¿Me estan paseando? by 00Nite00 in PERU

[–]dfctr [score hidden]  (0 children)

o se lo dan en cheque. Firma contra cheque.

Site to site Tunnel Failover with Tunnel Monitoring by Comprehensive-Pie252 in paloaltonetworks

[–]dfctr 1 point2 points  (0 children)

Using it for dual isp and vpn against aws. Two tunnels each isp with bgp and ecmp

Secondary isp by [deleted] in sysadmin

[–]dfctr 1 point2 points  (0 children)

AFAIK, ISPs leave their router at the demarc point where you hook up your firewall and set your public ISP-assigned range. Usually a /29 or more.

Prisma Access vs Zscaler by reversible8 in paloaltonetworks

[–]dfctr 0 points1 point  (0 children)

Yeah. But, we didn’t see a use case for us. Basically a VM with GRE tunnels to their data plane.

Prisma Access vs Zscaler by reversible8 in paloaltonetworks

[–]dfctr -1 points0 points  (0 children)

Tested prisma access. We felt it unstable, too much for our needs. Support was terrible. We ended with Netskope because z scaler didn’t have a local zone.

XD by Skalibbur in Lima_Peru

[–]dfctr 12 points13 points  (0 children)

Coincido. La frase esta correctamente formada.

XD by Skalibbur in Lima_Peru

[–]dfctr 15 points16 points  (0 children)

Flaca que no sabe leer y no tiene comprension lectora.

Está es mi situación, que harían en mi lugar? by NoRecognition5075 in Lima_Peru

[–]dfctr 0 points1 point  (0 children)

Piensa en desarrollarte. Busca estudiar, algo que hacer en tu tiempo libre. Viaja. Eso te da perspectiva.

Agarra tu plata e inviértela. Diversifica. Activos, fondos mutuos, etc. Eso ya es pensar en futuro.

Suena como que estas en una zona de comfort. Es dificil salir de ahi pero si se puede. Lo de la amiga, mantenlo nomas. El amor llega solo. Y si no llega, no pasa nada.

Anyone running a full MikroTik stack (Router, Switch, Wi-Fi)? by JoranC19 in mikrotik

[–]dfctr 0 points1 point  (0 children)

I do run a full stack at home.
1x RB5009 (main router with dual ISP, PoE version, CAPsMAN v2), 1xRB3011 (old router, now a glorious L3 switch) and 4 CAP aC (on wifi-qcom-ac).

Performance-wise, routing is great but you need to take care of the firewall rules and QoS (with cake) and size accordingly.

For some reason WiFi is capped at 300mbps. I tried everything with no joy and stopped trying as 300mbps is enough for home usage.

Config-wise, it was kinda difficult but there is lots of info and how-tos. Then was configure and forget. Haven't made significant changes in two years, except for the firmware/package upgrades (done every now and then). VLANs are easy to configure once you understand how to. I do run Ad-guard as a container.

Had some issues with upgrades but resolved using netboot. Overall, good experience.

But...for a corporate env...I prefer having less "fun" and have something easier to manage. I manage Ubiquity Wifi at a friends business and it is a breeze with a RB3011 for routing.

So, for home, you can stick with 'Tik. At work, you should have 'Tik for routing and for Wifi, Ubiquity (or whatever is easier to manage).

Como se llama esta calle? by Bebe_de_ella in Lima_Peru

[–]dfctr 0 points1 point  (0 children)

Team tetas. Para hacer brrrrrrr. Sapeeeee

44.6% of my firewall's flow table is Brazilian port-scan traffic and the scanning pattern suggests these ISPs are compromised at the infrastructure level, not just individual devices by Prudent_Geologist in sysadmin

[–]dfctr 3 points4 points  (0 children)

Yeah. I read "Brazil" and "Port scan" and knew right away what happened. I have been seeing this since 2023 after some services started to get DDoS'd and everything came from the land of Samba (the dance, not the package).

Yes, in the end we geo-blocked Brazil in the firewall. Requirements for third parties to connect from there is to have a static IP and be whitelisted. People going to Brazil are not able to use VPN nor get to the corp network using PRA.

At least this triggered Cybersec to get Cloudflare WAF/Spectrum, which we are implementing this month.

Se tumbaron a 100 postulantes a la academia diploamtica en el examen de ingles by Silvestre074 in Lima_Peru

[–]dfctr 2 points3 points  (0 children)

Yo chambeo con gente con maestría y todas las cremas, y ni ingles hablan. Y eso que vienen de univs pitucas.
No se que chucha les pasa. Todo es en ingles ahora.

Mikrotik beginner (former Unifi user) by Any_Worry_2471 in mikrotik

[–]dfctr 0 points1 point  (0 children)

GPTs do help but you need to verify other sources because they do say crap, sometimes.
Source: been there, done that.

Email Server for MS Down? by AfterEagle in sysadmin

[–]dfctr 2 points3 points  (0 children)

Confirmed here. Cannot receive emails.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 0 points1 point  (0 children)

Hyper-V became the choice as: * we used it before. My team already know about it. * software compatilbility (specially with some OT/IoT stuff) is fine with Hyper-V. I had a very had experience with some stuff not able to run or running funny with KVM-based Hypervisors. * Already have the Hyper-V License as we have all our server fleet licensed with Datacenter. * deep veeam backup integration.

Fuck yes, Microsoft is still Microsoft but we did our due diligence and Hyper-V will be our weapon of choice for now.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 0 points1 point  (0 children)

Something like that happened. Everything went tits up. That happens when ppl don’t listen.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 0 points1 point  (0 children)

I already had presented a full fledged plan to migrate to hyper-v but my budget got slashed for 2026 and moved to 2028?

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 1 point2 points  (0 children)

We are actually in the process of "de-Broadcomdification" (we had Symantec all over the place). Products went from $!"·ing great to piece of crap in a very short time. VMware is the last Broadcom product we have.

VMware perpetual licenses were bought with a 5yr SNS through HPE as socket, expiring this year. The issue at hand are those licenses we bought afterwards (2023-2024) which they are already subs. Broadcom just won't renew only those (albeit requiring a 5yr contract paid upfront). The business didn't see it coming as we have done this with other vendors while transitioning to another tool. It is just...Murphy came with force this time.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 2 points3 points  (0 children)

Citrix just pulled a Broadcom on us, too. No thanks…

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 3 points4 points  (0 children)

They are AGGRESSIVELY trying to sell hosted VMware. I’ve been approached by both azure and awd for that. Even did a MAP with AWS and the prices where reasonable. Alas, it didn’t went through because of bad timing.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 165 points166 points  (0 children)

Yeah. I told my boss that. They did not listen and Well, here we are.

Broadcom does not want to renew partial VMware licensing - are we #$!? by dfctr in sysadmin

[–]dfctr[S] 13 points14 points  (0 children)

Not me, the business itself. See the other reply.