisation.</p>
<p>The argument that Dr. Schweiger used is that DNSSEC adds an operational and technical burden to registries (extra communication with registrars, more complex software, additional CPU and bandwidth requirements).</p>
<p>I hope that my colleagues in other organisations agree that there are significant infrastructure advantages to freely allowing DNSSEC to grow, and that Moore&#8217;s Law, automation, and the fact that DNS registries normally find it simple to peer widely with ISP networks will offset the needs to consider the commercial signing model.</p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2009/dnssec-and-ssl-certificates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>innodb_data_file_path bug with long line limits</title>
		<link>http://www.andyd.net/2009/innodb_data_file_path-bug-with-long-line-limits/</link>
		<comments>http://www.andyd.net/2009/innodb_data_file_path-bug-with-long-line-limits/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 19:47:55 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[broken]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[debian]]></category>
		<category><![CDATA[innodb]]></category>
		<category><![CDATA[mysql]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=163</guid>
		<description><![CDATA[<p>I have a MySQL server which was starting to scrunch its data more and more slowly.  Some analysis led me to blame an autoextending innodb file which had grown somewhat unkept to several GB.  I wish the autoextend behaviour could be configured to grow more files rather than grow one file, but that&#8217;s another rant.  I decided to clear it up which is a simple process :</p>
<ul>
<li>Stop the inflow of new data</li>
<li>mysqldump the database to a .sql file</li>
<li>Bin the junk innodb data files</li>
<li>Edit my.cnf to create files of a spec that I wanted, start mysql</li>
<li>Import the data.</li>
</ul>
<p>I decided to create 500 data files of 100MB.  When MySQL started, it ignored the config I had set in my.cnf and loaded the innodb defaults &#8211; 5MB log files and an ibdata file of 10MB which could autoextend.</p>
<p>It turns out that if the innodb_data_file_path line is too long then the innodb section is ignored and the defaults will prevail.  I changed the plan to create 200 files of 250MB, which made for much smaller config, and the innodb settings loaded just fine.</p>
<p>If you want a perl one liner to generate the innodb_data_file_path, I used:</p>
<blockquote><p>perl -e &#8216;$i=1; do { $padded = sprintf(&#8220;%03d&#8221;, $i); print &#8220;ibdata$padded:250M;&#8221;; $i++; } until ($i eq 200)&#8217;;</p></blockquote>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2009/innodb_data_file_path-bug-with-long-line-limits/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Preventing Mailman annoyances</title>
		<link>http://www.andyd.net/2009/preventing-mailman-annoyances/</link>
		<comments>http://www.andyd.net/2009/preventing-mailman-annoyances/#comments</comments>
		<pubDate>Thu, 15 Jan 2009 16:39:39 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[The 'net]]></category>
		<category><![CDATA[ecommerce]]></category>
		<category><![CDATA[non-tech]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[mailing list]]></category>
		<category><![CDATA[mailman]]></category>
		<category><![CDATA[majordomo]]></category>
		<category><![CDATA[sysadmin]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=115</guid>
		<description><![CDATA[<p>Inspired by TheHodge&#8217;s &#8220;<a href="http://www.thehodge.co.uk/programming/technology/things-to-do-after-youve-installed-wordpress.php" onclick="javascript:urchinTracker ('/outbound/article/www.thehodge.co.uk');">After you install Wordpress</a>&#8221; article, I made a note of the things I did to configure a Mailman mailing list, after creating it.  Much of this is to make the look-and-feel replicate how I used to run Majordomo lists.</p>
<p>Firstly, I like the Bounce handling and web-interface to Mailman, so this is why I don&#8217;t just run Majordomo for lists any more.  Its worth pointing this out, in case you wonder why I still use tool B, even though I have to do lots of work to make it work like tool A !</p>
<p>After running newlist, I recommend the following configuration changes (defaults which are changed assume you are running the Debian packaged Mailman) :</p>
<ul>
<li>General Options &#8211; make the administrators email address a <strong>role account that you will not subscribe to the mailing list.</strong> This is basically so that if you bounce an administration message from Mailman, due to your spam filters or an error, Mailman wont decide to unsubscribe you from the mailing list!  I have had this happen to me before when I used to hand-check spam directed at uknot.</li>
