Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed
456 Pages « < 444 445 446 447 448 > » Bottom

Outline · [ Standard ] · Linear+

Unifi Official TM UniFi High Speed Broadband Thread V41, READ 1ST PAGE FOR RELEVANT WIFI INFO

views
     
BenYeeHua
post Nov 26 2023, 03:59 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(Feliex @ Nov 26 2023, 03:16 PM)
YES  thumbsup.gif
*
I think Astro know their customer well, those B40 should not care about paying RM 90 cheaper, else they already give up Astro lol.

But yes, I also think that Astro should give like RM 49/69 30M, sound better, consider with the issues of locked router etc. biggrin.gif
This will kick most people to sign up with them. tongue.gif
---
ok, checked another thread, RM 60 for 50M, not bad. thumbsup.gif thumbsup.gif

This post has been edited by BenYeeHua: Nov 26 2023, 04:02 PM
Feliex
post Nov 26 2023, 04:10 PM

Enthusiast
*****
Junior Member
835 posts

Joined: Oct 2006


QUOTE(BenYeeHua @ Nov 26 2023, 03:59 PM)
I think Astro know their customer well, those B40 should not care about paying RM 90 cheaper, else they already give up Astro lol.

But yes, I also think that Astro should give like RM 49/69 30M, sound better, consider with the issues of locked router etc. biggrin.gif
This will kick most people to sign up with them. tongue.gif
---
ok, checked another thread, RM 60 for 50M, not bad. thumbsup.gif  thumbsup.gif
*
If Astro Fiber Broadband provide the standard like Unifi, I might change it, the most I cannot accept is Private IP.
BenYeeHua
post Nov 26 2023, 04:12 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(Feliex @ Nov 26 2023, 04:10 PM)
If Astro Fiber Broadband provide the standard like Unifi, I might change it, the most I cannot accept is Private IP.
*
Easy, learn from Maxis, pay for Public IP. brows.gif
Still, they know their market is for those always watch Astro, which don't care and not using internet for netflix etc. tongue.gif

Also, I wonder did they provide IPv6 or not, if no IPv6 public, then lol at them. rclxms.gif
Oltromen Ripot
post Nov 26 2023, 04:12 PM

👍 999999 person Likes this member
*******
Senior Member
4,034 posts

Joined: Dec 2019
QUOTE(sivapc @ Nov 26 2023, 01:37 PM)
Tq bro

We used some fixed ip from TM's competitor but all their IPs routed to single WAN IP which we cannot use for the devices
*
i've...no idea what was said.

based on previously using TM fixed IP, they gave /29 subnet, in which the first (of usable 6) is router address. the other 5 is free to assign to own device.
Feliex
post Nov 26 2023, 04:13 PM

Enthusiast
*****
Junior Member
835 posts

Joined: Oct 2006


QUOTE(BenYeeHua @ Nov 26 2023, 04:12 PM)
Easy, learn from Maxis, pay for Public IP. brows.gif
Still, they know their market is for those always watch Astro, which don't care and not using internet for netflix etc. tongue.gif

Also, I wonder did they provide IPv6 or not, if no IPv6 public, then lol at them. rclxms.gif
*
Wanna ask you is Unifi provides IPv6?
BenYeeHua
post Nov 26 2023, 04:22 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(Feliex @ Nov 26 2023, 04:13 PM)
Wanna ask you is Unifi provides IPv6?
*
Look at my | IPv6 | Post #8906 at the right of this post, then you know the answer. brows.gif

Yes, the routing also strange at DNS side, google DNS IPv6 don't honor the result for Malaysia, so they always give SG IPv6 instead of MY IPv6, this is why IPv6 crappy for Malaysia...
I guess because the IPv6 DNS server is at SG.
---
But now it works most of the time for IPv4, just we lacking IPv6 at MY CDN server lol.
And yes, if you use 1.1.1.1 DNS IPv6, it still giving you the SG server, lol.

