<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.skullspace.ca/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Gygar</id>
	<title>SkullSpace Wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.skullspace.ca/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Gygar"/>
	<link rel="alternate" type="text/html" href="https://wiki.skullspace.ca/index.php/Special:Contributions/Gygar"/>
	<updated>2026-05-31T12:45:10Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.32.2</generator>
	<entry>
		<id>https://wiki.skullspace.ca/index.php?title=Networking&amp;diff=4040</id>
		<title>Networking</title>
		<link rel="alternate" type="text/html" href="https://wiki.skullspace.ca/index.php?title=Networking&amp;diff=4040"/>
		<updated>2014-10-17T02:48:55Z</updated>

		<summary type="html">&lt;p&gt;Gygar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;*Please keep an updated copy of this page printed out and posted in the server room, so there is access to documentation even if the network / internet is down&lt;br /&gt;
*Also see [[IT Policies]]&lt;br /&gt;
*We have many people working with the equipment, remember to attach or tie down anything that could get unplugged/fall/etc. We twice lost internet - first time the router fell and power switch got pressed, second time the power plug was pulled out of main internet switch.&lt;br /&gt;
*this page is finally being updated for Sksp2, old page is at [[Networking/Old]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== High-level description ==&lt;br /&gt;
The main router is a RB450G, connected to the main switch (port 2), security switch (4, later), internet feed (3), and other networks later. Main internal switch is a 3Com4924 in the server rack, feeds a GS108T at the lounge PC and a 5-port GigE switch near the meeting table. The main HP AP has SSID skullspace and is mounted on the roof in the middle of the space.&lt;br /&gt;
&lt;br /&gt;
== Internet feeds ==&lt;br /&gt;
Primary: Internet from VOI (wifi-based Ubiquity NB5, tested 60mbit down 40mbit up to Speedtest.net Winnipeg).&lt;br /&gt;
&lt;br /&gt;
== Network hardware ==&lt;br /&gt;
*Mikrotik Routerboard 450G as main router&lt;br /&gt;
*Netgear WNDR3700 router, donated by [http://projectbismark.net Project Bismark]. It had a problem (routed packets fine but services like DHCP/DNS/web server didn't work) so was taken out of the network to test.&lt;br /&gt;
*Linksys WRT54G2 v1.5 as spare. WAN port may sometime have packet loss. &lt;br /&gt;
*Linksys WRT350N with DD-WRT v24SP2 firmware as a spare. Lent by Stef.&lt;br /&gt;
*Linksys WRT54G v2 with tomato 1.28 firmware as a spare. Lent by Stef.&lt;br /&gt;
*A 3Com 4924 (:A0) as the main switch, by default everything connects here. &lt;br /&gt;
*A 3Com 4924 (:??) a spare switch.&lt;br /&gt;
*2 D-Link DWL-810+ bridges.&lt;br /&gt;
*Netgear GS108T as the lounge switch.&lt;br /&gt;
*D-Link DWL-7100AP AP.&lt;br /&gt;
*D-Link DES-3224 as a public IP switch, set to management only on port 7 (Telnet, username &amp;quot;D-Link&amp;quot;).&lt;br /&gt;
*A Belkin F5D8236 wireless-N router as spare&lt;br /&gt;
*3 Cisco Aironet 1100 APs with .B cards and one (:90) with a .G card as spares.&lt;br /&gt;
*Belkin F5D5141-5 switch.&lt;br /&gt;
*Cisco 2950 switches #1 and #2 - currently unused.&lt;br /&gt;
*Mikrotik RB750 (small white box) VOI's router&lt;br /&gt;
*Western Multiplex Tsunami 100 5.8ghz - two links (4x IDU, 2x high ODU, 2x low ODU) unused. Panel antenna loaned from Seccuris.&lt;br /&gt;
&lt;br /&gt;
== Wiring ==&lt;br /&gt;
Runs&lt;br /&gt;
A1+B1: from rack to wiring area on top of bathrooms, A2+B2 from wiring area on top of bathrooms to pole in front of classroom. One will be used to feed wifi AP.&lt;br /&gt;
C+D: from rack to next to a couch in lounge area. A wire goes under the nearby door to the wiring area of the space next door and above a window for the temporary garbage-cam.&lt;br /&gt;
E+F+G: from rack to area behind rear black desk.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tasks ==&lt;br /&gt;
*terminate ethernet lines correctly in a panel once we're sure server room is stable&lt;br /&gt;
*label networking equipment (IPs etc) and servers, update this page for the latter&lt;br /&gt;
*put read-only and full-access passwords on devices&lt;br /&gt;
&lt;br /&gt;
== Wireless Networks ==&lt;br /&gt;
skullspace = main SSID, usual password&lt;br /&gt;