<li><strong>Decapitalise public name of the list</strong> &#8211; to make it look neater, and more like the output of the &#8216;lists&#8217; command in majordomo.  Don&#8217;t forget to decapitalise the subject line tag if you do this.  I also tend to make the subject line tag very small so that on little displays, it&#8217;s still possible to scan a folder and read threads of interest on subject alone.</li>
<li><strong>Disable monthly reminders</strong> &#8211; they are really annoying to your subscribers, and Debian&#8217;s default position is disabled, but some implementations do not disable subscription reminders.</li>
<li>My users get confused by the <strong>Filter out duplicate messages to list members</strong> option.  When a list subscriber is cc:d to a list post, users tend to expect to see a copy of the mail in their inbox, and their mailing list archive.  I turn the filter off so that this happens.</li>
<li>I tend to enable the <strong>Should administrator get notices of subscribes and unsubscribes</strong> option, so that I can track whether promoting a list in a certain place has worked!</li>
<li>In &#8220;Non Digest options&#8221;, if I am migrating for a Majordomo list, I empty the box for <strong>message footer</strong>, and also tend to remove it when its a geek mailing list, as to most high volume mail readers, its obvious when an email has been posted to a mailing list, because its filtered into the correct mailbox !  For low volume lists that are intended for low volume mail readers, the footer might be useful.</li>
<li>Check the <strong>reply to</strong> option, so that mailing lists that are intended to promote on-list discussion have a header that directs conversation back to the list, and mailing lists that will yield a high proportion of off-list mail do not have this header.</li>
<li>Be slightly annoyed with me that the only English option in &#8216;Language Options&#8217; is <strong>English (USA)</strong> when there is no English (UK).</li>
</ul>
<p>Happy list-administration!</p>
<p>And you may find the following lists interesting to your work :</p>
<ul>
<li><a href="http://chilli.nosignal.org/mailman/listinfo/mailop" onclick="javascript:urchinTracker ('/outbound/article/chilli.nosignal.org');">mailop</a>, for those who work in the field of mail systems administration.</li>
<li><a href="http://chilli.nosignal.org/mailman/listinfo/experts" onclick="javascript:urchinTracker ('/outbound/article/chilli.nosignal.org');">experts</a>, for those who work in expert e-commerce roles.</li>
<li><a href="http://lists.uknof.org.uk/cgi-bin/mailman/listinfo/" onclick="javascript:urchinTracker ('/outbound/article/lists.uknof.org.uk');">uknof</a>, for those who work in network engineering roles, or systems/ISP environments.</li>
</ul>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2009/preventing-mailman-annoyances/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Asterisk 1.4.22 Agent call acknowledgement bug</title>
		<link>http://www.andyd.net/2009/asterisk-1422-agent-call-acknowledgement-bug/</link>
		<comments>http://www.andyd.net/2009/asterisk-1422-agent-call-acknowledgement-bug/#comments</comments>
		<pubDate>Sun, 11 Jan 2009 11:14:45 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[telecoms]]></category>
		<category><![CDATA[voip]]></category>
		<category><![CDATA[agent]]></category>
		<category><![CDATA[asterisk]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[queue]]></category>

		<guid isPermaLink="false">http://www.andyd.net/?p=109</guid>
		<description><![CDATA[<p>The behaviour of Asterisk has been altered since 1.4.21, possibly in error, with regard to answering calls from call queues.</p>
<p>There is a feature that requires agents to press # when they are ready to speak to a caller.  Since we forward calls to agents via their mobiles, rather than auto-answer calls in a desk environment, we disabled that feature with ackcall=no in agent.conf.</p>
<p>After upgrading to 1.4.22 we see this configuration is nolonger honoured.  Diffing chan_agent.c between version 1.4.21 and 22 shows a new section of code saying (in English) that &#8216;if there is no per-channel override specified in the dialplan, default the configured variable&#8217; (line 2048).  I looked at where the default was read from the config file and it looks like a lot of different chunks of chan_agent want to set the ackcall default!</p>
<p>The bug shows up in the asterisk console as :</p>
<blockquote><p>&#8211; Agent/xxx is ringing<br />
&#8211; SIP/voip-out-081e5a88 is making progress passing it to Local/447xxxxxxxxx@uk_all-a667,2<br />
&#8211; SIP/voip-out-081e5a88 answered Local/447xxxxxxxxx@uk_all-a667,2<br />
&#8211; Local/447xxxxxxxxx@uk_all-a667,1 answered, <strong>waiting for &#8216;#&#8217; to acknowledge</strong></p></blockquote>
<p>The workaround is that the only safe place to set the default ackcall behaviour is for each channel in the dialplan.  If you want to disable the &#8216;waiting for &#8216;#&#8217; to acknowledge&#8217; behaviour, configure your dialplan as such :</p>
