~dr|z3d
@RN
@RN_
@StormyCloud
@T3s|4_
@eyedeekay
@orignal
@postman
@zzz
%Liorar
%ardu
%cumlord
%mareki2p
+FreefallHeavens
+HowardPlayzOfAdmin
+Onn4l7h
+Onn4|7h
+Over
+Rogueone
+Sh0ck
+Xeha
+hk
+profetikla
+qend-irc2p
+r00tobo
+romer
+uop23ip
+waffles
+wew
+xHarr
Arch
BravoOreo
BubbRubb
Danny
FreeB
Irc2PGuest59861
Irc2PGuest77400
Junkyard5
Meow
T3s|4__
Xel-Ruun
acetone_
aisle
anontor
maylay
moe_
nilbog
nnm--
not_bob_afk
pisslord
poriori_
pory
r00tobo[2]
shiver_
simprelay
solidx66
thetia
weko_
woodwose
zer0bitz
cumlord
forgot to enable the thrift shop crypto
orignal
what crypto type?
orignal
if it's 9 or 10 I knpw who ))
RN
hehe... it is just easier for me to type Maclemore compared to MLKEM (or howver it is spelled)
dr|z3d
MILKEM
RN
that sounds more up cumlord's alley
dr|z3d
remove the I and you're there.
RN
I'm still gonna call it Maclemore
RN
;)
orignal
what is MILKEM?
dr|z3d
tell him, RN..
orignal
I know
RN
the play on words is that MILKEM would sound like 'milk him'
orignal
please tell me what's the problem
dr|z3d
MILKEM is how you spell MLKEM if you're dyslexic.
orignal
I'm not in mood for jokes
dr|z3d
there is no problem.
RN
sorry you're in a cranky mood, hope things get better for you orignal
orignal
<dr|z3d> Someone spamming leasesets with unsupported crypto to floodfills?
RN
that's probably just an observation
dr|z3d
yeah, noticed that earlier.
orignal
so what unsupposrted crypto are you talking about?
dr|z3d
no idea, unsupported, though likely gost.
orignal
there is no gost crypto types
orignal
if you are talking about signatures it's another story
RN
I just said if you're not using the MLKEM one it is unsuppoted at present (by the three forks)
RN
in the context of the pq ones
orignal
but there are plenty of LeaseSets with MLKEM
RN
yeah, those are fine
orignal
floodfills shouldn't verify crypto types inside LS
orignal
as long as signature is good
RN
so did these leasesets you noticed dr|z3d have unsupported cyrpto signatures?
cumlord
MILKME*
dr|z3d
it appeared to be a single leaseset being spammed from a single router, with unsupported crypto, if I recall the details correctly.
orignal
what was the crypto type?
dr|z3d
"unsupported"
orignal
but if you don't support PQ yet you should see bunch of them
orignal
and my another question
orignal
why does a floodfill verify the content?
dr|z3d
dunno, good another question though.
RN
didn't some attacks stuff the content with garbage?
wew
are there any i2p torrent tracker implementations i can host except zzzot? something standalone, not plugin. found this github.com/r4sas/opentracker-i2p but last commit was 2 years ago
dr|z3d
you're running +, why not zzzot?
dr|z3d
which reminds me, sooner or later I should put up a repo with the modified zzzot on it.
orignal
in LS? I doubt
wew
dr|z3d, i changed my mind about i2pd. maybe i was just bored and switched back and forth multiple times lol =). cpu usage is pretty low with i2pd while better contributing to the network. anyway, my last question is still relevant
dr|z3d
zzzot or github.com/r4sas/opentracker-i2p are your options.
dr|z3d
as for contributing to the network, i2pd doesn't block obvious botnets or other potentially hostile routers, so it tends to push a lot more traffic.
zzz
ok with those two subnets blocked, another attack is now visible
dr|z3d
oh?
zzz
EXPL lookups with the reply to ourselves, every few seconds, forever
zzz
took me a minute, I was chasing down who is this hash? oh it's me. duh.
