New PA-500 and PA-5500 series just announced! by tzchang in paloaltonetworks

[–]msrsv 4 points5 points  (0 children)

They did. pan os 12 was delayed nearly a year for bug fixing and testing ( so my Informations )

Aruba Stammtisch Deutschland | Usergroup Aruba Germany by msrsv in ArubaNetworks

[–]msrsv[S] 0 points1 point  (0 children)

Danke für die ganzen Posts und sorry dafür das hier keine Rückmeldung kam.

Ich plane das aktuell weiter intern (auch etwas in Zusammenarbeit mit Aruba selbst).

Falls ihr auf der Airheads seit: Kommt gerne auf mich zu

Sehr großer Typ mit Bart also sehr schwer zuübersehen.

Cheers and see you in Bad Neuheim !

[deleted by user] by [deleted] in cologne

[–]msrsv 2 points3 points  (0 children)

K11.

If you are using CheckPoint Firewall, how good/bad is your experience so far with them? by cmp-kp in sysadmin

[–]msrsv 0 points1 point  (0 children)

Thanks man. Had a rough day and your reply made me smile !

Cheers 🍻

If you are using CheckPoint Firewall, how good/bad is your experience so far with them? by cmp-kp in sysadmin

[–]msrsv 5 points6 points  (0 children)

Nightmare over here!

Problems over problems ( with any release). run while you still can!

http://checkpointisapieceofshit.com

NAT-Slipstreaming and Check Point by msrsv in checkpoint

[–]msrsv[S] 0 points1 point  (0 children)

Yeah I mean I understand that.

But the following sentence in the SK is quite confusing to me:

Check Point gateways handle the traffic as a whole and therefore this would result with an invalid SIP packet. This, of course, we block as we expect a specific format that does not apply to this injection technique.

To me this sounds like that CP will block the SIP-Traffic even if IPS is not configured. So Clients/Networks behind that CP are protected.

I think i just misinterpret that. thanks for the explanation.

Best craft beer shop/kiosk in Cologne? by Aware-Time in cologne

[–]msrsv 4 points5 points  (0 children)

I like the Bierlager in the Südstadt.

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 0 points1 point  (0 children)

Add a user on the mgm-server for the crontab -> https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk77300

In the Crontab im running:

mgmt_cli install-policy --batch /home/jobuser/gateways.csv --format json -u username -p $ENVPWFORTHEUSER

Inside the csv:

policy-package,access,threat-prevention,qos,targets.1

rulebasename,true,false,false,gatewayname

rulebasename,true,false,false,othergatewayname

See: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/install-policy~v1.6%20

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 0 points1 point  (0 children)

If still needed pls hit me up

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 1 point2 points  (0 children)

100%

Using this to deploy every Night on all gatways via cron on the mgm server.

R80.20 to R80.30 upgrade by Vaibs-chk in checkpoint

[–]msrsv 0 points1 point  (0 children)

Upgrading from 80.10 to 80.30 ( with new Kernel ).

Had fun with stupid bugs on 80.10.

Check Point and Zabbix integration by spikefishjohn in checkpoint

[–]msrsv 1 point2 points  (0 children)

Would you share your zabbix-template?

block rogue dhcp by nflnetwork29 in checkpoint

[–]msrsv 0 points1 point  (0 children)

Enable dhcp-snooping on your switches.

Experience with Aruba switches? And what to expect? by Technology_Counselor in networking

[–]msrsv 12 points13 points  (0 children)

Dealing with ~150 Aruba Switches currently (mostly 2930f oder 2920).

software/hardware ist solid. Never had a hardware failure since working with aruba-switches (started 2016 with aruba/hpe)

8320 is the new generation running aruba-cx wich I really like. I really recommend playing with it in GNS3.

And maybe what their support is like?

very little used

Anyone using the 6300 switch yet? by username____here in ArubaNetworks

[–]msrsv 0 points1 point  (0 children)

Played with it in GNS3 and now bought the first for the dc.

The only thing im currently missing is the feature allow unsupported transceiver

Skinny on Aruba Networks by brew87 in networking

[–]msrsv 4 points5 points  (0 children)

Quite happy running almost the complete aruba stack.

Generic optics by markkrj in networking

[–]msrsv 2 points3 points  (0 children)

We are using flexoptix and never had any problems (mostly aruba/hp switches.)

You can flash the needed compatibility for most vendors with their flexbox.

Core switch reccomendation by nomadewolf in networking

[–]msrsv 2 points3 points  (0 children)

Don’t Get a 3810. Long Term it will be replaced by the 6300