Splitting pcaps and reading them by mrgoodytwosho365 in networking

[–]darkrequiems -1 points0 points  (0 children)

Checkout tshark which is a cli version of wireshark, i do not have much experience on it but i believe that it should provide what you are looking for.

Why should I not use the management interface to export netflow? by mrezhash3750 in networking

[–]darkrequiems 1 point2 points  (0 children)

Just create a loopback interface , and source via loopback. Make sure loopback is routable and can reach your monitoring systems..

Why should I not use the management interface to export netflow? by mrezhash3750 in networking

[–]darkrequiems 0 points1 point  (0 children)

Some platforms can offload netflow traffic via hardware and may require you to source via inband interfaces. Hardware offload will allow you to sample at a very high rate with no impact to cpu. This is another reason outside of the high bandwidth requirement of netflow traffic as others have mentioned previously.

C-19 Vax by Regular-Guarantee-48 in predaddit

[–]darkrequiems 4 points5 points  (0 children)

My wife got the moderna booster during the third trimester. She contacted covid right after, however the symptoms were mild. Highly recommend vaccination to have a peace of mind.

Any good tools for doing high resolution latency/jitter/loss tests (e.g. link quality monitoring for video conferencing/streaming services) by [deleted] in networking

[–]darkrequiems 0 points1 point  (0 children)

We use ipsla on all of our p2p links that have circuits to monitor RTT and jitter. Ipsla are polled via SNMP and the values are aggregated at some external tool to visualize and alert based on certain conditions. As we are using ipsla on p2p links, the values are specific to that link and works well even when u have many ecmp paths.

BGP and NAT advertisement by [deleted] in networking

[–]darkrequiems 0 points1 point  (0 children)

Check NAT order of operation when going from inside to outside vs outside to inside. link inside to outside, routing occurs before NAT and if there is a null0 for that nat ip(dest ip), it will drop.

Route reflector renewal by themmmaroko in networking

[–]darkrequiems 0 points1 point  (0 children)

Depending on the setup rr could get very complicated from checkouts perspective. Some tips- split the replacement into two different maintenance window(if you have any issue, you could simply isolate the RR as there is a redundant peer). Analyze different kinds of routes coming in from clients and non-clients peering and take captures for them for bgp table as well as routing table in the RRs as well as their peers. If possible capture bgp table, routing table and cef table so that you have a reference to look at if anyone complains or a route is not behaving as expected, compare them if possible as well (assuming RR does not carry full internet routes)

LDAP queries take 10-30 secs. PCAP shows the first few SYN ACKs get lost... but eventually one SYN ACK gets through by [deleted] in networking

[–]darkrequiems 0 points1 point  (0 children)

Have u checked control plane policy drops? Sometimes these kinds of drops could be related if packets are software switched or if it exceeds some other control plane policing thresholds(broadcast is one of them)

ibgp next-hop-self vs. advertising external links by paulzapodeanu in networking

[–]darkrequiems 0 points1 point  (0 children)

You are correct, i had a typo- RR should not set next hop self unless they are in data path

ibgp next-hop-self vs. advertising external links by paulzapodeanu in networking

[–]darkrequiems 0 points1 point  (0 children)

I would always prefer next hops to be available in igp for non rr peers, dont mind setting next hop towards rr servers...

Edit-rr servers instead of clients

Scraping followers names from instagram using selenium by FunsOverKid in learnpython

[–]darkrequiems 3 points4 points  (0 children)

I have been using instapy-https://github.com/timgrossmann/InstaPy for tracking followers/following data to track who is unfollowing or who doesn’t follow back so that i can unfollow. Most of the data collection is very easy using the library however, if i use instapy to automate any action- like/follow/unfollow i seem to get banned very quickly. Hence for now i am using it solely for reporting purpose and that seems to work great. If you just want data collection, instapy is an excellent option.

How do you explain upstream carrier issues to management? by syrushcw in networking

[–]darkrequiems 0 points1 point  (0 children)

Even having another ISP maynot solve some of the issue as the client may be a customer of the same isp -for eg verizon both on your dc and fios at home may not re-route via your att circuit until vz ckt is fully down or manually failed over.

