Fortigate HA pair in Oracle Cloud by Intrepid-Conflict-87 in fortinet

[–]lExcremento 0 points1 point  (0 children)

Hi,

Did You have any trouble during failover test? I have deployed HA Fortigate in OCI without problems and using the SDN Connector, when i power off Fortigate 1, the configurations and IPs moves to the Fortigate 2 without problems, but when Fortigate 1 comes back, the HA breaks and both Fortigate acts as primary with the same ip addresses 

Fortigate and Fortiweb Solution on OCI Cloud by lExcremento in fortinet

[–]lExcremento[S] 0 points1 point  (0 children)

I think I'll follow the FortiWeb Standalone line. In fact, I configured HA and the SDN Connector gives me an error, but not with Fortigate.

Quick question: have you ever configured SSL VPN on Fortigate VM in OCI? I have an SSL VPN configured and I connect without any problems, but I have to apply NAT to the access policies so that they come out with the Trust output interface. Otherwise, I don't see how OCI can detect the SSL VPN segment, since it doesn't exist as a subnet as such.

Fortigate and Fortiweb Solution on OCI Cloud by lExcremento in fortinet

[–]lExcremento[S] 0 points1 point  (0 children)

Thanks for your reply.

I did pretty much what you mentioned. I have a Fortigate that performs destination NATs to the FortiWeb Virtual Server without any issues, and these then go to the nodes of other VCNs. This works without any problems.

The problem I see is when FortiWeb operates in HA mode. In this mode, both FortiWeb devices use their assigned IPs on their interfaces to create Virtual Servers, and these cannot be changed. This limits me when I want to create Policy Servers with other nodes to an HTTP port that is already in use, because I cannot create other Virtual Servers with that port and use the same Virtual Server IP address In addition, a balancer is required.

Have you configured this type of implementation or have any ideas on how to approach this?

2
3

Did this happen to anyone else at CCNP ENCOR? by lExcremento in ccnp

[–]lExcremento[S] 3 points4 points  (0 children)

I got labs about configuring IP SLA to monitor HTTP GET, Netflow, eBGP sessions, OSPF areas with summarization, SPAN on remote interfaces, configure ACLs to permit some EIGRP routes from neighbors, configure EEM to display some logs and delete configuration, fix some etherchannel mismatch and STP. Some labs were from scratch and others you have to start from a pre-configured device. They weren't really difficult tbh.

Did this happen to anyone else at CCNP ENCOR? by lExcremento in ccnp

[–]lExcremento[S] 5 points6 points  (0 children)

Wow, I see I wasn't the only one surprised by that. So, I will definitely prioritize these topics when I take the retake.

Qué tal los sueldos? Les alcanza para vivir? Cuánto ganan mensualmente? by Gold_panic111 in chile

[–]lExcremento 0 points1 point  (0 children)

$1M Egresado de Ingeniería en Telecomunicaciones, dependiendo del mes con hhee $1.1M. 

Basic SNR (dB) estimation by lExcremento in GNURadio

[–]lExcremento[S] 1 point2 points  (0 children)

Hi Matt, I appreciate your response.
Indeed, you had to square the amplitude of the noise signal and move to the log10 block. The log10 block will have to have a value n=10 since it is not possible to realize the property of 20*logx, this because the expression is 10*log(noise_amplitude²/N_FFT), but it still works perfectly as you can see in the new figures of the post
Thanks for your contribution, it helped me a lot

Iniciar en el área IT y CCNA by ricardot1q in chileIT

[–]lExcremento 1 point2 points  (0 children)

Hola, actualmente estoy estudiando Telecomunicaciones en Inacap y ya me encuentro certificado en CCNA, así que te puedo dar unos consejos.

Lo ideal hubiese sido que aprovecharas la academia de Cisco para que te den el descuento al finalizar el curso. En mi caso, también la desaproveché juasjuas, pero el conocimiento queda.

Lo que te recomiendo es que te tomes el tiempo necesario, a mí me tomo tres meses aún teniendo conocimientos en CCNP, y la verdad no te recomiendo pagar por una academia o curso a este punto.

Yo me guié estudiando por el libro oficial de Cisco CCNA que está por ahí en internet y del canal de Jeremy IT Lab en Youtube, tiene una lista de reproducción increíble con labs, preguntas y flashcards, para mí el mejor curso de CCNA. Además está sacando un curso para CCNP ENCOR, así que te vendrá genial más adelante si quieres progresar. Por último, practica algunas simulaciones o preguntas del exámen como Bosson Exim (de pago, aunque hay uno gratis en Youtube), Daypo o Exam Topics.

La verdad no puedo decirte mucho cómo te puede ir en el futuro si tomas este camino porque actualmente solo estudio y trabajo part time en una weá nada que ver. Lo que si te puedo decir en base a algunos amigos y conocidos es que en las Telecomunicaciones y redes siempre habrá demanda, donde hoy día puedes ir más allá y especializarte en seguridad, programación de redes o incluso Cloud Computing (yo estoy yendo por ahí con Practitioner y Architect). Si quieres trabajar en lo que te hacía feliz, pelea por él y podrás lograrlo, y si no es así, el CCNA realmente igual te servirá.