So I sometimes use onedotonedotonedotone for obtaining SG result. devil.gif

QUOTE(Oltromen Ripot @ Nov 26 2023, 04:12 PM)
i've...no idea what was said.

based on previously using TM fixed IP, they gave /29 subnet, in which the first (of usable 6) is router address. the other 5 is free to assign to own device.
*
It means, they give "shared" Static IP address, but it is still CGNAT, lol.
So it is Static + CGNAT lol.

rclxms.gif

This post has been edited by BenYeeHua: Nov 26 2023, 04:24 PM
Oltromen Ripot
post Nov 26 2023, 04:34 PM

👍 999999 person Likes this member
*******
Senior Member
4,034 posts

Joined: Dec 2019
QUOTE(BenYeeHua @ Nov 26 2023, 04:22 PM)
It means, they give "shared" Static IP address, but it is still CGNAT, lol.
So it is Static + CGNAT lol.

rclxms.gif
*
fixed IP usually for companies. got to pay fees each month for the block.
where got shared one. it can be used to host on the net. been there, done that.
westlife
post Nov 26 2023, 04:37 PM

10k Club
********
All Stars
14,250 posts

Joined: Jan 2011
QUOTE(BenYeeHua @ Nov 26 2023, 03:59 PM)
I think Astro know their customer well, those B40 should not care about paying RM 90 cheaper, else they already give up Astro lol.

But yes, I also think that Astro should give like RM 49/69 30M, sound better, consider with the issues of locked router etc. biggrin.gif
This will kick most people to sign up with them. tongue.gif
---
ok, checked another thread, RM 60 for 50M, not bad. :thumbsup:  :thumbsup:
*
Astro is using whose infra? Time?

I use Google dns so far for both primary and secondary. Are they good? Or others better?

This post has been edited by westlife: Nov 26 2023, 04:38 PM
soonwai
post Nov 26 2023, 05:07 PM


********
All Stars
11,456 posts

Joined: Oct 2007
From: KL


QUOTE(sivapc @ Nov 26 2023, 01:37 PM)
Tq bro

We used some fixed ip from TM's competitor but all their IPs routed to single WAN IP which we cannot use for the devices
*
Unifi et all the same. You can still use them for your internal servers. Can use 1:1 NAT or unnumbered IP. Latter is how I setup my uncle's office Unifi /29 using Mikrotik RB750Gr3.

https://supportportal.juniper.net/s/article...?language=en_US

This post has been edited by soonwai: Nov 26 2023, 05:10 PM
BenYeeHua
post Nov 26 2023, 05:17 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(Oltromen Ripot @ Nov 26 2023, 04:34 PM)
fixed IP usually for companies. got to pay fees each month for the block.
where got shared one. it can be used to host on the net. been there, done that.
*
I guess some ISP is special?
Unsure, can be their tech setup it wrongly? hmm.gif

QUOTE(westlife @ Nov 26 2023, 04:37 PM)
Astro is using whose infra? Time?

I use Google dns so far for both primary and secondary. Are they good? Or others better?
*
Based on this thread, UniFi
https://forum.lowyat.net/topic/5073652/+100

I think If you feel slow down, then try disable IPv6 la, but the issues is mostly caused by the throttling of UniFi on SG, like the rerouting of HK to SG CloudFlare now.... doh.gif doh.gif
---
For your info, I performed testing on www.lazada.com.my with IPv4 and IPv6 of Google DNS and CloudFlare DNS.
Here is the result.

2606:4700:4700::1111, MY
2606:4700:4700::1001, MY
1.1.1.1, SG Akamai for IPv4/IPv6
1.0.0.1, SG Akamai for IPv4/IPv6

2001:4860:4860::8888, MY
2001:4860:4860::8844, MY
8.8.8.8, MY for both
8.8.4.4, MY for both

This is why I prefer Google DNS, lol.

For the extra, both IPv6 DNS got reaching issues for Public Bank's DNS server, lol.
https://www2.pbebank.com/

Yes, there is 10s timeout for public bank.(old is 30s)
This might be caused by the caching time TTL is 30s, but strange that if I check via Android network tools, it is fine.... hmm.gif
---
More testing on PBe, it works well also on DNS over HTTPS, both IPv4/IPv6, so... hmm.gif
Seem like only happen on DNS over UDP for IPv6 la.

