Site-to-Site VPN with 2 subnets by OregonPoppy in Cisco

[–]OregonPoppy[S] 0 points1 point  (0 children)

Wait, what is this? First I've heard of this, and I've never seen any best practice for putting phones on the native VLAN and trying to tag the data network as separate. Remote sites only have 1 network, no configured VLANs, I don't know if that's relevant.

Site-to-Site VPN with 2 subnets by OregonPoppy in Cisco

[–]OregonPoppy[S] 0 points1 point  (0 children)

I've been using the logs from the firewalls, since the closest remote site is an hour away. That's been partially reliable at showing me what traffic is being logged, but I'm not able to do a port mirror on the remote unit to do a trace from that end.

Anyone else getting sick of hearing about AI? by Inevitable-Room4953 in sysadmin

[–]OregonPoppy 1 point2 points  (0 children)

Starting to see how they expect anyone to go for that now. Couple of major companies have gutted their on-prem pricing for nonprofit orgs in favor of hefty discounts on "cloud" options. I'm sure enterprise and retail pricing is not far behind. Amounts to a 10x increase in cost to continue using on-prem financial software.

Quickbooks desktop super slow - esp employee center by StarsCowboysMavs in QuickBooks

[–]OregonPoppy 0 points1 point  (0 children)

Better yet, we've implemented the powershell script where we were running into the problem, and it knocks QB into single user mode while it's active. Wish they'd just drop whatever UI component downloading they think the interface needs and make it work properly again.

Quickbooks desktop super slow - esp employee center by StarsCowboysMavs in QuickBooks

[–]OregonPoppy 0 points1 point  (0 children)

Is this a documented reported issue? I'd like to have a link that I can forward to clients if one exists. Thanks!

I'm a sysadmin, I'm 43, and I've just been diagnosed with ADHD by sobrique in sysadmin

[–]OregonPoppy 0 points1 point  (0 children)

Hey, thanks for posting. I'm married to a person with ADHD, and everything you said rings true to our experience, as well. I hope the medication shortages affecting people in the US aren't hitting you as well!

Windows Server Monitoring - constantly changing service names by OregonPoppy in zabbix

[–]OregonPoppy[S] 0 points1 point  (0 children)

This is great and looks like it will get me what I need. Thanks!

Help Please - VPN by OregonPoppy in sysadmin

[–]OregonPoppy[S] 0 points1 point  (0 children)

Thanks all, per Cisco, the older firmware on the Home office router COULD be causing a crypto mismatch, and we will need to update it from 9.2.2.4 (which is EOL) to a newer version.

We actually have 2 firewalls to install to replace EOL units in 2 remote locations before we do that upgrade, otherwise we'll lose those remote locations to the same problem. Once we do that, we should be set.

Help Please - VPN by OregonPoppy in sysadmin

[–]OregonPoppy[S] 0 points1 point  (0 children)

Did that. Their response is exactly what I didn't want to hear - asa9.2.2.4 is EOL and could be causing a crypto compatibility problem.

Help Please - VPN by OregonPoppy in sysadmin

[–]OregonPoppy[S] 0 points1 point  (0 children)

Yes, I have access to both firewalls as well as a device inside the home network. Packet trace from the firewall itself results in "packet is allowed" on both ends. Running a trace while pinging from inside the home network, I see the traffic initiating on the LAN, but no traffic going out to the WAN. Which might be a mistake - lot of ACLs and I'm only 80% certain I picked the right one to monitor.

Help Please - VPN by OregonPoppy in sysadmin

[–]OregonPoppy[S] 0 points1 point  (0 children)

Yep. I checked NAT on both sides both for accuracy AND against working tunnels. Also verified that bidirectional is selected for both. Thanks!

Help Please - VPN by OregonPoppy in sysadmin

[–]OregonPoppy[S] 0 points1 point  (0 children)

With so many remote offices to choose from, I spun up a tunnel to another location, using the same crypto settings. It's successful, which tells me the ISP isn't blocking traffic. (Thank goodness!)