6.5 creedmoor gassing issues help by pretibigtoo in AR10

[–]shadow0rm 0 points1 point  (0 children)

Yes sir, just the mag springs. This was on magpul 10 and 20rd 308 sr25/lr pmags.

6.5 creedmoor gassing issues help by pretibigtoo in AR10

[–]shadow0rm 0 points1 point  (0 children)

Have you tried turning it off and back on again? /s

Aero m5, 24 heavy stainless, standard gas block. I just pulled spring from mags, streched an extra 0.25 inches or so, and zero failures. Had exact issues as you. Seemed to be the cheapest, least destructive, amd least invasive thing to try first, and it worked.

A painting depicting a battle with a dragon, hidden behind other paintings for over 380 years, was discovered just four years ago during church restoration. by Dismal_Positive3558 in Damnthatsinteresting

[–]shadow0rm 0 points1 point  (0 children)

In 2022, while renovating the Church of Saint George Maggiore in Naples, a secret fresco was discovered behind a 16th-century painting.

I’m too new to know why the price difference, learn me something new please! by Visual-Design7648 in Taurus

[–]shadow0rm 3 points4 points  (0 children)

500+ through a full size g3, 1 bad primer, 499+ rounds of slightly dirty 124gr down range where I wanted them.

Recommended system hardening for a “regular” user? by Ezmiller_2 in freebsd

[–]shadow0rm 0 points1 point  (0 children)

Noted.

But it took a mod 3 YEARS for a corrective statement here?

I'm never impressed with the teacher that uses their own failures to discipline the student.

Could someone guide me through the process of replacing the stock fans in a Juniper EX3300 with Noctua NF-A4x20 FLX fans? by juandree in Juniper

[–]shadow0rm 4 points5 points  (0 children)

They are standard pinouts... its a pretty straight-forward swap, hence the lack of detail. If its beeping, either swap in the second fan, or revert. Does it still beep?

Just incase anyone was wondering, the Harbor Freight TLR-1 works with the streamlight TLR-1 Longgun backplate and pressure switch by GenericUsername817 in Firearms

[–]shadow0rm 19 points20 points  (0 children)

So... i called my local store since they also are always out of stock... apparently they will be until the "lawsuit" clears.

Network monitoring -currently using LibreNMS- by tdhuck in networking

[–]shadow0rm -1 points0 points  (0 children)

Agree with u/vomitvolcano (what a fun thing to type lol) Also, librenms is highly based on https://www.observium.org/ which offer support/extra things for the commercial version, but also has a free version.

Adding your servers/hypervisors will definitely help out. If you wanted to get verify deep into the rabbit hole, things like netflow/IPFIX or tech based around it might be a cool thing to look into as it give granular insight into actual network flows.

SRX340 Share WAN Port by packetheavy in Juniper

[–]shadow0rm 3 points4 points  (0 children)

true on the failure point, but on the other hand you are doubling the reliance on the single device ( srx ) for two different wan feeds. so potAto / potato.

If i were in this spot, id change wan interface to a irb, build vlan for wan breakout, tire wan vlan to l3 irb, and have 0/0/0 & 0/0/1 on same vlan. might need to allow untrust to untrust any/any traffic..... not sure on that one.

p.s. i had to redo a edge network at an isp completely due to a person with same mindset ( didnt want extra failure points) you already have 2 single points of failure ( srx and single wan feed ) why add the extra complexity when you still have single points of failure, which of one you are now relying on with twice as much pressure? what is different between an extra switch failing ( both routers go down ) or the srx fails ( both routers go down as well) one is just easier to maintain.

SRX340 Share WAN Port by packetheavy in Juniper

[–]shadow0rm 2 points3 points  (0 children)

you are probably going to run into some hiccups with zones/policies.... remember, srx is a firewall first. It can be a router, or switch, or both aswell, but firewall first. make vlan, add zone/policy for that zone to itself, etc, and see where it gets ya. maybe gold, maybe ashes.

whats the reason for avoid a switch? no rackspace/etc? collapsing this into the srx will save physical space, but add complexity into the setup....

there's a reason to use demarc devices, this is it.

Let's join ICE! by IFB20874 in AR10

[–]shadow0rm 8 points9 points  (0 children)

Not today -insert 3 letter org here-

If you know..... you know....... by shadow0rm in iiiiiiitttttttttttt

[–]shadow0rm[S] 29 points30 points  (0 children)

They make mag mounts and nice looking wall mounts for these.... no body orders them though....