skullspace_rear: linksys G router in the server rack, as a backup.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
New IP Ranges&lt;br /&gt;
*172.30.4.x = testing/reserved for later use&lt;br /&gt;
*172.30.5.x = half Security/Management network  half VPNs&lt;br /&gt;
*172.30.6.x = Main network   DHCP  .100-.240  router .1  network gear .10-.29   printers .30-.39   VMs, servers .40-.99  VPNs .241-254&lt;br /&gt;
*172.30.7.x = CTF Network   DHCP ???   router .1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Internal IP usage ==&lt;br /&gt;
Check these&lt;br /&gt;
*192.168.1.1  main Linksys/Netgear router&lt;br /&gt;
*192.168.1.9  noel, alex's linux container on [[vmsrv]]&lt;br /&gt;
*192.168.1.10 kyle, a linux container on [[vmsrv]]&lt;br /&gt;
*192.168.1.11 stefen, a linux container on [[vmsrv]]&lt;br /&gt;
*192.168.1.12 Samsung CLP-310N printer&lt;br /&gt;
*192.168.1.15 Cisco 2950 switch&lt;br /&gt;
*192.168.1.16 Netgear GS108T workshop switch&lt;br /&gt;
*192.168.1.17 Cisco 4924 Switch-1 (main)&lt;br /&gt;
*192.168.1.18 Cisco 4924 Switch-2&lt;br /&gt;
*192.168.1.22 DES-3224&lt;br /&gt;
*192.168.1.26 [[vmsrv]]&lt;br /&gt;
*192.168.1.27 Who took this and didn't document?&lt;br /&gt;
*192.168.1.31 not in use, but don't use&lt;br /&gt;
*192.168.1.32 [[Skullhost]] on [[vmsrv]]&lt;br /&gt;
*192.168.1.33 iscsi server on [[vmsrv]]&lt;br /&gt;
*192.168.1.34-35 Kenny servers&lt;br /&gt;
*192.168.1.36 VPN server on [[vmsrv]] - contact Jay or Alex&lt;br /&gt;
*192.168.1.37 Ben's server&lt;br /&gt;
*192.168.1.38 [[Driftnet]] laptop&lt;br /&gt;
*192.168.1.39 open for use&lt;br /&gt;
*192.168.1.40 Pablodraw VM - http://picoe.ca/pablodraw/ for the client.&lt;br /&gt;
*172.30.6.30 [[mumd|latest Ubuntu]] graphical shell service on [[vmsrv]]&lt;br /&gt;
*172.30.6.31-32 Mark's mail server project&lt;br /&gt;
*172.30.6.40 [[vmsrv]]&lt;br /&gt;
*172.30.6.50-53 Chris Otto Servers&lt;br /&gt;
*172.30.6.100-240  Main router DHCP space&lt;br /&gt;
*172.30.6.241-254  VPN IPs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== VOI IP usage ==&lt;br /&gt;
VOI gave us 206.220.196.48/28 (mask 255.255.255.240), 206.220.193.64/29 (mask 255.255.255.248) as well as 2604:4280:1:c0de::/64, you must reserve IPs here before using them. You'll need to plug into the new VOI-Static switch, currently DES-3224 in the rack.&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! IP&lt;br /&gt;
! DNS&lt;br /&gt;
! Use&lt;br /&gt;
! Contact&lt;br /&gt;
! used by?&lt;br /&gt;
! reason for public IP and notes&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.65&lt;br /&gt;
| TBD&lt;br /&gt;
| VOI router&lt;br /&gt;
| VOI&lt;br /&gt;
| all machines&lt;br /&gt;
| required by network design&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.66&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  &lt;br /&gt;
|-&lt;br /&gt;
| Rev:  &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.67&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  &lt;br /&gt;
|-&lt;br /&gt;
| Rev:  &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.68&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  &lt;br /&gt;
|-&lt;br /&gt;
| Rev:  &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.69&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  &lt;br /&gt;
|-&lt;br /&gt;
| Rev:  &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Richard's Server&lt;br /&gt;
| rjr point work at gmail&lt;br /&gt;
| &lt;br /&gt;
| development server, potentially Starbound server&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.193.70&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  &lt;br /&gt;
|-&lt;br /&gt;
| Rev:  &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Chris's Server&lt;br /&gt;
| cotto at ieee point org&lt;br /&gt;
| &lt;br /&gt;
| development server, occasionally Terraria server&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.49&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd:  h49-skullspace.winnipeg.voinetworks.net.&lt;br /&gt;
|-&lt;br /&gt;
| Rev:  h49-skullspace.winnipeg.voinetworks.net.&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| VOI Mikrotik RB750? router&lt;br /&gt;
| VOI Networks&lt;br /&gt;
| now&lt;br /&gt;
| required by network design&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.50&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Sksp Main Router&lt;br /&gt;
