sks-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sks-devel] Host checking up.


From: John Clizbe
Subject: Re: [Sks-devel] Host checking up.
Date: Mon, 16 May 2011 02:02:56 -0500
User-agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1.20pre) Gecko/20110509 Mnenhy/0.8.3 SeaMonkey/2.0.15pre

Robert Hinson wrote:
> Seems to be hitting my server once an hour. I don't know if the it is the
> sks-keservers.net script that lists the servers pool servers (which is
> suppose to be run once a day at 3:00 AM Pacific time.)

NO, Kristin's script only runs TWICE per day at 10:50 & 20:50 CET, unless he's
working on it and the times are remarkably consistent. I was seeing some double
polling because someone was listing keyserver.gingerbear.net as an alias,
sks.keyservers.net.

> 2011-05-11 03:51:11 Get request: <ADDR_INET [213.161.224.2]:17865> => 
> /pks/lookup?op=stats
> 2011-05-11 13:49:08 Get request: <ADDR_INET [213.161.224.2]:16682> => 
> /pks/lookup?op=stats
> 2011-05-11 13:52:29 Get request: <ADDR_INET [213.161.224.2]:16935> => 
> /pks/lookup?op=stats
> 2011-05-12 03:52:12 Get request: <ADDR_INET [213.161.224.2]:14656> => 
> /pks/lookup?op=stats
> 2011-05-13 03:54:57 Get request: <ADDR_INET [213.161.224.2]:14772> => 
> /pks/lookup?op=stats
> 2011-05-13 13:54:16 Get request: <ADDR_INET [213.161.224.2]:11208> => 
> /pks/lookup?op=stats
> 2011-05-14 03:53:52 Get request: <ADDR_INET [213.161.224.2]:29411> => 
> /pks/lookup?op=stats
> 2011-05-14 13:53:50 Get request: <ADDR_INET [213.161.224.2]:25149> => 
> /pks/lookup?op=stats
> 2011-05-15 03:54:14 Get request: <ADDR_INET [213.161.224.2]:26192> => 
> /pks/lookup?op=stats
> 2011-05-15 13:54:24 Get request: <ADDR_INET [213.161.224.2]:15557> => 
> /pks/lookup?op=stats

You can check with 'grep op=stats db.log|grep 213.161.224.2'. Your timestamps
should be close to 01:55 am 11:55.

That's ~03:50 and ~13:50 everyday US/Central for me. I have cron setup to do
stats for me 5 minutes before (as well as every hour) -- only takes a few 
seconds.

Other hint: grepping recon.log for auth will get you folks trying to peer
without contacting first. Note, because of the weay things work, you may
sometimes get unauthorized message for peer which are in fact authourized, I
just haven't felt like scripting that one yet to filter those out.


-- 
John P. Clizbe                      Inet: John (a) Gingerbear DAWT net
FSF Assoc #995 / FSFE Fellow #1797  hkp://keyserver.gingerbear.net  or
     mailto:address@hidden

Q:"Just how do the residents of Haiku, Hawai'i hold conversations?"
A:"An odd melody / island voices on the winds / surplus of vowels"

Attachment: signature.asc
Description: OpenPGP digital signature


reply via email to

[Prev in Thread] Current Thread [Next in Thread]