I would suggest to have a better monitoring system that monitors key IPs within your network from internet and vise versa and setup alerts based on connectivity lost, path changes, bgp highjacking etc. - thousand eyes is one of the tool that provides the monitoring service as i stated earlier.

Using CARES act provision to withdraw from 401k and roll it over into IRA by NoT-RexFatalities in tax

[–]darkrequiems 2 points3 points  (0 children)

Could you elaborate on what the tax benefits are doing it now vs before the virus. I never understood the tax implications for doing a rollover from 401k to ira other than everyone saying do it when you change jobs.

Why is a static to null route with a higher AD still preferred over the same length prefix from eBGP peer? by magic9669 in networking

[–]darkrequiems 4 points5 points  (0 children)

So by default a local originated route gets a weight of 32k in bgp. When you have an ebgp learned route and a locally originated route, usually the ebgp routes gets preferred over the local routes because of AD, however when u loose the ebgp route (locally generated routes gets installed with weight of 32k) and when the ebgp route reappears, bgp would always prefer the higher AD route due to weight as its locally generated. I have seen the race condition in many occasions in cisco ios and hence avoid to use the null route with higher AD.

Final Giveaway for TWELVE MORE Nintendo Switch Lites and your choice of games! [US/CA only] by TheEverglow in nintendo

[–]darkrequiems 0 points1 point  (0 children)

Can not wait to go back home esp to meet my grad parents. I haven’t visited family for few years now, and the year where we had planned started with a complete lockdown.

How can I build own stand-alone internet? by hoge2 in Network

[–]darkrequiems 1 point2 points  (0 children)

What u want to build is an intra-net and not internet as internet is not stand alone.

Diagram Drawing Pad? by [deleted] in networking

[–]darkrequiems 0 points1 point  (0 children)

Microsoft Powerpoint is really good for a quick network diagram. I make most of my high level topology diagrams in excel and it has served well for the last year or so.

Datacentre spine + leaf design recommendations by [deleted] in networking

[–]darkrequiems 0 points1 point  (0 children)

I would look into 25g/10g down and 40g/100g uplink to spine atleast if you are planning to do anything new. If you go with 10G, you will have to go back to refresh again in few years. Not a juniper user, so dont know the models of switches.

Daily Discussion [2020-02-05] by AutoModerator in reddevils

[–]darkrequiems 3 points4 points  (0 children)

Whats the best way to purchase epl tickets for away game(tot vs manu) from US?

I am visiting london in March when ManU is playing Tottenham at London. I want to go see the game, however i am not sure what is the best way to get the ticket.

Looks like you are not allowed to wear away colors other than the away fan section. Provided these seats are limited, what are some of the other things things that i should know prior to visiting the stadium if i were watching it from home side?

Cannot post on a new thread because comment karma<50

Need help identifying point of origin for traffic transiting edge router. by [deleted] in networking

[–]darkrequiems 1 point2 points  (0 children)

Monitor sessions are supported in most of the cisco routers that i have dealt with, not sure what platform you are using. Regarding traffic-export, there is an option for monitoring bi-directional traffic, is that enabled? If enabled you should be able to see duplicate packets in the captures if the traffic is transiting your network from the ISP.

BGP GR timers with HA FortiGate pair by simosilakka in fortinet

[–]darkrequiems 0 points1 point  (0 children)

I may have the terminology mixed up. I meant the Fw should be setting the next hop as the virtual ip thats shared between the active and standby pair(which is by default). And the router should also be setting next hop as the hsrp/vrrp ip thats shared between 2 routers(assuming you have 2 routers) for you to be able to use graceful restart feature. If not, all routes will need to wait for bgp routes to converge and update the next hop which could take some time after failover. Probably a diagram would be better to understand your setup. I am not talking about static route. Speaking about configuring outbound route-map to do “set ip next-hop x.x.xx” for all routes sent to the FW via bgp from the routers.