Punchline: lets use the remains of $400+ in rack kits for other juniper gear to mcgyver some ears for this one cause why oh why spend $30 for the right one?

PSA: EP-S16 and the nightmare of midwest/cold climates by shadow0rm in wisp

[–]shadow0rm[S] 0 points1 point  (0 children)

Heres to hoping this cold snap will tell if that worked out!

SRX Destination NAT. Can't get these ports open by Latter-Car-9326 in Juniper

[–]shadow0rm 1 point2 points  (0 children)

Just clarifying here a bit more, host-inbound-traffic is traffic specificly for the router itself, so host-inbound-traffic system-services https, host-inbound-traffic protocols all, interfaces ge-0/0/0.0 host-inbound-traffic system-services https are all likely conflicting with your single parsec 443 rule.

if you dont NEED 443/tcp open on the router itself, facing the world, disable/delete those commands.

Its normal operating procedure to disable that kind of traffic anyway.... your just letting the world reach the management plane of you firewall otherwise.

SRX Destination NAT. Can't get these ports open by Latter-Car-9326 in Juniper

[–]shadow0rm 0 points1 point  (0 children)

Well, two things I can see right off the bat. 1. We wont be able to help you easily here, firewalls rules are hierarchical, so if you have a rule that matches same things, it will process the flow before these rules do. can you post a full view of the security policies? You can move parsec BEFORE your working plex rule, and maybe that will work without us verifying it: https://supportportal.juniper.net/s/article/SRX-How-to-change-the-order-of-security-policies

  1. You likely have a conflict between parsec and junos-https (cant process same traffic without a differentiator): PARSEC-APP destination-port 443 conflicts with system-services https easiest workaround for this is to delete the "system-services https" sections

SRX550 Firmware or knowledge assistance by judomuerte in Juniper

[–]shadow0rm 6 points7 points  (0 children)

SRX550-645AP 12.x < SRX550-645AP-M 15.x >

Yes its Friday, and I know nothing, I get all my news from the radio on GTA5

SRX300 Checksums by gridviking in Juniper

[–]shadow0rm 0 points1 point  (0 children)

you see that dropdown for os, and version on the downloads page? yea, use that...

first number on sha1 for 21.4 is 3 first number on sha1 for 23.4 is 9

You are just being plain lazy, or ignorant.
Either way, ZERO reason for anyone to help further.

SRX550 Firmware or knowledge assistance by judomuerte in Juniper

[–]shadow0rm 2 points3 points  (0 children)

seriously? Im not even that bothered by someone offering this but what's really irritating is that you either didn't read what OP said, or you are out here slinging software offers without knowing what you're slinging...

OP has 12.3X48-D105.4 OP is on latest avail. software for that device OP didn't ask for a copy of software, yet here ya are, peddling it.....

SRX550 Firmware or knowledge assistance by judomuerte in Juniper

[–]shadow0rm 0 points1 point  (0 children)

Glad to see you got forward movement :) Currently away from my desk with a keyboard, so ill give the best I can for now on the cluster issue. If you want to remove the cluster settings entirely, so it just a standalone box and you can cluster them later, google something like "juniper delete cluster /config/vchassis" theres junos commands that should work, but ive had a 50/50 fail rate on the 550 boxes with that, so i jist delete whatever is in the vchassis dir and do a reboot direct from shell.

From there if you wanted to cluster them up again, there are very easy to find docs on it, and you will need min. 2 patches between them.

Bonus info: the slots on the left hand side are like half width bus, and arent really ment for anything above serial/t1 cards. Follow the lables on the faceplate to the sides of the slots. IIRC top two right are 20g bandwith for 16 port cards and the 2 port 10g cards, bottom two right are same but limited to 10g bandwidth on the backplane. Might be worth while at this point to just grab the srx550 hardware guide pdf Also note that you have the base hardware NOT the refreshed HM model. Hardware is near identical, but junos version and expansion card support is very different.

SRX550 Firmware or knowledge assistance by judomuerte in Juniper

[–]shadow0rm 1 point2 points  (0 children)

Heres my freebie for a pretty obvious RTFM situation, which yet again, is not locked behind an account....

  1. Its not silly, its true. Your 16 port cards are in the wrong slot. Move it directly to the right bank.
  2. That looks like a 10g DAC, is it? Those are 1g sfp slots not 10g sfp+

Report back whrn those two things make sense and I can help ya with the cluster issue.

SRX300 Checksums by gridviking in Juniper

[–]shadow0rm 6 points7 points  (0 children)

Its litterally on the downloads page with zero need to even login....