From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from bobcat.rjmcmahon.com (bobcat.rjmcmahon.com [45.33.58.123]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by lists.bufferbloat.net (Postfix) with ESMTPS id 37F023CB37 for ; Sat, 15 Mar 2025 14:50:59 -0400 (EDT) Received: from mail-oo1-f43.google.com (mail-oo1-f43.google.com [209.85.161.43]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by bobcat.rjmcmahon.com (Postfix) with ESMTPSA id 79DC123C07 for ; Sat, 15 Mar 2025 11:50:58 -0700 (PDT) DKIM-Filter: OpenDKIM Filter v2.11.0 bobcat.rjmcmahon.com 79DC123C07 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rjmcmahon.com; s=bobcat; t=1742064658; bh=muU/+KMFg3H8+lnJ+B3sCKJ3lcbijwjcPgUjNNGpklI=; h=References:In-Reply-To:From:Date:Subject:To:Cc:From; b=lT+xvt/PNq78Ea8rKOdIxQbJc6td5IfoTBsDFkpWqlRLrVVGO3o6+5yeTxeZxvi1y aaLQ95f0QY/tskJHYeQLnXRRE5kkLD41+jdWo8YrUrjdzwOn9MU1ZN55K5HTcvoG5k x5LXnic4KZicM57IjyB6cihW0o1Zv2xNfJadje3M= Received: by mail-oo1-f43.google.com with SMTP id 006d021491bc7-5fcd61e9bcdso1435629eaf.0 for ; Sat, 15 Mar 2025 11:50:58 -0700 (PDT) X-Gm-Message-State: AOJu0YwSzgyDcgSVXq+1m4/2ITMOkTK/Sq9rz2E09QFXtj9xXXWF7n8A ILx6c7lQcgz4m7/gNoQOr1iY4VSRcQWa7YA9MXZhIr1Z5zpckztn/K6LpL8aHn1qllycLKLAtwT vXIU9xDVnlWB+fG53t8wlyMGWSd8= X-Google-Smtp-Source: AGHT+IEU6nohJ4To6PrzLiiTAoWVkliPhKDuRw8HhB9pi2yyOHyQgvcTnGom9lbdHh9/1uoBJ0LTB7Ok2mF6fV8NJTE= X-Received: by 2002:a05:6808:159b:b0:3fa:d6c:cdb8 with SMTP id 5614622812f47-3fdf054dcc1mr3758021b6e.38.1742064657815; Sat, 15 Mar 2025 11:50:57 -0700 (PDT) MIME-Version: 1.0 References: <55d2836a4fe4c6cf9e2b4d953b62f6c62f0e73c3.camel@tara.sh> <05c501db9526$db40bb30$91c23190$@alum.mit.edu> In-Reply-To: From: Robert McMahon Date: Sat, 15 Mar 2025 11:50:46 -0700 X-Gmail-Original-Message-ID: X-Gm-Features: AQ5f1JpWU5BbmjEB-Wi5PGsHZe8mQhWTtXewUsNR35ATtIHlfv07rozPNcjfyk8 Message-ID: To: =?UTF-8?Q?Network_Neutrality_is_back=21_Let=C2=B4s_make_the_technical_asp?= =?UTF-8?Q?ects_heard_this_time=21?= Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable Subject: Re: [NNagain] FCC - delete, delete, delete X-BeenThere: nnagain@lists.bufferbloat.net X-Mailman-Version: 2.1.20 Precedence: list List-Id: =?utf-8?q?Network_Neutrality_is_back!_Let=C2=B4s_make_the_technical_aspects_heard_this_time!?= List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 15 Mar 2025 18:50:59 -0000 A correction, some additions and a short allegory o) I'm using 4 APs for 1800 sq ft, but it's two story stacked like two blocks, so the radius per the RF spray pattern design can (and does) take advantage of that o) I placed high quality UPS where needed o) I didn't mention IoT like irrigation control, PV monitoring, weather systems, etc. Those are managed by a RPi4 with a UPS board and battery. Scripts and c - code is written by me. o) I didn't mention my in home lab/work network where each test device has it's own GPS signal to get pulse per second from those atomic clocks. That really helps a lot in my iperf 2 work o) Having an in home lab gives me back an 30 minute commute (or 1 hr for both directions) which is a lot and adds up. Unfortunately, my CEO thinks we're children and need to follow an attendance policy so now I have to waste time driving to do emails and get an attendance credit. I started working at age 13 at a Baskin Robbins and within a month the immigrant owner asked me to run the crews so he and his wife could go home and rest w/o worrying about their primary means of income. It's very sad to be treated like a child, even when a child. SV is run by children's mindsets now. Bob On Sat, Mar 15, 2025 at 11:16=E2=80=AFAM Robert McMahon wrote: > > > > > In case it's not clear. I am NOT happy with how device manufacturers sh= ip old > > code and never update it. > > > > I was unhappy about my home network and my paying job is to provide > components for such. > > My home network wasn't resilient enough to carry entertainment, > productivity (including distance learning) and medical traffic. > > The fixes so far have been: > > o) Don't use an all in one AP anywhere, just use it for wireless bridging > o) Use a fronthaul architecture (2.5G - will go to 100G when Fi-Wi is rea= dy) > o) Use a dedicated firewall & dhcp server with AQM such as fq_codel (I > use a protectcli vault) > o) Connect the APs (4 for me in 100 sq ft) configured in bridge mode > and optimize spacetime, allow for proper RF overlap - not too much, > not too little, but just right like the story says. > o) Use AP's that support the 6G band > o) Use keep connect devices to detect AP failures and power cycle them > (hammer approach) > o) Use separate ethernet switches where 802.3 switching is needed > (don't use the AP integrated switches, they go down per the crappy > gateway sw you're likely talking about) > o) Implement DHCP guard to protect against rogue DHCP servers > > Then for monitoring > o) Install rpi 5bs with INTC BE200 and pcie Wi-Fi adapters in the > rooms that need monitoring > o) Install kismet and integrate with kismet to monitor > o) Turn on firewall & WAN port monitoring services > > Only access to devices is ssh with encryption keys, and configure ssh > passwordless access. > > Now, my family can be entertained, do their work and learning, and use > their medical instruments with high in-home reliability. > > It's a thankless job we Dads must do. The home frustration level goes > way down and the complaints of "Dad, the internet isn't working again" > have gone away - except for when the OSP goes down. The OSP provider > tends to send information to me when that happens so my family can > work around it. > > Bob