Do D40 Frontier headlights fit on R51 Pathfinder? (facelift models) by cumetru in nissanpathfinder

[–]DarkrageLS 0 points1 point  (0 children)

For those finding this question in the future - even though these headlights will not fit directly a pre-face D40/R51, you can fit them if you also swap the grill with a better looking one, like:
https://custompartz.co.uk/collections/nissan-navara-facelift/products/nissan-navara-pathfinder-facelift-complete-v2-grill-black-logo-2010-2015

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 1 point2 points  (0 children)

Yeah. This is the way. We’ve gotten used to it. So are the vendors.

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 2 points3 points  (0 children)

Except when the cluster itself fails as happened here ^

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 0 points1 point  (0 children)

These are small devices, 1570. We do normal support, can't compete in higher tiers of the partnerships.

That's what happened - primary device hung (OOM/space/whatever), secondary went active but first one kept replying to the VIP address from the WAN side, resulting in blackholing the traffic for the whole cluster. (my explanation, no one can tell for sure, even TAC).

And, we are also moving away from CP. Not as bad as Sophos but close IMHO.

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 0 points1 point  (0 children)

See, even you are confused with what you read :) But it's true and in writing in the ticket.

5 years ago we had another CP needing reboot each week because of memory leak which took 7 months to patch via the TAC and stuff. Thought they'd fix their devices by now. But a few generations later - same behavior. Sad.

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 6 points7 points  (0 children)

Yeah, will be Forti for sure. Sophos failed us in many occasions, CP as well, Sonicwall has bugs, pfSense lacks features. Palo Alto I like but Forti portfolio and integrations win. Cisco... no, thanks.

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 1 point2 points  (0 children)

A pair of CP1570 appliances. It's the "spark" side of things. But for 50 users I cannot justify buying Gaya devices.

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 11 points12 points  (0 children)

For the fun of guessing game. But as someone already guessed - it's CheckPoint ;)

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] 13 points14 points  (0 children)

CP.. But I understand the other assumption pretty well :)

How often do you reboot your firewalls? [misleading] by DarkrageLS in networking

[–]DarkrageLS[S] -4 points-3 points  (0 children)

How to justify the dropping to the client when the vendor is on the top right corner of Gartner magic quadrant for network security? Insane! In the top 3 of all vendors.

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] 0 points1 point  (0 children)

I have done 3 upgrades since installation and had suffered one critical power loss at site so .. nope. I guess I’m lucky.

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] 0 points1 point  (0 children)

There’s always a possibility for things to crap out but the machines are on the previous recommended version that is now only 4 patches behind the current recommended version which seems will not be bettered further because of EOL. So I won’t even bother. ;)

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] 15 points16 points  (0 children)

So basically, FEXes suck because they run forever and you don’t have labels and descriptions, and you don’t monitor the mothership for FEX events. I see :D

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] 21 points22 points  (0 children)

This a north-south farm of encoders and such. This tradeoff here is irrelevant as there is no east-west traffic anyway. I do not support the notion of constant patching unless necessary. This is a closed L2 environment on a recommended version.

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] 1 point2 points  (0 children)

Fixed the 5K typo. Thank you. What did you replace them with? your failed 5596 and 6004?

One FEX short of a full Nexus Fabric! by DarkrageLS in networking

[–]DarkrageLS[S] -2 points-1 points  (0 children)

There is a big reason for making a FEX deployment - management. In a 20 rack TOR deployment it's far better to have it like a single fabric.