dr|z3d
haha
zzz
not the first time
dr|z3d
maybe that's where my banhammer actually comes in useful.
zzz
hopefully you're not banning yourself
dr|z3d
or maybe they sneak in below the ban threshold
dr|z3d
haha, no. I exclude myself from the bans.
zzz
if you're floodfill we're dropping because "they" are ff. if you're not, we're dropping because we aren't
zzz
so either way. but going to add a test to drop sooner
zzz
and see if I can catch the source
orignal
but how do you know what a request come from?
zzz
logging?
dr|z3d
yeah, that sounds like a definite ban criteria if you can get the source router.
orignal
they come from explratory tunnels
orignal
you don't know the source
zzz
maybe, maybe not, will find out soon
orignal
i2pd always sends through exploratory
romer
Active:2869 / 6927 Fast:40 High capacity:150 Floodfill:2025 Known:5382 Banned:8373 on the Java client atm
dr|z3d
you want to check cubicchaos.net:8443/i2pseeds.su3?netid=2 zzz?
dr|z3d
apparently whatever's being served isn't su3
dr|z3d
possibly also: i2p.ghativega.in/i2pseeds.su3?netid=2
dr|z3d
maybe it's Tor/fail2ban related, dunno, haven't looked into it.
zzz
sigh. thx.
dr|z3d
logs might be out of order, so not 100% sure it's those hosts.
zzz
you got it backwrds
dr|z3d
wackbards? how so?
zzz
cubic is unresonsive, ghat is the non-su3
dr|z3d
ok
zzz
looks like ghat lost his domain?
zzz
<script>window.park = "eyJ1dWlkIjoiYTAyMDU2MWYtNWU2My00ODI3LWIxZWUtYTU3YjUyNWE5YWIzIiwicGFnZV90aW1lIjoxNzU2MTMzNzA0LCJwYWdlX3VybCI6Imh0dHBzOi8vaTJwLmdoYXRpdmVnYS5pbi8iLCJwYWdlX21ldGhvZCI6IkdFVCIsInBhZ2VfcmVxdWVzdCI6e30sInBhZ2VfaGVhZGVycyI6e30sImhvc3QiOiJpMnAuZ2hhdGl2ZWdhLmluIiwiaXAiOiI5MS4xNDMuOTIuMTYifQo=";</script>
zzz
<script src="/bYvfOqhMI.js"></script>
zzz
not brave enough to load with js enabled
dr|z3d
domain expired at the host.
dr|z3d
aka "yeah".
zzz
(( dropping like flies
zzz
eyedeekay, really really need you and parg to bring his reseed back
dr|z3d
note to future zzz: when *anyone* offers a reseed host, just say yes :)
dr|z3d
well, mostly, after some basic due diligence.
romer
{"uuid":"a020561f-5e63-4827-b1ee-a57b525a9ab3","page_time":1756133704,"page_url":"https://i2p.ghativega.in/","page_method":"GET","page_request":{},"page_headers":{},"host":"i2p.ghativega.in","ip":"91.143.92.16"}
romer
legit :x
zzz
dr|z3d, any news on banana?
dr|z3d
not sure what you think is legit. it appears the host has parked their own advert on the site, at a guess (haven't explicitly looked at it, just zzz's js paste)
dr|z3d
yeah, coconut :) but I can look at bringing another reseed host online.
dr|z3d
also, it might be time to re-evaluate whether or not we want to support in-network reseed hosts.
dr|z3d
if we did, you could bootstrap with a clearnet host and then use a mix.
dr|z3d
harder to block, then, assuming you can get a few RIs any which way.
dr|z3d
(and without the clearnet hosting requirement, I suspect we'd have a HUGE selection of in-network hosts)
dr|z3d
> yeah, coconut :) but I can look at bringing another reseed host online.
dr|z3d
> also, it might be time to re-evaluate whether or not we want to support in-network reseed hosts.
dr|z3d
> if we did, you could bootstrap with a clearnet host and then use a mix.
