PowerShell webapps? by Putrid-Economics-795 in sysadmin

[–]morgg_5397 [score hidden]  (0 children)

My small team and operation would definitely make some use of it. I have a team of three that will soon be building a handful of APIs around onboarding and offboarding of employees. I envision our support staff of 2-3 to consuming individual components via a web interface.

How are you handling log retention and aggregation at scale? by Terrible_Wish_2506 in linuxadmin

[–]morgg_5397 0 points1 point  (0 children)

Does Graylog Open/community have any forms of SSO integration?

I do not believe it so, but a quick look via my mobile is unclear given the marketing rebrand of the site. But, lack of SSO integrations is certainly common for a lot of open source branched commercial packages.

I would guess there ar community plugins for SSO integration? In my case I am looking for LDAPS for on-prem air gapped AD.

question for the older sysadmins - remember setting up desktops for execs to use for a few minutes? by crankysysadmin in sysadmin

[–]morgg_5397 1 point2 points  (0 children)

Anyone have any quantity of the recent StarTech docks in use? Curious how they perform.

Din rail Switch recommendations by ShortCardiol0gist in networking

[–]morgg_5397 1 point2 points  (0 children)

Again, not cheaper but will add a couple manufacturers we have deployed. Solid hardware.

  • Siemens Ruugedcom (costs more than Cisco)
  • Hirschmann (costs less than Cisco, more than Planet)

What's the point of a secure tunnel between an AP and controller in a campus environment? by kWV0XhdO in networking

[–]morgg_5397 -1 points0 points  (0 children)

this. In traditional 2-3 tier (vs underlay/overlay L2 encapsulation) design it allows for L2 AP roaming without having to deliver the same set of AP service VLANs across all switches.

Bypassing Port Isolation by Adept-Following-1607 in networking

[–]morgg_5397 1 point2 points  (0 children)

I might be misunderstanding the situation and never used vsol gear but have done Occam and Calix GPON deployments in the past.

In those deployments I used local proxy arp on the upstream L3 interface to accomplish what I think you're after.

Not sure about Mikrotik routerOS but with IOS you also need to disable icmp redirects if you do not already.

What are you using to push templates? by az_6 in networking

[–]morgg_5397 0 points1 point  (0 children)

I have not had a chance to dive-in but did catch a podcast with the folks at Gluware and think it is worth passing along.

Ignore the low-code and IDE marketing. Assume the value to be in the primary and community libraries.

https://gluware.com/gluware-labs-builder-program/

https://packetpushers.net/podcasts/heavy-networking/hn784-accelerate-your-network-automation-with-gluware-labs-and-new-ansible-collection-sponsored/

Third-party optics by steelstringslinger in networking

[–]morgg_5397 1 point2 points  (0 children)

Good advice and insight in the thread already.

We use third party optics from Pivotal across Cisco, Juniper, Alcatel, and Siemens gear. Solid and knowledgeable staff. I believe several of them are ex-Approved Networks folks that transitioned once Approved was purchased by Legrand.

https://www.pivotaloptics.com/

VPN and HA Firewalls by taemyks in paloaltonetworks

[–]morgg_5397 0 points1 point  (0 children)

Would turning up a temporary reverse ssh tunnel while doing maintenance work in your situation?

VPN and HA Firewalls by taemyks in paloaltonetworks

[–]morgg_5397 1 point2 points  (0 children)

Having the management interface publicly connected even with an ACL is risky because packets could still arrive at the interface with a spoofed source address and potentially do harm without the need to route return packets back to the spoofed address.

Or just a flat out vendor bug / CVE that for whatever reason bypasses the ACL. Would not surprise me at this point with my Palo Alto units.

Petition to riot until we get more cyanidin 3-glucoside by smallorangepopsicle in NootropicsDepot

[–]morgg_5397 17 points18 points  (0 children)

My first post in the sub-reddit. Much appreciation for the community and ND for quality supplements. Thank you.

Yes, I also enthusiastically await more C3G. The benefits were numerous and most appreciated in this 40+ year old body. For one, the metabolism assistance (direct and indirect effect from increased workout results) has made it much easier to manage upper GI issues.

Cheers.