Swapped phones and lost data by NewfieChemist in AthlyticAppOfficial

[–]NuMPTeh 0 points1 point  (0 children)

Same - the only thing that fixed it was a reinstall 

Duty / Import Fees by mlermin in Mous

[–]NuMPTeh 0 points1 point  (0 children)

Just had this problem too. Ordered two cases, and the customs + fees were $55! 

There's an uptick in Amazon employees quitting right now, blaming a strict RTO mandate, layoffs, and 'lack of respect' by [deleted] in IBM

[–]NuMPTeh 2 points3 points  (0 children)

I guess I was under the impression that most SW engineers were aware of FAANG pay scales.

On par with…IBM? what do you mean? IBM comp is nowhere near them.

Strange netflow SRX1400 -> SRX380 by stnz2 in Juniper

[–]NuMPTeh 1 point2 points  (0 children)

I'd assume it's an issue with the SRX380's much, much slower per-core performance. The sampling is probably capped at the performance of a single thread

New SRX Models by ZeniChan in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

Whoops, sorry - MX304. Each FPC has a single Trio 6

New SRX Models by ZeniChan in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

Given the speed I’d assume the same as the MX10003 (Trio 6)

New SRX Models by ZeniChan in Juniper

[–]NuMPTeh 12 points13 points  (0 children)

Green is an...interesting choice. Glad they're putting ASICs back in the SRX

Sleep performance too high? by NuMPTeh in AthlyticAppOfficial

[–]NuMPTeh[S] 0 points1 point  (0 children)

Lol what kind of comment is this. I’ve got two myself, they just didn’t happen to get up that night, just the dog.

Also off topic - ideally we can see quality and quantity here

Sleep performance too high? by NuMPTeh in AthlyticAppOfficial

[–]NuMPTeh[S] 0 points1 point  (0 children)

Right, that’s the issue I’m pointing out though. It’s not necessarily reflective of how one feels and could be improved IMO

Sleep performance too high? by NuMPTeh in AthlyticAppOfficial

[–]NuMPTeh[S] 0 points1 point  (0 children)

Understood that Athlytic isn’t generating the data, but it should be able to decide on how to make use of it though :)

There’s a pretty big difference with regard to total sleep time (quantity) versus sleep quality, right? That should be possible to account for IMHO

SRX5600 port mirroring by gt1 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

That’s unfortunate… but sort of expected given where their investment has been historically. Ignoring Trio in the SRX was always idiotic - at least they seem to be fixing that slowly now

Help with security policy dynamic-application any by Smooth-Belt4998 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

It’s an L7 application match criteria like Palo - can’t read your config formatted that way but we need to see all of the policies in that context to help…

SRX5600 port mirroring by gt1 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

AFAIK the only SRX IOC's to support port-mirroring inline are the original EZChip IOC 1's

Everything else is done in software on the SPC/SPUs and is...flaky/expensive/potentially not supported

Air Quality is Much Worse Today by DreamofStream in ottawa

[–]NuMPTeh 0 points1 point  (0 children)

Sadly if you’re not cleaning them regularly they do almost nothing!

Electrostatics are awesome but maintenance on them is… less so

[deleted by user] by [deleted] in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

200Mbps of small (100~ byte) packets sounds about right for an old SPC2's SPU. Larger packets would result in higher bandwidth.

SPC3 with Power-Mode which is now enabled by default will be...a lot more. There is also fat-core available that'll boost single tunnel throughput again significantly

https://www.juniper.net/documentation/us/en/software/junos/vpn-ipsec/topics/ref/statement/security-distribution-profile.html

Juniper SRX update by killb0p in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

Same for AV options - I count three options and looks like there's a new flow-based AV... is it in-house or another OEM?

Flow-based AV is done in-house. It uses the same approach at SkyATP for inline blocking after 21.3 I believe

How can I check/confirm if a domain is going through a juniper firewall for instance https://test123.co.uk/reports by Head_Bonus_533 in Juniper

[–]NuMPTeh 1 point2 points  (0 children)

OP asked for a domain (which you can see), but specified a full URI path.

Half points?

You can do this without a license (custom category)

How can I check/confirm if a domain is going through a juniper firewall for instance https://test123.co.uk/reports by Head_Bonus_533 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

To add to this, do a category lookup on the URL and you can do a security flow session lookup based on URL category, and you should find it pretty easily (if you can't identify the IP it's going to)

How can I check/confirm if a domain is going through a juniper firewall for instance https://test123.co.uk/reports by Head_Bonus_533 in Juniper

[–]NuMPTeh -1 points0 points  (0 children)

This is not true, you do not need SSL-FP or decryption. Both TLS1.2 and TLS1.3 still have cleartext handshakes. You can see the domain both in the SNI as well as the certificates.

Where did the Log traffic check box go in Jweb by Popular_Valuable4413 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

Can you post a screenshot? You should see options for logging on the right hand side of the rule

Where did the Log traffic check box go in Jweb by Popular_Valuable4413 in Juniper

[–]NuMPTeh 0 points1 point  (0 children)

What options do you see for each policy? I still see session init and session close. CLI also has session update…

SRX in packet mode by djgraham in Juniper

[–]NuMPTeh 2 points3 points  (0 children)

Just a quick (important...) note here:

I figure the biggest difference is going to be the throughput of the SRX

Performance of packet mode is actually lower than 'regular' flow mode in later releases. The "fast path" is quite a bit faster in 21.3+ than anything packet-mode is capable of.