NODOMAIN.NET has provided or provides a variety of services, including:
-
1394 (Decommissioned)
Using a network of repeaters, Adaptec three port 1394A PCI interfaces and an Oxford Semiconductor ATA to SBP-2 converter, NODOMAIN.NET deployed a 6 device 1394 bus with IPv4 and SBP-2 services. Easily, the highlight of this deployment was when all of the attached computers experienced a Stop Error simultaneously, but it only ever happened once.
-
Active Directory Domain Services
Active Directory is in use for basic user and group management across the domain. We run with dual DCs and also utilize Group Policy.
-
ASP.Net Hosting
Production ASP.Net hosting service is provided (occasionally via Azure CDN) and is based on Windows Server and IIS on a Standard B1ms Microsoft Azure instance. A separate staging and development environment is also maintained.
-
Backup
We use partially automated, generational, offline and off-site backups to ensure data safety and recoverability in several disaster recovery scenarios.
-
Certificate Services
Our X.509 PKI consists of one self-signed root and one subordinate CA and is used for S/MIME and IPsec, respectively. We use both Active Directory Certificate Services and LibreSSL for our CAs.
-
DNS
We run two external BIND and two internal and one external Windows DNS server hosting a small number of zones, including the Active Directory integrated NODOMAIN.NET zone with BIND secondaries and a split horizon. DNSSEC is (still) on the radar.
-
File and Printer Sharing
We offer centralized file (SMB/CIFS, NFS and AFP) and print services (PostScript, PDF, et. al. via PAP) for our network clients.
-
Hypervisor Services
Now provided on a newer Dell Precision T7920 with 48 Xeon Platinum 8168 cores clocked at 2.70GHz. This system has 256GiB of RAM and 12TB of storage striped across 8 spindles. Typical workload of an again increasing number of VMs. There is an unimpressive -- but adequate for now -- nVidia Quadro M2000 with 2GiB of VRAM in that system, as well.
-
Mail
Mail services were hosted on a collocated Compaq ProLiant 1850R running Windows 2000 Standard Server and Exchange 2000 and 2003. Service peaked between 2001-2006 with less than a dozen free mailboxes. Service was eventually outsourced and reduced to a single Exchange mailbox, due to cost and the unwanted support and on-call burden. Regardless, we dream of bringing Exchange in-house once again, someday.
-
Monitoring
We use Stackdriver Monitoring in the Google Cloud Platform to keep an eye on our public DNS and web servers.
-
Network Infrastructure Services
Our network infrastructure includes virtualized components and is largely based on NetBSD. Specific services include the following:
-
AppleTalk
As of April 20, 2018 we are pleased to announce the availability of Apple II Network Startup services for Apple IIGS systems. Using a genuine LocalTalk PHY, service is hosted on a bare-metal Macintosh IIci with System 7.5.3r2 and AppleShare File Server version 3.0.3. The same system also serves as our AppleTalk router.
-
Ethernet
3 copper and 3 virtual segments and 0 VLANs, with bridging.
-
HTTP caching proxy
We use a caching web proxy for both security and performance reasons.
-
IP Firewall
IP firewall services are in use at all perimeter hosts. Some internal firewalls are also in use.
-
IP NAT
Like many people and organizations, NODOMAIN.NET uses NAT extensively. Both for the common case of sharing an Internet connection and also for host address virtualization.
-
IPsec
We worry about the difficulty that IPsec can add to network capture and analysis — nevermind the compute overhead (at NODOMAIN.NET we're not fans of gratuitous encryption.) Because of this, NODOMAIN.NET will only be using IPsec to encapsulate VPN traffic between the data center and the cloud sites and once had it deployed in test.
-
IPv4
NODOMAIN.NET operates many IP subnets and is served by a total of 5 connections.
-
Fixed WiFi
NET.NODOMAIN and NET.NODOMAIN.GUEST fixed WiFi (802.11b/g/n and 802.11a/b/c/g/n) service is available in NODOMAIN.NET facilities.
-
Mobile WiFi
NET.NODOMAIN.MOBILE WiFi service offers a broader AUP — facilitating easier compliance — and sometimes better performance than is available in many public hotspots.
-
MOP
NODOMAIN.NET Maintenance Operations Protocol services serve the net-booting needs of our fleet of MicroVAXen.
-
VPN
We have a simple VPN deployment to support Josh when he's remote.
-