This post has been edited by BenYeeHua: Nov 26 2023, 05:33 PM
failed.hashcheck
post Nov 26 2023, 06:36 PM

Neighborhood plant pathologist
*******
Senior Member
2,090 posts

Joined: Aug 2009
From: Shithole Klang
QUOTE(BenYeeHua @ Nov 26 2023, 05:17 PM)
I guess some ISP is special?
Unsure, can be their tech setup it wrongly? hmm.gif
Not possible.
You have to be in totally different pppoe domain(@unifibiz) to even be a member of fixed ip subnet (that you still need to pay separate addon for).
the provisioning is much more involved at backend than a simply configuration at client end.

This post has been edited by failed.hashcheck: Nov 26 2023, 06:41 PM
BenYeeHua
post Nov 26 2023, 07:08 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(failed.hashcheck @ Nov 26 2023, 06:36 PM)
Not possible.
You have to be in totally different pppoe domain(@unifibiz) to even be a member of fixed ip subnet (that you still need to pay separate addon for).
the provisioning is much more involved at backend than a simply configuration at client end.
*
Ya, I know about the different domain because of "TM WiFi", I guess should be more of tech setup issues than ISP put CGNAT for fixed IP la. tongue.gif

This post has been edited by BenYeeHua: Nov 26 2023, 07:08 PM
SwarmTroll
post Nov 26 2023, 07:24 PM

Regular
******
Senior Member
1,401 posts

Joined: Apr 2012
QUOTE(BenYeeHua @ Nov 26 2023, 05:17 PM)
I guess some ISP is special?
Unsure, can be their tech setup it wrongly? hmm.gif
Based on this thread, UniFi
https://forum.lowyat.net/topic/5073652/+100

I think If you feel slow down, then try disable IPv6 la, but the issues is mostly caused by the throttling of UniFi on SG, like the rerouting of HK to SG CloudFlare now.... doh.gif  doh.gif
---
For your info, I performed testing on www.lazada.com.my with IPv4 and IPv6 of Google DNS and CloudFlare DNS.
Here is the result.

2606:4700:4700::1111, MY
2606:4700:4700::1001, MY
1.1.1.1, SG Akamai for IPv4/IPv6
1.0.0.1, SG Akamai for IPv4/IPv6

2001:4860:4860::8888, MY
2001:4860:4860::8844, MY
8.8.8.8, MY for both
8.8.4.4, MY for both

This is why I prefer Google DNS, lol.

For the extra, both IPv6 DNS got reaching issues for Public Bank's DNS server, lol.
https://www2.pbebank.com/

Yes, there is 10s timeout for public bank.(old is 30s)
This might be caused by the caching time TTL is 30s, but strange that if I check via Android network tools, it is fine.... hmm.gif
---
More testing on PBe, it works well also on DNS over HTTPS, both IPv4/IPv6, so... hmm.gif
Seem like only happen on DNS over UDP for IPv6 la.
*
Wait I thought Cloudfare DNS was always better? Google DNS is the same except it is faster based on your results? Damn maybe I should switch to Google DNS lol.
BenYeeHua
post Nov 26 2023, 07:35 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(SwarmTroll @ Nov 26 2023, 07:24 PM)
Wait I thought Cloudfare DNS was always better? Google DNS is the same except it is faster based on your results? Damn maybe I should switch to Google DNS lol.
*
Don't la, later my lazada slow down because you guys back to MY CDN. devil.gif
---
Depend, it is pure luck, sometimes if UniFi choose to kick you SG Google DNS, then you still get the same, lol.
The problem of stay too closed to SG lol, not the fastest speed, but the worst routing issues.

