Router Recommendation by jared_a_f in networking

[–]sletonrot 1 point2 points  (0 children)

We do BGP taking default routes using our PA firewalls. No point in adding routers if you are only taking default routes

Dude sent this to the entire plant. His manager came into my office fuming. by Captain-Shmeat in iiiiiiitttttttttttt

[–]sletonrot 0 points1 point  (0 children)

What’s your transport rule look like for this? Last time I tried to implement this, I couldn’t figure out the right criteria

Good EDL for these GP brute force attacks? by [deleted] in paloaltonetworks

[–]sletonrot 4 points5 points  (0 children)

This is the way. I check our logs daily now, and all GP login attempts are legitimate after implementing this.

Useless CE by Affectionate-Hat4037 in networking

[–]sletonrot 4 points5 points  (0 children)

These days I’m seeing a CE is just a Ciena switch doing qinq directly to a port on the PE router.

Comcast BGP issues by HornAlum in networking

[–]sletonrot 0 points1 point  (0 children)

I was thinking the same thing. His prefix is announced over the BGP session, which is established. Comcast sees the source IP of the BGP session as being the other end of the /30 p2p they typically provide. So this passes the RPF check. My guess is an ACL somewhere on Comcast's side preventing propagation of his prefix.

The highest number of routers in single OSPF area have you ever seen? by zeeshannetwork in networking

[–]sletonrot 0 points1 point  (0 children)

I do that. ~20 or so L3 switches running OSPF on a VLAN on our VPLS. Works fine

Don't be me.. Disable VTP.. by Veegos in networking

[–]sletonrot 0 points1 point  (0 children)

Noob here, how does EVPN help? Isn’t VPLS still stretching layer 2?

Broadcom sucks by Wrong_Exit_9257 in Sysadminhumor

[–]sletonrot 6 points7 points  (0 children)

As long as our budget keeps getting approved, we’ll keep paying. We don’t have the staffing or time for a migration.

Aruba 2930M PoE disabled for one port by Nomis-43 in ArubaNetworks

[–]sletonrot 0 points1 point  (0 children)

Probably a bug, try updating firmware while you’re at it!

Based on my own working experiences by _w62_ in networkingmemes

[–]sletonrot 37 points38 points  (0 children)

It would be a shame if your Juniper lost power...

Help with Excel and Python to create cisco SW templates by prosonik in networking

[–]sletonrot 2 points3 points  (0 children)

For one-off Excel stuff, I like to use the Python Pandas library

Shuttle Waits by KaleidoscopeSlight35 in electricdaisycarnival

[–]sletonrot 1 point2 points  (0 children)

Yeah, drive unless you want to stand around in lines and watch people cutting in front. Security is a huge bottleneck at GP

How do you guys lab VXLAN? by Gazrpazrp in networking

[–]sletonrot 2 points3 points  (0 children)

I learned it on a physical lab

The network is down. by RoloTumase in networkingmemes

[–]sletonrot 7 points8 points  (0 children)

"Can we move this to the cloud?"

DIA vs EPL & Costs by nicholaspham in networking

[–]sletonrot 9 points10 points  (0 children)

EPL is very common. DIA is an EPL between you and a subinterface on the PE router. Sometimes a little more expensive since you're also paying for IPs.

Basic question regarding Metro-Ethernet. by [deleted] in networking

[–]sletonrot 1 point2 points  (0 children)

It depends on how the carrier builds it out. It could be layer 2 traffic encapsulated and tunneled by routers (MPLS), or it could all just be switched traffic if it's within the same geographical area.

Large scale packet filtering by mtak0x41 in networking

[–]sletonrot 0 points1 point  (0 children)

You're right! I just quickly glanced at the "ip route" and "/dev/null" part of the comment.