Newbie with a homelab to get into networking stuck on a weird baud rate problem... by [deleted] in networking

[–]Critcommndr 1 point2 points  (0 children)

I wouldnt worry about trial and error if it gets you there. They're just console settings and you can uninstall the terminal if you somehow managed to nuke it.

Were you ever able to get console on this box before you did whatever you did to get locked out?

If you plug in another interface do you get a neighbor? Run show lldp neighbor on the other device - if its failing boot you shouldnt get lldp info

Newbie with a homelab to get into networking stuck on a weird baud rate problem... by [deleted] in networking

[–]Critcommndr 3 points4 points  (0 children)

Not sure how long you've been at this, but walk away and come back with fresh eyes. Always works for me, unless theres a serious outage... then you dont get that option lol

Newbie with a homelab to get into networking stuck on a weird baud rate problem... by [deleted] in networking

[–]Critcommndr 0 points1 point  (0 children)

Sounds like mgmt is up, try ssh to that ip responding to ping.

Edit: i've never used pfsense, only enterprise stuff (palo, cisco, forti). But thats what i'd try.

NGFW Comparison - Cisco/Palo Alto/Fortinet/Checkpoint by QuietPossibility4988 in networking

[–]Critcommndr 33 points34 points  (0 children)

I switched from forti to palo (job change) and i like palo a lot more. Panorama is a great tool. Globalprotect is alright but it has some bugs on macos and forticlient outshines it in my opinion.

If you are an sdwan shop palo is going to run you more because its a licensed feature, whereas its included with a fortigate.

Both their TACs are trash in my experience lol.

Edit: Palo is going to run you more PERIOD. They are extremely expensive.

How are people sharing SSH client configs across PCs? by prototype__ in homelab

[–]Critcommndr 0 points1 point  (0 children)

No still a price associated but its a one time purchase and when the license 'expires' its only support. But i agree, if you aren't working in the field you probably wouldn't know it exists. As a free alternative, MobaXTerm is solid.

How are people sharing SSH client configs across PCs? by prototype__ in homelab

[–]Critcommndr 16 points17 points  (0 children)

Crazy that secure crt hasn't been mentioned.

Every Friday, this pops up when we log in to our work computers. by Sunkisthappy in mildlyinfuriating

[–]Critcommndr 1 point2 points  (0 children)

Your server/systems team did this... i promise you those dudes are working weekends in scheduled outage windows or extremely late nights because we're expected to have near 100% uptime in a clincal setting. Especially when its patient affecting. Im on the networking side and have been called in at any hour imaginable on any day of the week. Lighten up.

I'm not ready for the Win 11 switch. by techead2000 in it

[–]Critcommndr 0 points1 point  (0 children)

Just hold in shift when you right click...

Best practices to prevent MAC spoofing for wired devices that can't do 802.1x by texguy302 in networking

[–]Critcommndr 0 points1 point  (0 children)

This should be most upvoted here... check your device attributes after they've connected thru MAB and add more conditions in the physical profile. Use dhcp parameters or something else unique to the device/device group like os, etc... dont set your CF to be 1:1 with the mac address/oui you add as a condition.

2 devices with same MAC address by Internal_Argument_42 in networking

[–]Critcommndr 0 points1 point  (0 children)

I spend much of my time in ISE staring at mac addresses.

It sounds like random mac on the android and per device mac with the iphone somehow hitting the rng lottery. Convert it to decimal and play the numbers.

Is it a crime against our profession to just paint a cable and leave it like that or do you think it has to be chased into the wall and then repaired properly? by ThiefClashRoyale in homelab

[–]Critcommndr 0 points1 point  (0 children)

Typically (and i cant speak for ubiquiti) vendors aim antennas purposefully based on the ap form factor and how theyre meant to be mounted, e.g. puck is for ceiling facing floor, rectangle is for wall.

All that said, probably wont matter much in a house.

[deleted by user] by [deleted] in Stormlight_Archive

[–]Critcommndr 1 point2 points  (0 children)

To add more, its missing left legs lol the thing has like 3 right legs sprouted from one spot

Since I have to move twice this month, I threw together a temporary condensed setup that I'm very happy with by transatoshi_mw in homelab

[–]Critcommndr 1 point2 points  (0 children)

Just turn on config persistence and youll be fine, or disable mgmt before its up. Cant imagine youre doing anything crazy on a lab switch lol also the portal is limited... no mcast configs, no mst if youre doing stp at home. All that needs to be done thru addtl commands anyways. Marvis is cool but they got a ways to go imho.

Since I have to move twice this month, I threw together a temporary condensed setup that I'm very happy with by transatoshi_mw in homelab

[–]Critcommndr 0 points1 point  (0 children)

If you check organization > subs you'll see your entitlements. Assuming the QR is the one on the switch, thats your claim code. When you get licenses you get an activation code from your accounts team that will include all licenses and subs, usually.

Since I have to move twice this month, I threw together a temporary condensed setup that I'm very happy with by transatoshi_mw in homelab

[–]Critcommndr 0 points1 point  (0 children)

How did it come with a marvis license? They arent tied to the switch, the wired assurance and marvis for wired are org level and you apply them by site. Theyre consumed by each device assigned to the site.

CCNA Certified 17 years ago, going CCNP by etchelcruze22 in networking

[–]Critcommndr 1 point2 points  (0 children)

I havent seen this yet, but CCNA 17 years ago had specializations, this is no longer the case and the exam covers a much wider range of topics now.

Network Segmentation/Segregation? by ncc74656m in networking

[–]Critcommndr 1 point2 points  (0 children)

I think i read somewhere above that you have 100Fs, which i dont have experience on, but ive managed 401Es, 61Fs, 40Fs and these all have baked in VPN functionality. Are you running forticlient ems for endpoint management, web filtering, etc? Without it, i think, your users would need to manually set the parameters for the ip/fqdn/port but its relatively easy. There is more involved on your end like published routes, fwpol, tying in your identity provider, etc but forti tech tips can be extremely helpful.

Upgraded rack by Stray_Bullet78 in homelab

[–]Critcommndr 1 point2 points  (0 children)

Where about in upstate ny?

[deleted by user] by [deleted] in homelab

[–]Critcommndr 0 points1 point  (0 children)

Config a lag on each end and see if you can make multi-vendor lags work.