This post has been edited by BenYeeHua: Nov 26 2023, 07:36 PM
SwarmTroll
post Nov 26 2023, 07:39 PM

Regular
******
Senior Member
1,401 posts

Joined: Apr 2012
QUOTE(BenYeeHua @ Nov 26 2023, 07:35 PM)
Don't la, later my lazada slow down because you guys back to MY CDN. devil.gif
---
Depend, it is pure luck, sometimes if UniFi choose to kick you SG Google DNS, then you still get the same, lol.
The problem of stay too closed to SG lol, not the fastest speed, but the worst routing issues.
*
hehe thanks for the tip, I notice there have been slight hiccups here and there sometimes, even in lowyat forum. Google DNS is mostly the same right? Don't see a difference, other than the better routing.
BenYeeHua
post Nov 26 2023, 07:42 PM

Regular
******
Senior Member
1,873 posts

Joined: Nov 2010


QUOTE(SwarmTroll @ Nov 26 2023, 07:39 PM)
hehe thanks for the tip, I notice there have been slight hiccups here and there sometimes, even in lowyat forum. Google DNS is mostly the same right? Don't see a difference, other than the better routing.
*
No(I means yes, no different, and not related to DNS lol), lowyat is cloudflare issues, lowyat already get routing to JBH or KUL cdn server, but during 11.11 sale it get issues from reaching the main server.
That one you need to ask lowyat la, either issues on lowyat or cloudflare, as I don't know where is lowyat located at lol.

If located at SG, then can understand why slowdown lol. tongue.gif

This post has been edited by BenYeeHua: Nov 26 2023, 07:43 PM
YoungMan
post Nov 26 2023, 08:29 PM

Look at all my stars!!
*******
Senior Member
6,798 posts

Joined: Oct 2008
From: Kuala Lumpur



QUOTE(tng55 @ Nov 25 2023, 10:16 PM)
user posted image

TM UNIFI should do something already.
Other provider now keep doing a lot of offer and cut price.
Now Astro Fibre even offer 500Mbps for RM90 per month and it is fixed price for 24 months.
*
They already did something long time ago, which is to put some restriction for other providers using their infra.

QUOTE(safe118 @ Nov 26 2023, 02:23 AM)
No. Its charging me RM20.
*
You can call 100 to terminate the STD20.
kwss
post Nov 27 2023, 04:08 AM

Regular
******
Senior Member
1,207 posts

Joined: Aug 2018
QUOTE(BenYeeHua @ Nov 26 2023, 05:17 PM)
I guess some ISP is special?
Unsure, can be their tech setup it wrongly? hmm.gif
Based on this thread, UniFi
https://forum.lowyat.net/topic/5073652/+100

I think If you feel slow down, then try disable IPv6 la, but the issues is mostly caused by the throttling of UniFi on SG, like the rerouting of HK to SG CloudFlare now.... doh.gif  doh.gif
---
For your info, I performed testing on www.lazada.com.my with IPv4 and IPv6 of Google DNS and CloudFlare DNS.
Here is the result.

2606:4700:4700::1111, MY
2606:4700:4700::1001, MY
1.1.1.1, SG Akamai for IPv4/IPv6
1.0.0.1, SG Akamai for IPv4/IPv6

2001:4860:4860::8888, MY
2001:4860:4860::8844, MY
8.8.8.8, MY for both
8.8.4.4, MY for both

This is why I prefer Google DNS, lol.

For the extra, both IPv6 DNS got reaching issues for Public Bank's DNS server, lol.
https://www2.pbebank.com/

Yes, there is 10s timeout for public bank.(old is 30s)
This might be caused by the caching time TTL is 30s, but strange that if I check via Android network tools, it is fine.... hmm.gif
---
More testing on PBe, it works well also on DNS over HTTPS, both IPv4/IPv6, so... hmm.gif
Seem like only happen on DNS over UDP for IPv6 la.
*
You are misdiagnosing the issue. It has nothing to do with DNS or IPv6.

lowyat.net:
CODE

$ dig +short lowyat.net a lowyat.net aaaa @1.1.1.1
104.26.7.73
172.67.74.89
104.26.6.73
2606:4700:20::ac43:4a59
2606:4700:20::681a:749
2606:4700:20::681a:649

