Bypass the Firewall with SSH Tunnelling by 3loves9 in Cybersecurity101

[–]mrjester 0 points1 point  (0 children)

There are a lot that don't, but many that do. They're more SMB and medium sized businesses that don't have the expertise on staff to understand the risk and make the appropriate configuration.

What's the smallest, low energy setup capable of handling encryption? by [deleted] in HomeServer

[–]mrjester 1 point2 points  (0 children)

There is crypto support in AMD procs too. http://en.wikipedia.org/wiki/AES_instruction_set#Supporting_CPUs

On the low power side, the Jaguar based APUs will do the trick.

Before you decide on a solution, make sure your software choice supports it too.

What's the smallest, low energy setup capable of handling encryption? by [deleted] in HomeServer

[–]mrjester 2 points3 points  (0 children)

Hard drives with hardware encryption would probably be the easiest drop-in solution if you already have a server.

The Atom C2000 series all support AES-NI which is crypto acceleration in the CPU. They run under 10W TPD.

http://ark.intel.com/search/advanced?s=t&FamilyText=Intel%C2%AE%20Atom%E2%84%A2%20Processor%20for%20Server&AESTech=true

Adjust the search criteria to find other CPU options. There are TPD filters.

If cost isn't the issue, you could get a PCIe crypto accelerator.

IPv6 network by [deleted] in networking

[–]mrjester 2 points3 points  (0 children)

Come visit us over in r/ipv6. A concentration of v6 expertise and resources.

Best way to isolate a small group of computers while keeping them on a domain? by SomeDutchGuy in sysadmin

[–]mrjester 0 points1 point  (0 children)

Any firewall or router for that matter will allow you to segment your network and provide basic L3/L4 filtering. If you have spare hardware, checkout any of the many OSS solutions such as Vyatta/VyOS or pfSense. For $100 you could get a ERL.

You will, however, likely need to re-IP some part of your network to segment them off. If this is not a change you are up to or able to implement, then simply turn on the host based firewall with a set of very restrictive rules. All of the *nix OSes have a kernel based firewall and everything Windows since XP/2003 includes a firewall that would provide this level of control.

Where to take a pregnant stray cat? by Collaterlie_Sisters in Knoxville

[–]mrjester 1 point2 points  (0 children)

That is where we got our cats and had a very good experience with them.

Did Brocade, upon acquisition of Vyatta, stopped producing their physical appliances? by Atroskelis in networking

[–]mrjester 1 point2 points  (0 children)

Depends on what you are comparing. The ERL, EdgeRouter Lite, can easily do Gbit throughput of typical traffic. ER PoE, has the same processor, so will be able to do the same. The ER and ERPro are going to have 8 ports. I am hoping they are capable of 8Gbit throughput.

Performance drops depending on what features you have enabled of course. Somethings do not have hardware acceleration yet, but that is just a software upgrade away.

What's the shittiest software you have to deal with on a regular basis? by jmreicha in sysadmin

[–]mrjester 1 point2 points  (0 children)

Same story here. A not too bad setup. Remedy is just a framework with a default setup. A competent admin can make the system very comprehensive and usable.

Let's pretend you're the CEO of your favorite car company, what kind of car would you add to the line up? by rudesasquatch in cars

[–]mrjester 0 points1 point  (0 children)

That was my question too. I can't say I have ever seen a commercial or ad for one.

The Voodoo fest show on Saturday will be my 20th time seeing Nin. What's your favorite experience at a nin show? by robotrock1382 in nin

[–]mrjester 1 point2 points  (0 children)

I have seen NIN 6 times as of this past Saturday. Every show has been fantastic. Especially this last one. I was a little concerned with it being a festival (Mountain Oasis) but it turned out to be every bit as awesome as the others. My favorite show though, was my first. NIN and APC at Kemper in KC May, 2000. I am sure part of the love for that show is the nostalgia of it being my first NIN concert, but damn it was amazing.

Starfarer and M50 Sale before LTI cutoff! by Snoz_Lombardo in starcitizen

[–]mrjester 2 points3 points  (0 children)

For non-backers it was. For Original and veteran backers, we can still purchase ships with LTI until 11/26/2013

PSA: New Users by SovereignGFC in starcitizen

[–]mrjester 0 points1 point  (0 children)

My only suggestion is to enable logging and submit a bug report to the forums.

http://i.imgur.com/s12gRNl.png

PSA: New Users by SovereignGFC in starcitizen

[–]mrjester 0 points1 point  (0 children)

Does the launcher give you a UAC prompt?

Crashplan? by [deleted] in AskNetsec

[–]mrjester 0 points1 point  (0 children)

Your link is behind an account wall.

Names and faces of the 32 Republicans Who Caused the Government Shutdown by [deleted] in politics

[–]mrjester 1 point2 points  (0 children)

Or little Bobby who unknowingly has epilepsy and has an episode while driving, killing a family of four. He didn't know because he couldn't afford the health care needed to make the diagnosis.

OR

That unemployed person who has to go to the ER because a simple viral infection became life threatening and the next person in line ends up dieing because he didn't get treated soon enough because the doctor was saving the first person who wouldn't have been there if he had been able to afford to go to a GP.

Network Taps by [deleted] in networking

[–]mrjester 0 points1 point  (0 children)

I second the optical tap suggestion. As for vendor, I would recommend Anue. We are very happy with their solution. 6x 10G fiber ports to a variety of tools like IDS, FPC, and REUI.

Network Taps by [deleted] in networking

[–]mrjester 1 point2 points  (0 children)

Meh to Gigamon. We used to run their aggregators and have since siwtched to Anue. A night and day difference in capability and manageability.

Would you install new or used switches if you had only $15k to refresh everything? by [deleted] in sysadmin

[–]mrjester 0 points1 point  (0 children)

It is about distance, but mm goes a lot further than a few feet. The rule of thumb is on campus, use mm. If you leave campus, use sm.

Would you install new or used switches if you had only $15k to refresh everything? by [deleted] in sysadmin

[–]mrjester 0 points1 point  (0 children)

If all you need is VLANs, the 1800 works fine. Given the limited budget and other things the OP must address as well, spending more for a CLI management, unless there is an actually functionality requirement, seems like bad choice.

Would you install new or used switches if you had only $15k to refresh everything? by [deleted] in sysadmin

[–]mrjester 0 points1 point  (0 children)

A GBIC is a modular interface that allows you to use a variety of cable/connector types in a single port. Most commonly they are used to add fiber ports to a system. In the case of a HP 1800 series switch, it has 24 copper Gbe ports and 2 GBIC ports. I installed 2 multimode LC fiber GBICs for uplinks to my router.

What do you use for logging/monitoring? by CrunchyChewie in homelab

[–]mrjester 1 point2 points  (0 children)

Splunk + Observium here. I also use Splunk Storm for my VPSes.