[identity profile] ihateemo.livejournal.com posting in [community profile] techrecovery
This morning there's a witch hunt going on for someone who added a VERY BAD CONFIG LINE this morning.

It's quite funny to watch everyone using every trick in the book to catch the culprit (I was a suspect because I was VPN'd in around that time), without resorting to TACACS logs.

Oh yeah, we don't have TACACS. Weeeeee!

(And no, it wasn't me. :D)

Date: 2007-05-16 04:49 pm (UTC)
From: [identity profile] major-error.livejournal.com
what line would that be?
rm -rf ...?
format c: /u/c/v:"" ...?

Date: 2007-05-16 05:12 pm (UTC)
jecook: (Default)
From: [personal profile] jecook
WhooHoo!!!

When I worked at [isp], we had a few implementation engineers do Bad Things. They didn't get written up, but they were mocked mercilessly.

things like:

"debug all" on a 7513 (fully loaded, too. It cherry bombed the router hard)

route ip 0.0.0.0 SerialX (customer's T-1 port on the router) This didn't cherry bomb the router, but it did choke the customer's T-1 until it got fixed. The Engineer had a banner placed above his desk that stated "We bring the Internet to YOU!" for a couple weeks after that.

I did my own bad thing there (i.e. I got into an accident whilst traveling and crashed the rental car) and was mocked as well. I don't *want* to know where the blow-up doll came from, though....

Date: 2007-05-16 05:21 pm (UTC)
From: [identity profile] whitewolf3399.livejournal.com
Thankfully I've so far been spared that type of fun...

Unlike the analyst who turned did this on a juniper core router:

edit interfaces so-1/3/0.0
set disable
top
edit interfaces so-1/3/1.0
set disable
top
commit and-quit

That router was our 'edge' to UUNET/Level3... The interface's were the link back to our core hub in Miami FL. Not only did he kill internet access for a large portion of the Miami and surrounding area but he locked everyone out of the router :)

Date: 2007-05-16 05:25 pm (UTC)
jecook: (Default)
From: [personal profile] jecook
Ouch. Only way to fix that is a serial console connection...

Date: 2007-05-16 05:32 pm (UTC)
From: [identity profile] kizayaen.livejournal.com
But I neeeeeeed TACACS. I need it or I will explode.
That happens to me sometimes.

Date: 2007-05-16 05:45 pm (UTC)
From: [identity profile] whitewolf3399.livejournal.com
Yes, he got a surprise two week vacation for that one... luckily we have in-band access to the console port, it's just not published info

Date: 2007-05-16 10:24 pm (UTC)
From: [identity profile] wyronth.livejournal.com
Sir or Madam, I love you a little bit now.

Date: 2007-05-16 10:29 pm (UTC)
From: [identity profile] kizayaen.livejournal.com
Sir's fine, thanks. ;)

Date: 2007-05-30 04:02 am (UTC)
From: [identity profile] zastrazzi.livejournal.com
And that ladies and germs, is why we set log hosts on all devices :)

Cuz when we blow something up but good, we want to be able to point and laugh at the poor bastid who did it *grin*

Might want to introduce the network lads and lasses to archive config though. Handy for quick rollbacks AND for pointing fingers!

Profile

techrecovery: (Default)
Elitist Computer Nerd Posse

April 2017

S M T W T F S
      1
2345678
91011121314 15
16171819202122
23242526272829
30      

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Mar. 19th, 2026 07:31 pm
Powered by Dreamwidth Studios