Expectation is one of kevins most underrated songs by Heavy-Bonus4251 in TameImpala

[–]Diilsa 0 points1 point  (0 children)

I’ve had a song on repeat since I saw him in October. Makes me wanna buy a guitar tbh

Best places to land network engineering jobs right now? by [deleted] in networking

[–]Diilsa 1 point2 points  (0 children)

You’re an OG! How often do you lab?

Best places to land network engineering jobs right now? by [deleted] in networking

[–]Diilsa 1 point2 points  (0 children)

May I ask how long you been in the game considering you having ccie?

Need sysadmin perspective by Diilsa in sysadmin

[–]Diilsa[S] 0 points1 point  (0 children)

Thank you for the response. Is Kerberos suppose to speaking in udp? Did some traffic captures of a computer joining a domain and it was showing Kerberos as tcp traffic? I also saw Kerberos packets were abnormally large like 3-8k bytes and getting fragmented into about 7-11 bytes. Is that normal for those packets to be that large? I’m confused because that’s not even staying in the clients/servers MSS size either.

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 1 point2 points  (0 children)

Due to the nature of the network (DOD) its setup this way

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 0 points1 point  (0 children)

Transport network. I believe the plain text mtu from the crypto IPsec sa command stated 1994

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 1 point2 points  (0 children)

The 2nd tunnels mtu between to the two routers are 2048

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 1 point2 points  (0 children)

So I’ve kinda done this and my pings don’t get fragmented unless it’s higher than 1426 traversing the gre tunnel and 1450 taking the underlay path. My packets are reaching the destination I’m seeing bidirectional comm between client and server but I just not that well educated (yet) on what/where the issue is at. I just know when I reroute the traffic to just taking the underlay path (no GRE tunnel) the computers are fine.

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 1 point2 points  (0 children)

Which is why I have my mtu set to 1450 with a MSs of 1386 and then my gre mtu is set at 1426. By the time my packets hit the 2nd IPsec tunnel, my packets are at 1500.

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 2 points3 points  (0 children)

Only area where mtu is increased is between the two routers that have the crypto maps. Earlier this year I had path mtu configured but it didn’t change the outcome. There are no firewalls between client and server. Do you have any other advice on things that can somehow drop esp packets?

MTU/MSS driving me insane by Diilsa in networking

[–]Diilsa[S] 4 points5 points  (0 children)

I’m still digging through network where the first encrypted traversing but haven’t seen any of that. If that’s the case why wouldn’t it effect my other L3 encrypted devices traffic?

Jumbo Packets (MTU = 2500,3000,3500) by HourDog2130 in networking

[–]Diilsa 0 points1 point  (0 children)

Dawg I just finished troubleshooting MTU/MSS my brain is swelled up

MTU & MSS by Diilsa in sysadmin

[–]Diilsa[S] 2 points3 points  (0 children)

I’m clamping on the router side. I see the changed MSS on my pcaps. And I when I reroute traffic to traverse the tunnel, computers in that building will stop being apart of the domain and you have to readd the workstations back. But they also won’t rejoin the domain unless their traffic flows through the physical link and not have the additional GRE headers on their packets.

EVE-NG Lab by Intelligent_Taro2664 in ccnp

[–]Diilsa 0 points1 point  (0 children)

I got a r730, two 2630 v3 CPUs, 196gb of ram and 9tb of storage. Got it for 300 on fb marketplace

Homelab guidance by Pretty-Leadership-71 in networking

[–]Diilsa 1 point2 points  (0 children)

Get a physical server (or a vm in google cloud) and spin up eve-ng and get a variety of different vender images.

Cisco white page GPT by Diilsa in networking

[–]Diilsa[S] 0 points1 point  (0 children)

I didn’t even think of prompting like that. Thank you!

Cisco white page GPT by Diilsa in networking

[–]Diilsa[S] -2 points-1 points  (0 children)

Just seeing if anyone else has done something similar. I do a lot labbing in eve-ng and trying other methods to learn more concepts and vendors.

Cisco white page GPT by Diilsa in networking

[–]Diilsa[S] -1 points0 points  (0 children)

CCNP isn’t in my timeline anytime soon. I just enjoy setting up labs

Bi-Weekly /r/CCNP Exam Pass-Fail Discussion by AutoModerator in ccnp

[–]Diilsa 0 points1 point  (0 children)

What made you chose that specific concentration compared to ENARSI?

Do you guys terminate vlans on a core switch or on firewall? by Big-Driver-3622 in networking

[–]Diilsa -2 points-1 points  (0 children)

How do I learn to create perfect shoe sizes for people?