<blockquote><p>exten =&gt; 1701,1,Answer()<br />
<strong>exten =&gt; 1701,n,Set(AGENTACKCALL=no)</strong><br />
exten =&gt; 1701,n,Queue(noc|r|||40)<br />
exten =&gt; 1701,n,Voicemail(xxxxx)<br />
exten =&gt; 1701,n,Hangup</p></blockquote>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2009/asterisk-1422-agent-call-acknowledgement-bug/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2011 &#8211; An addressing odyssey. Preparing enterprise for IPv6.</title>
		<link>http://www.andyd.net/2008/2011-an-addressing-odyssey-preparing-enterprise-for-ipv6/</link>
		<comments>http://www.andyd.net/2008/2011-an-addressing-odyssey-preparing-enterprise-for-ipv6/#comments</comments>
		<pubDate>Thu, 04 Dec 2008 23:11:05 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[The 'net]]></category>
		<category><![CDATA[ecommerce]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[non-tech]]></category>
		<category><![CDATA[peering]]></category>
		<category><![CDATA[telecoms]]></category>
		<category><![CDATA[voip]]></category>

		<guid isPermaLink="false">http://www.andyd.net/index.php/2008/12/04/2011-an-addressing-odyssey-preparing-enterprise-for-ipv6/</guid>
		<description><![CDATA[<p>Yesterday I gave a talk to Sheffield GeekUp on <a href="http://www.andyd.net/media/talks/2011-addressing-odyssey.pdf" >preparing enterprises for IPv6</a> [download].  The premise of the talk was :</p>
<ul>
<li>IPv4 addresses are scarse, and at current consumption rates, the IANA pool of free v4 addresses will be gone at the start of 2011.</li>
<li>This starts a &#8220;Post IPv4 world&#8221; where the IPv4 internet continues to function as before (certainly initially), but obtaining new addresses becomes harder and expensive.  This inhibits expansion of existing firms, and new entrants to the market.</li>
<li>Address trading is likely to lead to a larger routing table, meaning that failure-recovery times increase, and the risk of blackholes on the internet increases.</li>
<li>Large broadband providers may not have enough v4 addresses to give one address per customer.  This means protocol translation techniques need to be used, which break the end to end model.  We rely on the end to end model when innovating new services on the internet.</li>
<li>If services and consumers gradually roll v4 and v6 (dual stack), the negative impact of markets for addresses, routing problems, and translation can be mitigated.</li>
<li>Service providers are enabling v6 in the core.  Enterprises need to move next in order to get the world v6 ready.</li>
</ul>
<p>The advice I gave was :</p>
<ul>
<li>Today&#8217;s market leaders are already learning v6 lessons in their labs, (e.g. ipv6.google.com).  They are doing this to help them retain market leadership.  If you want to retain your market position, start labbing your applications and service provision with v6.</li>
<li>Write a policy stating all new purchases of infrastructure and services need to be from providers with v6 support, or a well defined v6 road map.  In other words, make v6 a &#8220;life cycle upgrade&#8221;.</li>
<li>Share information, and learn information from your industry peers.</li>
<li>I also listed some advice to developers with regard to v4 and v6 differences.</li>
<li>I then delivered a very quick primer to those who have not seen v6 deployed before.</li>
</ul>
<p>My hope is that this talk is improved upon and delivered internationally to enterprises.</p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2008/2011-an-addressing-odyssey-preparing-enterprise-for-ipv6/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Mac VNC Client for Linux KVM</title>
		<link>http://www.andyd.net/2008/mac-vnc-client-for-linux-kvm/</link>
		<comments>http://www.andyd.net/2008/mac-vnc-client-for-linux-kvm/#comments</comments>
		<pubDate>Sun, 30 Mar 2008 21:37:52 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[networking]]></category>

		<guid isPermaLink="false">http://www.andyd.net/index.php/2008/03/30/mac-vnc-client-for-linux-kvm/</guid>
		<description><![CDATA[<p><img width="416" height="340" alt="kvm-annoying.png" id="image98" src="http://www.andyd.net/wp-content/uploads/2008/03/kvm-annoying.png" />When you build a KVM guest, if you want to install the guest over the network, you should attach the video console of your guest to a VNC display.</p>
<p>How can I put this..? This is quite a novel way of doing it.  I think there&#8217;s a reason that more virtualisation systems don&#8217;t work in this way.  VNC is not great, but I am sure there is a reason that I can&#8217;t use a dummy serial port instead.  I&#8217;d have preferred RDP, but perhaps there&#8217;s a reason I can&#8217;t use that too.</p>
