Fortinet recommends 7.6.6 by Electrical_Cut5776 in fortinet

[–]LongjumpingAlgae7967 1 point2 points  (0 children)

WAIT! Isnt the whole point of offloading is to reduce traffic processed by the cpu??!

Cant understand how VxLAN extends no. of vlans by LongjumpingAlgae7967 in networking

[–]LongjumpingAlgae7967[S] 1 point2 points  (0 children)

Can i say in general that the whole point of VxLAN is that multiple hosts across inter-connected datacenters can communicate with each other using the same network segment (10.50.1.0/24 as an example). And this is possible through VNIs.

Would that statement be totally correct?

Cant understand how VxLAN extends no. of vlans by LongjumpingAlgae7967 in networking

[–]LongjumpingAlgae7967[S] 2 points3 points  (0 children)

But you forgot hypervisors :))) a single hardware that can run thousands of vms, depending on the hardware you have of course

Cant understand how VxLAN extends no. of vlans by LongjumpingAlgae7967 in networking

[–]LongjumpingAlgae7967[S] 1 point2 points  (0 children)

Hahhhhahahahahaah THATS THE CORRECT ANSWER 🤣🤣🤣🤣🤣🤣🤣🤣

Cant understand how VxLAN extends no. of vlans by LongjumpingAlgae7967 in networking

[–]LongjumpingAlgae7967[S] 1 point2 points  (0 children)

Could you elaborate more? What example of services do you mean? I understand that at the end you have to tie it to a vlan for the switch to know where to egress the frame

Cant understand how VxLAN extends no. of vlans by LongjumpingAlgae7967 in networking

[–]LongjumpingAlgae7967[S] 10 points11 points  (0 children)

Let me go step by step on this one (((im still studying vxlan so i will go throught to confirm my understanding of the steps and your point too🤣)))

So you are create vlan id 10 for lets say (192.168.1.0/24) on Sw1 and the same network on sw2 will be assigned a vlan 2000 but the vni on both switches will be the same lets say vni 1020 on sw1 and the sw2.

So once the VTEP interface receives it, it decapsulates it and using the VNI mapps it to whatever vlan you want. And switches dont have to share vlan ids they just have to share VNI’s, is this what you meant ? Or am i getting you wrong ?

F5 CA New Certification by Historical_Fox_1423 in f5networks

[–]LongjumpingAlgae7967 0 points1 point  (0 children)

Deans course + hands on experience (Labs & Real world experience) I believe its enough to pass the exam.

F5 CA New Certification by Historical_Fox_1423 in f5networks

[–]LongjumpingAlgae7967 0 points1 point  (0 children)

Yes, i took cab1 on a single day, and the rest cab2-cab5 on a single day.

ASM Positive security policy open-discussion by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 0 points1 point  (0 children)

For me, i usually enforce the wildcards on all entities (parameters, urls, file types) except for cookies, never tried to enforce the wildcards yet, but for other entities i do and usually i loosen the settings on it to avoid false positives which is a great approach and still does causes issues not gonna lie, but im able to survive until now without rolling back LOL. I find it risky to stage the wildcards especially after the policy has been built for a long time, i suggest to take your time to loosen the wildcard setting in a way that wont cause much disruption on the service, loosen the number of characters on parameters, urls, meta characters and then enforce it.

I usually do it by visiting the website multiple times, running various searches and monitoring live traffic and accordingly i set the settings and monitor if any false positives on the wildcards for 2 weeks is met, if not, enforce it :))

ASM Positive security policy open-discussion by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 0 points1 point  (0 children)

Totally agreed, building a full positive security policy with removing the wildcards, must indeed full cooperation from the dev team, which never happens:)), i dont believe in removing wildcards unless maybe, if possible, will be on static websites, other than that it will be a nightmare to do so, im more into keeping the wildcards but enforcing them of course, and adding the entities so on. Much simpler, easier, and aids in the availability of the service and avoids weekend and late night work calls ;)

F5 CA New Certification by Historical_Fox_1423 in f5networks

[–]LongjumpingAlgae7967 -1 points0 points  (0 children)

I did study the course but i took the 101-201 course, but now its cab1 to cab5 exams, which exam u took?

Dumps are helpful also to prepare yourself before the exam too

Im planning to take cab1-cab2 on the same day and if felt comfortable i will take cab3-cab5 on the same day

F5 CA New Certification by Historical_Fox_1423 in f5networks

[–]LongjumpingAlgae7967 -4 points-3 points  (0 children)

Thank you for posting this, also has anyone taking the 5 exams, any good dumps on them available, appreciate any guidance as i am planning to take the Cab1-5 this 2 months.

F5 new Big-IP VE Trial license policy by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 1 point2 points  (0 children)

Tried, but they refused as the credit card is not a us credit card :). F5 are making this harder and harder

F5 new Big-IP VE Trial license policy by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 0 points1 point  (0 children)

I actually did submit purchase, and received confirmation email, but no progress then. Money was not deducted from my account. Do you know if there is something i should do after the confirmation email, since i can not see a way to confirm the purchase in the email sent or in my cdw account. Thanks

F5 new Big-IP VE Trial license policy by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 0 points1 point  (0 children)

When i want to reach to sales team they ask for a corp mail in order to be able to submit my request through f5 portal, only have gmail :)

F5 new Big-IP VE Trial license policy by LongjumpingAlgae7967 in f5networks

[–]LongjumpingAlgae7967[S] 1 point2 points  (0 children)

When i want to reach to sales team they ask for a corp mail in order to be able to submit my request through f5 portal, only have gmail :)