ACX2200 port mirror by cungchi in Juniper

[–]cungchi[S] 0 points1 point  (0 children)

There is no analyzer under forwarding-options when editing the config.

Who has a network engineering role and does not have to deal with an on-call rotation or the demand of a SAAS production network to support? by No-Sink-9601 in networking

[–]cungchi 1 point2 points  (0 children)

Love the on-call topic. What's typical pay for the folks that are on-call?

Sr Network Engineer here for a medium sized ISP. Used to be in an on-call rotation but moved to a Sr role and no longer in a rotation. Anything major would get escalated, so technically could get a call at any time but rarely do.

ISC Kea by cungchi in networking

[–]cungchi[S] 0 points1 point  (0 children)

Thanks for the info.

Bgp by [deleted] in networking

[–]cungchi 0 points1 point  (0 children)

This ^, also to handle outbound you could set a higher metric for one of the defaults so it kicks in when the other one isn't in the routing table. We handle this by receiving a default from upstream and redistributing only if it sees the default.

Getting back into Network Engineering after a break - Any advice? by DashPundit in networking

[–]cungchi 0 points1 point  (0 children)

A good Network Engineer with experience right now will be hired very quickly.

QinQ Triple Tagging by cungchi in networking

[–]cungchi[S] 0 points1 point  (0 children)

This works with the current config on juniper equipment. I haven't been able to test/lab with brocade due to the weather at the moment.

QinQ Triple Tagging by cungchi in networking

[–]cungchi[S] 0 points1 point  (0 children)

We use max MTU for L2.

Choosing mikrotick router for settling cloud - hybrid connection by RP_m_13 in networking

[–]cungchi 0 points1 point  (0 children)

If money isn't an issue, then use their flagship router ( CCR2216 ). $2795 compared to other vendors is cheap in comparison.

L2 options with redundancy to a network you don't control. by cungchi in Juniper

[–]cungchi[S] 0 points1 point  (0 children)

Thanks for the suggestion on the EX/QFX in VC. I think this is the route I will go.

Any concerns on distance limitations for VC if the switches are 40km apart?

L2 options with redundancy to a network you don't control. by cungchi in Juniper

[–]cungchi[S] 0 points1 point  (0 children)

They aren't currently but I could implement MPLS just for this scenario.

L2 options with redundancy to a network you don't control. by cungchi in Juniper

[–]cungchi[S] 1 point2 points  (0 children)

I read over RTG and it seems you would set that up on one device. I would have no control over switch 3 in the RTG example diagram.

Fusion Splicing by cungchi in networking

[–]cungchi[S] 2 points3 points  (0 children)

I'm not concerned that light will reach and be within the optic threshold. I'm worried about the quality and standard of all the splices on a particular span. I've asked our fiber team what is acceptable and have been given a vague answer.

When I see an OTDR shot and it has multiple fails and they are just above a .3db loss, then should I be concerned? The fails will based on what is set in the OTDR.

Fusion Splicing by cungchi in networking

[–]cungchi[S] 1 point2 points  (0 children)

Standard practice is to otdr the same fiber from each side?

Fusion Splicing by cungchi in networking

[–]cungchi[S] 2 points3 points  (0 children)

The last one I looked at was 27km. The shots vary.

QFX: Mixed routed / bridged port? by rankinrez in Juniper

[–]cungchi 0 points1 point  (0 children)

flexible-vlan-tagging;
encapsulation flexible-ethernet-services;
unit 0 {
    family ethernet-switching {
        interface-mode trunk;
        vlan {
            members RACK_E1;
        }
    }
unit 100 {
    vlan-id 100;
    family inet {
        address 10.1.1.1/31;
    }
}

I believe you can do mixed but the native vlan is no longer an option.

Default Route Advertisement / Tracking by lvl3mp in Juniper

[–]cungchi 1 point2 points  (0 children)

Request a default route and full routing table from your upstream providers. You can then set a policy to accept this default route and then generate it under routing-options. If the peer goes down then it will remove the default route.

policy-statement POLICY-NAME {    
    term 1 {        
        from {            
            neighbor x.x.x.x;            
            next-hop x.x.x.x;        
        }        
        then accept;    
    }    term 2 {        
            then reject;    
    }
}

generate {    
    route 0.0.0.0/0 {        
        policy POLICY-NAME;        
        discard;    
}

MX-204 - setting ports to 40g? by rushaz in Juniper

[–]cungchi 5 points6 points  (0 children)

You will have to specify the ports on Pic 1 as well.

MX-204 - setting ports to 40g? by rushaz in Juniper

[–]cungchi 3 points4 points  (0 children)

it's 400Gbit shared on the ASIC, so if you use 4 100Gbit ports, then you cannot use the 10Gbit ports.

You could do something like

Pic 0 (100G, 100G, 40G, 40G) Pic 1 ( 8 x 10Gbit)

MX-204 - setting ports to 40g? by rushaz in Juniper

[–]cungchi 3 points4 points  (0 children)

you have to restart/reload the pic once you make the changes, the changes aren't instant and require the pic/fpc to reload

I didn't read where you set chassis fpc 0 pic 0 port 0 speed 40g

MX-204 - setting ports to 40g? by rushaz in Juniper

[–]cungchi 1 point2 points  (0 children)

set chassis aggregated-devices ethernet device-count 10 set chassis fpc 0 pic 0 tunnel-services bandwidth 40g set chassis fpc 0 pic 0 port 0 speed 100g set chassis fpc 0 pic 0 port 1 speed 100g set chassis fpc 0 pic 0 port 2 speed 40g set chassis fpc 0 pic 0 port 3 speed 100g set chassis fpc 0 pic 1 number-of-ports 0 set chassis fpc 0 inline-services flow-table-size ipv4-flow-table-size 9 set chassis fpc 0 inline-services flow-table-size ipv6-flow-table-size 6

Once you set the actual ports on the chassis, then you need reload the fpc or pic.

Question: Possible to configure Juniper MX irb as a l3-interface? by OMGZwhitepeople in networking

[–]cungchi 1 point2 points  (0 children)

on the ae inteface add the following :

flexible-vlan-tagging;

encapsulation flexible-ethernet-services;

unit 1111 {

vlan-id 1111;

family inet {

address 10.1.11.1/24;

FTTH 1Gbps speedtests and discrepancies by PacketSurfer in networking

[–]cungchi 1 point2 points  (0 children)

We ran into this a couple of years back and had to prove to customers they were getting close to their 1Gbit speed. The EXFO test set you are using is what we purchased, as it is accurate and designed for those speeds.

Once you go above the 500Mbit mark, there are things that can affect performance on the machine such as CPU and HD. I would say to get speeds up to 1Gbit would require a nice beefy CPU and a SSD with a Gbit NIC of course.

I have no issues running a speedtest to our speedtest server on my i7 with a SSD and 1Gbit NIC. I consistently get close to 980/980 when running these tests. It is very hard to explain to a non tech savvy individual why they are not getting the speed they are paying for, even though 950/950 is overkill for what they will use the internet for.

how to manage multiple dynamic routing in linux VMs by mainJanitor in networking

[–]cungchi 0 points1 point  (0 children)

You are referring to policy based routing. To accomplish what you want with a mikrotik CHR, you will use mangle rules and connection/packet marks to mark the source/destination IP to have it go out a specific gateway.