<p>I normally use Chicken of the VNC as a mac osx client, because it has a funny name, and has always worked.  However, it crashes and burns (see screen shot) when trying to install Debian on a KVM guest.  Hopefully I can save someone else an evenings&#8217;s worth of trying every other mac vnc client, and offer the fix.  <a href="http://www.versiontracker.com/dyn/moreinfo/macosx/9424" onclick="javascript:urchinTracker ('/outbound/article/www.versiontracker.com');">Just use VNCViewer</a>.  I tried this after half a dozen others which all failed in a similar way to Chicken.</p>
<p>Any comments on why RDP or Serial might not have been better welcome.</p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2008/mac-vnc-client-for-linux-kvm/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Internationalisation of DNS continues</title>
		<link>http://www.andyd.net/2008/internationalisation-of-dns-continues/</link>
		<comments>http://www.andyd.net/2008/internationalisation-of-dns-continues/#comments</comments>
		<pubDate>Fri, 08 Feb 2008 23:22:30 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[The 'net]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[domains]]></category>
		<category><![CDATA[ecommerce]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[non-tech]]></category>

		<guid isPermaLink="false">http://www.andyd.net/index.php/2008/02/08/internationalisation-of-dns-continues/</guid>
		<description><![CDATA[<p>Like most original internet standards, the DNS was designed to initially suit the needs of any section of the world that could communicate using 7-bit ASCII and Latin character sets.  Then the internet became really popular.  Everywhere.  The DNS had to evolve to cope with naming schemes that came from alphabets all over the world.</p>
<p>All successful internet protocols are elegant and simple by design.  This makes it possible to retro-fit great ideas someone has one.  Internationalisation was proposed in 1992, and it eventually became <a href="http://www.verisign.com/static/002495.pdf" onclick="javascript:urchinTracker ('/outbound/article/www.verisign.com');">possible to register Internationalised Domain Names (IDNs) in the .com space</a> in 2003.  Standards move slowly on the internet!</p>
<p>IDN is up for discussion again at the <a href="http://www.icann.org/announcements/announcement-07feb08.htm" onclick="javascript:urchinTracker ('/outbound/article/www.icann.org');">31st ICANN meeting</a> on Monday.  This time, the world&#8217;s registry community are meeting in New Delhi, one of the most significant IT regions of the non-Latin world, to discuss the remaining &#8220;glitch&#8221; in the IDN system.  An IDN might look like this: <span class="Body-0020Text--Char" style="font-family: 'Verdana','Arial'; font-size: 10pt"><img width="62" height="13" alt="image" src="http://www.verisign.com/stellent/%3C$HttpWebRoot$%3Egroups/www_naming/documents/web_content/%7Eexport/001386%7E000025/124362_2.gif" /></span>.com.  Therefore any user still needs to be able to type .com in order to reach the resource they request.  There is a proposal at the ICANN meeting to add Internationalised top-level domains, actual complimentary TLDs to .com, that will mean that resources can be reached in any supported alphabet.</p>
<p>This is interesting stuff.  One school of thought is that this could significantly assist the development of electronic enterprise in many more pockets of the world.  The supremacy of Silicon Valley as the web&#8217;s main economy would then be broken.  I think differently &#8211; I think that .com is now too established as the main ecommerce &#8216;brand&#8217; TLD, and attempts to localise the meaning of .com will be fruitless.  .com means &#8220;I trade online&#8221;.  Despite .biz and similar TLDs being equal in technical terms, they are not equal in the eyes of shoppers or traders.  .com now has specific global meaning, and can&#8217;t be diluted.</p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2008/internationalisation-of-dns-continues/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Text editors to be placed on endangered species list</title>
		<link>http://www.andyd.net/2008/92/</link>
		<comments>http://www.andyd.net/2008/92/#comments</comments>
		<pubDate>Mon, 21 Jan 2008 21:50:46 +0000</pubDate>
		<dc:creator>andy</dc:creator>
				<category><![CDATA[Sys Admin]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.andyd.net/index.php/2008/01/21/92/</guid>
		<description><![CDATA[<p>When men were men and text was text, I could open a text editor, then put some, err, text in, and then save it as text.  Then Apple released Leopard, the latest version of their operating system which shipped with the usual text editor (called Text Edit).  And it doesn&#8217;t let me save as plain text.  Unsmart.<img width="453" height="294" alt="Text Editors Aren't For Text Anymore" id="image91" src="http://www.andyd.net/wp-content/uploads/2008/01/text_editor_not_for_text_anymore.png" /></p>
<p></p>
<p></p>
]]></description>
		<wfw:commentRss>http://www.andyd.net/2008/92/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>
