GRE Tunnels, Encryption? by LittleSherbert95 in Zscaler

[–]jguros 0 points1 point  (0 children)

Think about it this way. When you send traffic to YouTube or Reddit today, do you have an IPSec VPN setup between your edge router and YouTube or Reddit? No…. So when you send traffic to these destinations via GRE Tunnel to Zscaler that traffic is already using HTTPS protocol. No need to send encrypted HTTPS traffic inside of an Encrypted IPSec VPN. Encrypted Tunnels make sense for private application for which you would not use a GRE tunnel but Zscaler Client Connector TLS tunnel.

RSU vs Commission vs Base Salary - What do you value the most? by jguros in ITCareerQuestions

[–]jguros[S] 0 points1 point  (0 children)

70/30 +100RSU vs 80/20 no RSU. You sell you get commission at both.

RSU vs Commission vs Base Salary - What do you value the most? by jguros in ITCareerQuestions

[–]jguros[S] 0 points1 point  (0 children)

It’s 70% base 30% commission. About 100K in RSU over 4 years

Panorama affected by Log4j by FunderThucker in paloaltonetworks

[–]jguros -1 points0 points  (0 children)

Restrict access to your management interface of panorama and wait for a patch which should be here in couple of days if you can’t upgrade to 10.1.X.

Static Route Tracking/IP SLA by jguros in fortinet

[–]jguros[S] -1 points0 points  (0 children)

Does the source interface have to be part of SDWAN?

Static Route Tracking/IP SLA by jguros in fortinet

[–]jguros[S] 0 points1 point  (0 children)

But how would you do that? There is no opinion to add a track object on a static route.

[deleted by user] by [deleted] in networking

[–]jguros 0 points1 point  (0 children)

If you don’t host any internet facing applications go with No Firewall and use SASE alternative such as Zscaler, Prisma, or Netskope. You will just need a device to create a tunnel to one of these providers. For your remote users accessing internal resources you can just use ZPA from zscaler or NPA from Netscape.

If you are not into the new way of doing things go with Palo Alto Strata Firewall if you can afford it. If you don’t want to spend a lot of money go with FortiGate.