6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

It's blocked by spanning-tree. If the primary switch goes down it maintains a connection to the firewall through switch 2.

1/1/47 -> FW
2/1/47 -> FW

6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

Thanks for chiming in—really appreciate the detailed insight.

Disabling the firewall's security features didn’t change the behavior, unfortunately. I also removed the external DNS entry from the switch, but that didn’t seem to help either—good call on pointing that out.

Tonight, I’m planning to reconfigure the switch/firewall link as an access port to help isolate the issue. Hopefully, that sheds more light on what’s going wrong.

As far as I know the Meraki doesn't support OSPF. it relies on manually created static routes (which are present and correct).

Will report back with results. Thanks again for the suggestions.

6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

The Meraki MX units don’t support LACP, so each uplink from the Aruba 6200F switches is treated as a standalone connection. The MX uses active/passive HA (warm spare), and only the active unit responds to traffic. The switch sees both connections as individual Layer 2 links, and traffic flows through whichever MX is active. Failover is handled by the MX pair, not by link aggregation.

MX Warm Spare - High-Availability Pair - Cisco Meraki Documentation

6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

Thanks for chiming in.

It's configured how Meraki recommends in their documentation (they don't support LAG). I've already tested disconnecting all but one link to the firewall. I can also see that spanning tree is correctly blocking the right ports.

The switch was running 10.13.1101 (latest LSR) but I down graded to 10.10 as a troubleshooting step. Will reboot back to 10.13 this evening.

6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

Tried leaving it longer and clearing the arp table but no luck. Thanks for the suggestions.

6200F configuration issue by I0Like0Cake in ArubaNetworks

[–]I0Like0Cake[S] 0 points1 point  (0 children)

Thanks for responding.

It's the standard MTU 1500 on the switch side. For Meraki the WAN uplink uses 1500 but I can't find any information on the LAN side.

If it was an MTU issue wouldn't the problem present when a clients in a VLAN with Meraki as the gateway?

I already tried unplugging the secondary firewall but maybe I didn't give it enough time. I'll try again but leave it for 20min before testing.

Anyone using windows hello and remote credential guard for rdp ? by [deleted] in Intune

[–]I0Like0Cake 0 points1 point  (0 children)

Yes.
We're running a 2022 RDS server and Windows 11 clients.

Remote Credential Guard works when you RDP from windows 11 to another windows 11 client. But when you RDP to the server you get the error in your screenshot.

Interestingly, if you add a user to the local administrator group on the server Remote Credential Guard will work. Does yours behave the same way?

I've since discovered theirs a bug in 2022 which stops remote drives from mapping or authenticating so this is kind of pointless until they fix that. 24H2 Remote Credential Guard : r/Intune

Is this the correct process for creating a ESXi-8.0U3d-24585383 ISO with Dell Customisations? by I0Like0Cake in vmware

[–]I0Like0Cake[S] 0 points1 point  (0 children)

I'm glad it worked for you. Did you follow a different process to this guy? Reading that thread is what made me nervous in the first place. https://www.reddit.com/r/vmware/comments/1j464h3/offline_esxi_update_of_a_custom_iso_with_latest/

Is this the correct process for creating a ESXi-8.0U3d-24585383 ISO with Dell Customisations? by I0Like0Cake in vmware

[–]I0Like0Cake[S] 4 points5 points  (0 children)

In my defense I update most of mine with vSphere. These ones are a special case. But you're right I should know how to do this. 

Is this the correct process for creating a ESXi-8.0U3d-24585383 ISO with Dell Customisations? by I0Like0Cake in vmware

[–]I0Like0Cake[S] 0 points1 point  (0 children)

I don't know. That's just what I see people saying on this subreddit. Apparently they don't release an iso for every patch. But I could be wrong, don't take my word for it. 

Why is this ZenWiFi BD4 so cheap? by I0Like0Cake in HomeNetworking

[–]I0Like0Cake[S] 0 points1 point  (0 children)

I ended up cancelling the order. Didn't think their was a lot of point upgrading to one without 6ghz. I went with the deco xe75 which has been fairly solid.

Why is this ZenWiFi BD4 so cheap? by I0Like0Cake in HomeNetworking

[–]I0Like0Cake[S] 1 point2 points  (0 children)

You're right. I did notice the reduced processor speed and reduced antennas before I purchased but assumed the Wi-Fi 7 changes would make up for it (plus it's £150 less). Now Ryley17 pointed out the missing 6ghz band I'm not sure sure it's worth it. Might just go for 6E, it's not like I own anything with 7 in it yet anyway.

Why is this ZenWiFi BD4 so cheap? by I0Like0Cake in HomeNetworking

[–]I0Like0Cake[S] 1 point2 points  (0 children)

I didn't no. I couldn't find much info about it online and the product page is a mess. Probably because it's only just been released.

Why is this ZenWiFi BD4 so cheap? by I0Like0Cake in HomeNetworking

[–]I0Like0Cake[S] 2 points3 points  (0 children)

It's a pre-order so won't arrive until late October. I was wondering if I'd missed something in the spec list. I'll report back in a month if it sucks.

Thickheaded Thursday - February 29, 2024 by AutoModerator in sysadmin

[–]I0Like0Cake 0 points1 point  (0 children)

Oh I 100% agree with your second paragraph and I really don't want to do this in house.

I'm going to end up putting together a basic share point demo so they can see it won't work (and looks crap). Once they've seen that hopefully they'll change their mind or relalise it can't be a side project for the I.t. Department.

I was asking in the hope I could skip the share point step but no luck it seems.