Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Home Network Overkill

Sponsored · Ship Features Fearlessly Turn features on and off without deploys. Used by thousands of Ruby developers.

Home Network Overkill

Avatar for Jack Scott

Jack Scott

May 27, 2011
Tweet

More Decks by Jack Scott

Other Decks in Technology

Transcript

  1. Holy ****? • 10 separate physical locations. 4 of them

    are datacentres. • Uses 50% of the 172.16.0.0/12 block. • Has ~20 public IPv4 addresses. • 4 full racks of Cisco gear. • We can’t count the servers.
  2. It’s not just me. • Four people are the culprits.

    Three in Australia, one in the UK. • We’ve written software to help manage the allocation of IP addresses. • We’re busy writing our own network monitoring system.
  3. The Domain Name System • We run our own top

    level domain, .fp • More DNS servers than NASA or Google (we have four, they have three each). • We’re working on a fifth (in order to equal Facebook). • Ours are geographically separated too.
  4. The VPN Links • Used to connect each of the

    physical sites together. • A combination of technologies: – Some are IPSec/IPIP – Some are OpenVPN • We have private IPv4 traffic as well as IPv6 traffic tunnelled. • Uses BGP routing protocol with 10 ASNs.
  5. BUT WHY?!? • Because setting all this up is still

    more reliable than sending a fax. • Because it gives us a chance to practise our skills on a “real” network. We’re all budding system or network administrators. • Because we can!