IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Speaking of Nagios
I've personally blocked quite a few hosts that have poorly configured nagios systems that have sent notifications just as fast as the computer(s) can send them. To be sure, we tend to do so for a short length of time, but they fit the definition mooted above and were completely responsible for denying the use of the service by others because they've attempted to mail us several hundred times a minute.

Are we supposed to not do this, despite the fact that I'm sure the subscriber(s) in question probably became very relieved when their phone stopped ringing every couple of seconds?
New Preventing use of the service by others is covered in ToS
It's a DOS attack. Intentional or not, I don't hear anyone opposed to blocking that.
--

Drew
New We are not using the ...
direct to SMS delivery.

We use the SMTP gateway, which is a "natural" throttle.
New Yes, that is the part of the infrastructure that I run
and it amounted to a DoS attack on it when a Canadian uni had a badly configured set of Nagios boxes run wild last week. Sure, it's a natural throttle, but when the mail server is throttling it, it's throttling everybody else using it as well.
New I'm sorry... I should have said...
*MY* outbound mail server for our nagios system (it delivers it locally to the machine's SMTP Agent) does not do batch mode. It also does *not* send out 150 messages, using 150 connections at the same time to the same MX records. Its purposely setup to do them all serially.

Sure, I sometimes get a few hundred messages in 15 minutes. But every single one of them is sent ... singly and one at a time to the same MX record.

Now, if my nagios server needs to send out messages to a few AT&T recipients, a few Verizon recipients, a few T-Mobile recipients and a few Rogers recipients all at once, there will be multiple mail drops happening at the same time to each MX, but serially for those MX records.

I guess, I thought through this a bit more than others, as I am the recipient of some Denial of Service attacks... I didn't want to be a perp.

Many people don't test and just assume things are good.

I also, once I have an incident... I turn off notifications... until the event is past.

I guess I'm not the norm.
New We only send to those that are supposed to...
And they are definitely responsible for the systems they are notified for.

We use the SMTP gateways to not overwhelm the services. (10digitnum@vtext.com... etc... 1234567890@rogers.com) and we deliver singly, not in batch mode.

Verizon delivers in mere seconds. AT&T delays up to 30 minutes. T-Mobile doesn't delay more than a minute. Rogers is also near instantaneous.

Dunno. But this is not that tough.
New Possible SES?
That's "Shit's Easy Syndrome". You obviously know way more about it than I do, but Box does do this for a living. Easy for you doesn't necessarily mean easy for him, and I don't like making promises on other people's efforts.

However ... I still say if you can prioritize it, and they can, that that's all you need to do. Automated messages always get last priority, problem solved.

Here's my assumption, by the way: Once the hardware and software is in place to do this at all (including the gateway Box mentions), I assume that the incremental cost of each message approaches zero until you reach saturation of some part of the system and have to increase capacity. Is that a valid assumption?
--

Drew
New headcount doesnt approach zero
Any opinions expressed by me are mine alone, posted from my home computer, on my own time as a free American and do not reflect the opinions of any person or company that I have had professional relations with in the past 55 years. meep
New Actually, prioritizing automated messages last
would be a terrible idea. Automated messages make up the majority of all legitimate messages we handle... and they are generally considered very important by the customers that use them. We get to hear about it sometimes when they're delayed by ten minutes; some very major Canadian inet services use us to notify their employees of problems.
New Heh
Rogers is the smtp gateway that I actually admin.
New Look at the post where I explained...
My setup to not become a DoS.

http://iwt.mikevital....iwt?postid=36671
New Just did read that
and no, you're not the norm. Well, semi norm? I guess most people have it set up alright, but the ones that don't end up causing us huge problems, so we really get to notice those ones.
     so people should be allowed to spam sms - (boxley) - (62)
         Where do you see spam? - (scoenye) - (57)
             not the point - (boxley) - (56)
                 But this case has nothing to do with spam - (scoenye) - (55)
                     He does - (crazy) - (54)
                         sort of - (boxley) - (53)
                             Please - (crazy) - (52)
                                 is the judges ruling narrow or broad? - (boxley) - (3)
                                     Poor dodge - (crazy) - (2)
                                         nope, wrong question - (boxley) - (1)
                                             Huh? - (crazy)
                                 It is asked for - (scoenye)
                                 Yeah, as a person in a similar line of work - (jake123) - (46)
                                     You know what it comes down to? - (static)
                                     That is what we currently have - (scoenye) - (44)
                                         Dude, I don't think you realise - (jake123) - (43)
                                             Give them a whitelist - (crazy) - (32)
                                                 can we give the users your phone number for support? - (boxley) - (1)
                                                     Free? No - (crazy)
                                                 They have whitelists - (jake123) - (29)
                                                     See above - (crazy) - (28)
                                                         Re: See above - (boxley) - (27)
                                                             Which is it? - (drook) - (26)
                                                                 Mass, one or more automated messages - (boxley) - (22)
                                                                     So... me sending... - (folkert) - (21)
                                                                         just because the carrier allows you to abuse their TOS - (boxley) - (8)
                                                                             If he pays for the service - (beepster) - (2)
                                                                                 And I do pay for unlimited. -NT - (folkert)
                                                                                 Re: If he pays for the service - (boxley)
                                                                             Selective enforcement... - (folkert) - (4)
                                                                                 Technical solution that proves this is bogus - (drook) - (3)
                                                                                     I don't have a problem with... - (folkert) - (2)
                                                                                         whats this free shyte? - (boxley) - (1)
                                                                                             Ok jackass... - (folkert)
                                                                         Speaking of Nagios - (jake123) - (11)
                                                                             Preventing use of the service by others is covered in ToS - (drook) - (3)
                                                                                 We are not using the ... - (folkert) - (2)
                                                                                     Yes, that is the part of the infrastructure that I run - (jake123) - (1)
                                                                                         I'm sorry... I should have said... - (folkert)
                                                                             We only send to those that are supposed to... - (folkert) - (6)
                                                                                 Possible SES? - (drook) - (2)
                                                                                     headcount doesnt approach zero -NT - (boxley)
                                                                                     Actually, prioritizing automated messages last - (jake123)
                                                                                 Heh - (jake123) - (2)
                                                                                     Look at the post where I explained... - (folkert) - (1)
                                                                                         Just did read that - (jake123)
                                                                 You've missed the other key point - (jake123) - (2)
                                                                     freetards is the problem -NT - (boxley)
                                                                     The problem is box miscategorised it - (crazy)
                                             To put this wreck back on the rails... - (scoenye) - (9)
                                                 try reading the link - (boxley) - (8)
                                                     Someone aleady quoted that - (drook) - (7)
                                                         one more time, if the ruling goes against - (boxley) - (6)
                                                             A pleading doesn't determine the ruling. - (Another Scott) - (2)
                                                                 if the ruling states they MUST deliver it does exactly that -NT - (boxley) - (1)
                                                                     And if wishes were horses ... We'll see. -NT - (Another Scott)
                                                             Please answer these two simple questions - (drook) - (2)
                                                                 Re: Please answer these two simple questions - (boxley) - (1)
                                                                     Hear that - (crazy)
         Settled out of court. - (folkert) - (1)
             good, having that albatross going the wrong way would be bad - (boxley)
         So should T-Mobile go to jail for bank robbery now? - (crazy) - (1)
             Freakin' awesome! - (folkert)

Let Us Now Braise Famous Men, those who in their salad days.. imagined that they were of the Caesar variety.
208 ms