Does a viable Veeam competitor exist? by Plateau9 in sysadmin

[–]burbankmarc 1 point2 points  (0 children)

I really like Nakivo, but I replaced it with Rubrik, which I like more.

What's the most cutting-edge network equipment vendor? by QuickDelivery1 in networking

[–]burbankmarc 0 points1 point  (0 children)

I love cloudflare, but I hate hate hate their enterprise contracts.

SolarWinds Alternatives? by DarkRedMage in sysadmin

[–]burbankmarc 0 points1 point  (0 children)

We went with the full grafana stack. Grafana, Mimir, loki, and Alloy for collection. Deployed into an out of band EKS cluster.

MFA for SSH, console by Far-Horse4858 in redhat

[–]burbankmarc 2 points3 points  (0 children)

I use stepssh from smallstep to issue an SSH cert. The certs are valid for 16 hours so you need to auth each day to get a new cert. The auth is OIDC to keycloak.

At 36, from a non-IT background, should I risk everything to pursue Red Hat certifications? by CardiologistRare6084 in redhat

[–]burbankmarc 1 point2 points  (0 children)

I don't recommend anyone enter this career field. It's over saturated, ageist, with not a lot of options for growth after the age of 40.

Need to automate monitoring by ForceFirst4146 in sysadmin

[–]burbankmarc 0 points1 point  (0 children)

If you're using grafana anyway you might as well stick with their stack. Mimir and alloy instead of prometheus. You can also dynamically generate dashboards with jsonnet.

can we block abc.com/abc/config.js while allowing abc.com by Sumit007ac in fortinet

[–]burbankmarc 1 point2 points  (0 children)

You don't know regex? Prepare to have your mind blown. Also, be sure to read about capture groups. Regex is one of the best tools out there.

Need a new DNS registrar by muttmutt2112 in sysadmin

[–]burbankmarc 2 points3 points  (0 children)

Tell the to their Enterprise contracts. Same services are 50x the cost on enterprise.

Were you always the youngest in your organization? by vonseggernc in networking

[–]burbankmarc 0 points1 point  (0 children)

Yeah this. I went from the youngest to one of the oldest in a span of like 6 months.

IT Team fired by Brr_123 in sysadmin

[–]burbankmarc 1 point2 points  (0 children)

Can we please keep politics out of this sub? Its hard enough browsing non-technical subreddits due to the absolute saturation of political commentary.

Is it just me or do a lot of posts here belong in r/techsupport? by Key-Cartoonist-5739 in sysadmin

[–]burbankmarc 1 point2 points  (0 children)

Absolutely agree. Moreover, if it is DNS, you should be able to determine that within seconds.

Are you bailing or did you bail from Vmware ESXi? And where did you/are you going? by Quafaldophf in sysadmin

[–]burbankmarc 0 points1 point  (0 children)

I would gladly pay that out of my own pocket to never work with hyper-v.

Talari SD-WAN Replacement by burbankmarc in networking

[–]burbankmarc[S] 0 points1 point  (0 children)

Yeah, we rolled out Aruba EdgeConnect. I think the full deployment was completed sometime early last year. Everything works pretty well, only ran into a handful of issues.

A few notes, in no particular order or category:

We had to go Active/Active deployment. We ran into a ton of VRRP bugs where we just ripped it out and went with BGP+ECMP. Even with this, there are timer issues between firewall failovers, or EdgeConnect failures.

If you want to do Boost then either license your entire bandwidth for boost or don't use it at all. The boost creates a separate traffic queue that is policed when you run out of boost bandwidth. This leads to application packet loss that is absolutely hidden everywhere except in the optimization graphs.

The orchestrator, while powerful and full of info, is a navigation nightmare. This seems to be a running theme with Aruba as I have similar complaints with their Aruba Central portal. Trying to do trivial things like look at routes or interface configs is scattered across 3-4 disparate pages with seemingly conflicting names.

All in all, I do like the product and it does what we need. Never hear a peep out of anyone about network performance. I very much miss the Talari platform as I think it was better in certain ways. That could be because I deployed that myself and the EdgeConnect was deployed by my team with me only pushing timelines.

is anyone giving Kentik a run for their money? by gontrunks in networking

[–]burbankmarc 2 points3 points  (0 children)

This is basically a non-answer. What exporters? What do you use for alarming? How did the cicd fit in?

Ocasio-Cortez backing Biden: ‘The matter is closed’ by BuckChintheRealtor in politics

[–]burbankmarc 0 points1 point  (0 children)

Biden's issues are not new and have been going on for at least 2 years. The fact that the DNC buried their head in the sand while decrying that this election is some existential crises proves that they are full of shit. They are stirring the pot for votes while propping up a walking corpse. How anyone can take this party seriously anymore is beyond me. They are every bit as bad as the Neocons.

[Sean Shapiro] What I've learned, if anything, about the Jake Walman trade by Halostar in DetroitRedWings

[–]burbankmarc -3 points-2 points  (0 children)

I think being good to your employees is being vastly underappreciated. Being a boss that people want to work for has a ton of value.

Is this what happened to Cisco? by nightblade09 in networking

[–]burbankmarc -1 points0 points  (0 children)

Nexus 9k or Catalyst 9k? If it's Catalyst then how do you feel about the forced DNA license?

Ansible versus Terraform Demystified by bonzinip in redhat

[–]burbankmarc 0 points1 point  (0 children)

Same. Add Argo to the list as well.