dr|z3d
> harder to block, then, assuming you can get a few RIs any which way.
dr|z3d
> (and without the clearnet hosting requirement, I suspect we'd have a HUGE selection of in-network hosts)
zzz
eyedeekay, another reseed with the same problem as parg's: ipv4 unresponsive, ipv6 works: cubicchaos.net:8443
zzz
logging fail trying to catch the culprit, trying again...
zzz
re: in-net reseed, I believe i2pd does something, I've always been against, just do exploration
orignal
what do we do?
zzz
no idea
orignal
the what do you believe in?
zzz
what I said. that i2pd has some kind of in-net reseed mechanism. or did. or you were working on it long ago. or proposed it. or something.
orignal
you are talking about one psi was trying to implement
zzz
ok
orignal
reseed from floodfill
orignal
I have removed it couple years ago
orignal
i2pd either reseeds from servers or from local file
dr|z3d
seeing a lot of these targeting my router, zzz: Failed to decrypt GarlicMessage ID: 2617534685 (1360 bytes) with both ElGamal and ECIES keys
dr|z3d
dunno if that's newsworthy.
dr|z3d
(GarlicMessageReceiver)
orignal
why don't you specify whick ECIES key
zzz
dr|z3d, a few months back was a bad tunnel test tagset bug, make sure you have that fix
zzz
a lot of the remainder was really slow tunnel tests where the tag expired
zzz
and the rest of it is undebuggable noise
orignal
very funny thinh happened
orignal
since morning on of my VPS is under DDOS
orignal
basically whole DC
orignal
but they implemented "genious" mitignation
orignal
they turned off ipv4 ))
orignal
and you know i2pd work fine through v6 only
not_bob
lol
orignal
buffoons
orignal
anyway i2pd work fine
orignal
on ipv6 only
not_bob
That it does.
orignal
what happened I tryed to connect to ilita from local instance
orignal
and found myself there from bouncer from that VPS
orignal
trying to connect to it and noticed that only ipv6 works
wew
canon router doesn't work fine with v6 only?
orignal
idk
orignal
if I remeber it was always an issue before
wew
well nice one
zzz
omfg think I got it
zzz
I broke it in 2015
mareki2p
Here again HTTP 1.1 is broken youtube.com/watch?v=n3Bw8CASnHE "The Entire Internet is Broken" by ""John Hammond".
mareki2p
Ah, the video is about bug in HTTP header parsers. One parser in frontend parses it one way, otther parser in backend parses it different way. They get confused and backend sends me responses that belong to other user.
RN
zzz you bumping the dev version when you have this 10 year fix ready?
zzz
more or less
zzz
may wait until tag freeze wed.
zzz
this is mostly going to help hidden mode getting stuck
RN
oh, still good stuff. :)
zzz
this is the worst bug I've caught in a while
RN
what's that new banner you got on zzz.i2p? I don't recognize the show
RN
well a bug in 'hidden mode' is a big one in my book. glad you found it.
zzz
been chasing and fixing hidden mode issues for a couple weeks. trying to help out the chinese routers
zzz
and keep them from reseeding 5x/day
dr|z3d
tagsets, will take a look, thanks zzz.
dr|z3d
503 unavailable on git.idk
dr|z3d
> tagsets, will take a look, thanks zzz.
dr|z3d
haven't got a commit hash by any chance?
dr|z3d
this? -> Tunnels: Fix UOE on timeout of OB client tunnel test: github.com/i2p/i2p.i2p/commit/812840b4e53840fdb4bd14736d2b8e4bb68b9ae9
zzz
that one plus the one before it to TestJob
dr|z3d
ok, yeah, I got those I think.
zzz
commit 24614316be2d842e67053f468ba9d3cd9d2ac83b
zzz
Author: zzz <zzz@i2pmail.org>
dr|z3d
thanks
zzz
Date: Thu Feb 20 15:05:36 2025
zzz
Tunnels: Fix tests of OB client tunnels
zzz
you probably took it, but good to double check
dr|z3d
yeah, got 'em.