| CStanners a gmail.com or Sksp admins&lt;br /&gt;
| &lt;br /&gt;
|  &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.51&lt;br /&gt;
| 2604:4280:1:c0de::53&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: ns1.skullspace.ca (Pending)&lt;br /&gt;
|-&lt;br /&gt;
| Rev: ns1.skullspace.ca (Pending)&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| SKSP DNS&lt;br /&gt;
| it@skullspace.ca&lt;br /&gt;
| 2014-10-08&lt;br /&gt;
| Skullspace Primary DNS Server&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.52&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &amp;lt;several&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| Rev: mail.nepharia.org&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Vobster Nepharia Services&lt;br /&gt;
| mak@kolybabi.com and dave@ysarro.com&lt;br /&gt;
| 2012-02-17&lt;br /&gt;
| Runs DNS, SMTP/IMAP, OpenVPN, Asterisk, SSH &amp;amp; IRC, and HTTP for Nepharia and its associated domains.&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.53&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &amp;lt;several&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| Rev: mail.skullspace.ca&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Vobster SkullSpace Services&lt;br /&gt;
| mak@kolybabi.com and dave@ysarro.com&lt;br /&gt;
| 2012-02-17&lt;br /&gt;
| Runs DNS, SMTP/IMAP, SSH &amp;amp; IRC, and HTTP for SkullSpace.&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.54&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: ctf.skullspace.ca&lt;br /&gt;
|-&lt;br /&gt;
| Rev: ctf.skullspace.ca&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Vobster CTF Services&lt;br /&gt;
| mak@kolybabi.com and dave@ysarro.com&lt;br /&gt;
| 2013-04-09&lt;br /&gt;
| Runs SSH-related services, for now.|&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.55&lt;br /&gt;
|| &lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
| &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.56&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Colin / Jeremy FreeBSD server&lt;br /&gt;
| phoul@insecure-complexity.com&lt;br /&gt;
| 2013-10-01&lt;br /&gt;
| &lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.57&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| [[vmsrv]]&lt;br /&gt;
| mark@parit.ca&lt;br /&gt;
| 2012-08-27&lt;br /&gt;
| VM server open to all members, will run an http proxy to allow this one ip to host many web servers&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.58&lt;br /&gt;
| 2604:4280:1:c0de::314&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: intarweb.ca&lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Sean's server.&lt;br /&gt;
| sean _at_ tinfoilhat _dot_ ca&lt;br /&gt;
| 2013-09-27&lt;br /&gt;
| L2TP etc.&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.59&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Ron's server&lt;br /&gt;
| ron @ skullsecurity.net&lt;br /&gt;
| Now&lt;br /&gt;
| Websites and stuff&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.60&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Colin's project server&lt;br /&gt;
| CStanners @ gmail&lt;br /&gt;
| Occasional&lt;br /&gt;
| IPv6, VPN services and testing&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.61&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: &lt;br /&gt;
|-&lt;br /&gt;
| Rev: &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| Ben's server&lt;br /&gt;
| ben@benbergman.ca&lt;br /&gt;
| 2012-12-18&lt;br /&gt;
| http/ssh/vpn/other&lt;br /&gt;
|-&lt;br /&gt;
| 206.220.196.62&lt;br /&gt;
|&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| Fwd: dangerzone.skullspace.ca&lt;br /&gt;
|-&lt;br /&gt;
| Rev: dangerzone.skullspace.ca&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
| The Danger Zone&lt;br /&gt;
| ctfadmin@&lt;br /&gt;
| 2012-06-01&lt;br /&gt;
| The home of the SkullSpace Teaching CTF.&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
== Access ==&lt;br /&gt;
All members currently have full access to all devices. Later it may be a good idea to have different full-access passwords for all devices restricted to NetOps and by request, and the read-only password being publically known among our members.&lt;br /&gt;
&lt;br /&gt;
[[Category:Space]]&lt;br /&gt;
[[Category:Networking]]&lt;br /&gt;
[[Category:Required Reading]]&lt;/div&gt;</summary>
		<author><name>Gygar</name></author>
		
	</entry>
</feed>