$ dig +short lowyat.net a lowyat.net aaaa @8.8.8.8
172.67.74.89
104.26.7.73
104.26.6.73
2606:4700:20::681a:649
2606:4700:20::681a:749
2606:4700:20::ac43:4a59


lazada.com.my:
CODE

$ dig +short lazada.com.my a lazada.com.my aaaa @1.1.1.1
47.246.167.7
47.246.165.39
47.246.165.72
47.246.165.182
47.246.165.115
47.246.167.210
47.246.167.252
47.246.167.254

$ dig +short lazada.com.my a lazada.com.my aaaa @8.8.8.8
47.246.167.7
47.246.165.39
47.246.165.72
47.246.165.182
47.246.165.115
47.246.167.210
47.246.167.252
47.246.167.254


As you can clearly see, both Cloudflare DNS and Google DNS return the same result. So changing what DNS server you use doesn't affect the result one bit.

For lowyat.net, all IPv4 go to HK directly. all IPv6 go to SG directly.
lowyat.net uses Cloudflare DNS as their authoritative DNS and also CDN.
Simply using IPv6 cut latency in half!
Trying a few other Cloudflare fronted domain, not all of them have this problem, which I suspect is how Cloudflare distribute traffic between HK and SG datacenter.

For lazada.com.my, all IPv4 go to HK > SG. No IPv6 support.
lazada.com.my uses Alibaba Cloud as their authoritative DNS.

To further diagnose this issue, TM need to provide public access to their BGP Looking Glass. Alternatively anyone who has peering with TM BGP + full internet routing table should be able to diagnose it properly.

pbebank.com:
CODE

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
203.115.208.218

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short www.pbebank.com a www.pbebank.com aaaa @1.1.1.1
203.115.208.218

$ dig +short www.pbebank.com a www.pbebank.com aaaa @8.8.8.8
203.115.208.218

$ dig +short www2.pbebank.com a www2.pbebank.com aaaa @1.1.1.1
43.241.40.253

$ dig +short www2.pbebank.com a www2.pbebank.com aaaa @8.8.8.8
43.241.40.253


Here we can see the apex domain return a different IP address: 203.115.208.218 (Cloudflare), 43.241.40.218 (Google)

43.241.40.218 and 43.241.40.253 (AS6453 TATA COMMUNICATIONS (AMERICA) INC) go to Singapore and come back to Kuala Lumpur.
203.115.208.218 (AS10204 Arcnet NTT MSC ISP) route directly via MyIX.

Let's flush the DNS resolver cache:
Google: https://dns.google/cache
Cloudflare: https://1.1.1.1/purge-cache/

CODE

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
58.26.83.218


You can see Cloudflare DNS now gets a new IP address while Google DNS gets the same IP address.
58.26.83.218 (AS4788 TM TECHNOLOGY SERVICES SDN. BHD.) is super fast since it is inside TM network and I am using TM.

Let's flush the cache for a second time:
CODE

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
203.115.208.218


Notice we are back to square one? This must be pbebank.com authoritative DNS problem.
CODE

$ dig +short ns pbebank.com
ns1.a1.impervasecuredns.net.
ns1.a0.impervasecuredns.net.
ns1.a2.impervasecuredns.net.


It might be Imperva problem, or more likely Public Bank configure Geo IP resolver incorrectly.



EDIT:
CODE

$ wget -O - -4 https://cloudflare.com/cdn-cgi/trace
--2023-11-27 04:42:50--  https://cloudflare.com/cdn-cgi/trace
Resolving cloudflare.com (cloudflare.com)... 104.16.132.229, 104.16.133.229
Connecting to cloudflare.com (cloudflare.com)|104.16.132.229|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/plain]
Saving to: ‘STDOUT’

-                            [<=>                                ]       0  --.-KB/s               fl=632f34
h=cloudflare.com
ip=115.134.178.XXX
ts=1701031371.005
visit_scheme=https
uag=Wget/1.21.3
colo=SIN
sliver=010-tier1
http=http/1.1
loc=MY
tls=TLSv1.3
sni=plaintext
warp=off
gateway=off
rbi=off
kex=X25519

$ wget -O - -6 https://cloudflare.com/cdn-cgi/trace
--2023-11-27 04:42:57--  https://cloudflare.com/cdn-cgi/trace
Resolving cloudflare.com (cloudflare.com)... 2606:4700::6810:84e5, 2606:4700::6810:85e5
Connecting to cloudflare.com (cloudflare.com)|2606:4700::6810:84e5|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/plain]
Saving to: ‘STDOUT’

-                            [<=>                                ]       0  --.-KB/s               fl=497f454
h=cloudflare.com
ip=2001:e68:5427:A:B:C:D:E
ts=1701031377.522
visit_scheme=https
uag=Wget/1.21.3
colo=SIN
sliver=010-tier1
http=http/1.1
loc=MY
tls=TLSv1.3
sni=plaintext
warp=off
gateway=off
rbi=off
kex=X25519


Looks like Cloudflare is working properly over both IPv4 and IPv6. colo=SIN, loc=MY
A quick look into their community forum shows that this is an intended behavior for customer using Free and Pro plan. Fork out the money for Business or Enterprise plan and the problem will disappear.
Maybe lowyat.net should just pay more.

This post has been edited by kwss: Nov 27 2023, 04:48 AM
OlgaC4
post Nov 27 2023, 08:37 AM

Look at all my stars!!
*******
Senior Member
5,292 posts

Joined: Nov 2006
Counter offer from unfi when i jump to maxis.

RM110 500mbps 6months free.

downgrade to maxis RM129 + RM10(public ip) 6+2months free. 300mbps

Will switch maxis tommorow after my finger print verification .

This post has been edited by OlgaC4: Nov 27 2023, 08:39 AM
OlgaC4
post Nov 27 2023, 08:43 AM

Look at all my stars!!
*******
Senior Member
5,292 posts

Joined: Nov 2006
QUOTE(kwss @ Nov 27 2023, 04:08 AM)
You are misdiagnosing the issue. It has nothing to do with DNS or IPv6.

lowyat.net:
CODE

$ dig +short lowyat.net a lowyat.net aaaa @1.1.1.1
104.26.7.73
172.67.74.89
104.26.6.73
2606:4700:20::ac43:4a59
2606:4700:20::681a:749
2606:4700:20::681a:649

$ dig +short lowyat.net a lowyat.net aaaa @8.8.8.8
172.67.74.89
104.26.7.73
104.26.6.73
2606:4700:20::681a:649
2606:4700:20::681a:749
2606:4700:20::ac43:4a59


lazada.com.my:
CODE

$ dig +short lazada.com.my a lazada.com.my aaaa @1.1.1.1
47.246.167.7
47.246.165.39
47.246.165.72
47.246.165.182
47.246.165.115
47.246.167.210
47.246.167.252
47.246.167.254

$ dig +short lazada.com.my a lazada.com.my aaaa @8.8.8.8
47.246.167.7
47.246.165.39
47.246.165.72
47.246.165.182
47.246.165.115
47.246.167.210
47.246.167.252
47.246.167.254


As you can clearly see, both Cloudflare DNS and Google DNS return the same result. So changing what DNS server you use doesn't affect the result one bit.

For lowyat.net, all IPv4 go to HK directly. all IPv6 go to SG directly.
lowyat.net uses Cloudflare DNS as their authoritative DNS and also CDN.
Simply using IPv6 cut latency in half!
Trying a few other Cloudflare fronted domain, not all of them have this problem, which I suspect is how Cloudflare distribute traffic between HK and SG datacenter.

For lazada.com.my, all IPv4 go to HK > SG. No IPv6 support.
lazada.com.my uses Alibaba Cloud as their authoritative DNS.

To further diagnose this issue, TM need to provide public access to their BGP Looking Glass. Alternatively anyone who has peering with TM BGP + full internet routing table should be able to diagnose it properly.

pbebank.com:
CODE

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
203.115.208.218

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short www.pbebank.com a www.pbebank.com aaaa @1.1.1.1
203.115.208.218

$ dig +short www.pbebank.com a www.pbebank.com aaaa @8.8.8.8
203.115.208.218

$ dig +short www2.pbebank.com a www2.pbebank.com aaaa @1.1.1.1
43.241.40.253

$ dig +short www2.pbebank.com a www2.pbebank.com aaaa @8.8.8.8
43.241.40.253


Here we can see the apex domain return a different IP address: 203.115.208.218 (Cloudflare), 43.241.40.218 (Google)

43.241.40.218 and 43.241.40.253 (AS6453 TATA COMMUNICATIONS (AMERICA) INC) go to Singapore and come back to Kuala Lumpur.
203.115.208.218 (AS10204 Arcnet NTT MSC ISP) route directly via MyIX.

Let's flush the DNS resolver cache:
Google: https://dns.google/cache
Cloudflare: https://1.1.1.1/purge-cache/

CODE

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
58.26.83.218


You can see Cloudflare DNS now gets a new IP address while Google DNS gets the same IP address.
58.26.83.218 (AS4788 TM TECHNOLOGY SERVICES SDN. BHD.) is super fast since it is inside TM network and I am using TM.

Let's flush the cache for a second time:
CODE

$ dig +short pbebank.com a pbebank.com aaaa @8.8.8.8
43.241.40.218

$ dig +short pbebank.com a pbebank.com aaaa @1.1.1.1
203.115.208.218


Notice we are back to square one? This must be pbebank.com authoritative DNS problem.
CODE

$ dig +short ns pbebank.com
ns1.a1.impervasecuredns.net.
ns1.a0.impervasecuredns.net.
ns1.a2.impervasecuredns.net.


It might be Imperva problem, or more likely Public Bank configure Geo IP resolver incorrectly.
EDIT:
CODE

$ wget -O - -4 https://cloudflare.com/cdn-cgi/trace
--2023-11-27 04:42:50--  https://cloudflare.com/cdn-cgi/trace
Resolving cloudflare.com (cloudflare.com)... 104.16.132.229, 104.16.133.229
Connecting to cloudflare.com (cloudflare.com)|104.16.132.229|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/plain]
Saving to: ‘STDOUT’

-                            [<=>                                ]       0  --.-KB/s               fl=632f34
h=cloudflare.com
ip=115.134.178.XXX
ts=1701031371.005
visit_scheme=https
uag=Wget/1.21.3
colo=SIN
sliver=010-tier1
http=http/1.1
loc=MY
tls=TLSv1.3
sni=plaintext
warp=off
gateway=off
rbi=off
kex=X25519

$ wget -O - -6 https://cloudflare.com/cdn-cgi/trace
--2023-11-27 04:42:57--  https://cloudflare.com/cdn-cgi/trace
Resolving cloudflare.com (cloudflare.com)... 2606:4700::6810:84e5, 2606:4700::6810:85e5
Connecting to cloudflare.com (cloudflare.com)|2606:4700::6810:84e5|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/plain]
Saving to: ‘STDOUT’

-                            [<=>                                ]       0  --.-KB/s               fl=497f454
h=cloudflare.com
ip=2001:e68:5427:A:B:C:D:E
ts=1701031377.522
visit_scheme=https
uag=Wget/1.21.3
colo=SIN
sliver=010-tier1
http=http/1.1
loc=MY
tls=TLSv1.3
sni=plaintext
warp=off
gateway=off
rbi=off
kex=X25519


Looks like Cloudflare is working properly over both IPv4 and IPv6. colo=SIN, loc=MY
A quick look into their community forum shows that this is an intended behavior for customer using Free and Pro plan. Fork out the money for Business or Enterprise plan and the problem will disappear.
Maybe lowyat.net should just pay more.
*
www.lowyat.net website take 2 second for unfi to load when start.
Maxis load super fast. Please tell me why?


456 Pages « < 444 445 446 447 448 > » Top
Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0255sec    0.75    6 queries    GZIP Disabled
Time is now: 5th December 2025 - 11:15 AM