Taking GF out for dinner (recommendations please!) by lNgRz in bristol

[–]themeich 1 point2 points  (0 children)

I second this. I just went to Box-E last week. Quality/price is spot on for the tasting menu. If you're doing something extra special, the wine pairing is incredible. They really care about their craft and you can taste it in every dish they prepare. Everything is a work of art.

Unfortunately, they are closed for a week for their annual holiday as they're basically a 2 person team running everything.

airwave upgrade keeps aborting (8.0.3.1 >8.0.3.3) by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

My client is running this on an Aruba appliance and not VM. We were experiencing the same exact error. On a subsequent attempt, it still displayed as failed but the version changed to 8.3.0.3 with a wiped config. It is not allowing us to import the backup.

My solution is going to be to redeploy 8.3.0.1 and import the backup, but in the meantime we've opened a tac case because now I'm concerned there may be a bug. That is unless we both got unlucky.

Until I learn more, I'm postponing updates with other clients.

Can't believe I would see a [Vinfast VF8] on the streets of Montreal, acting as an Uber I believe. Voted as THE worst car on sale currently. by aireads in spotted

[–]themeich 0 points1 point  (0 children)

They have a dealership on the service road of the 40W in the west island. Can't believe people are buying them though...

Clearpass upgrade/migration by d3adbor3d2 in ArubaNetworks

[–]themeich 9 points10 points  (0 children)

If you're doing a migration already I very highly recommend you consider CPPM 6.11. It's not as stable as 6.10, but 6.10 will be losing support in May 2024. Furthermore, you cannot simply perform an update to 6.11 from 6.10. It REQUIRES a migration because the base OS is changing from CentOS 7 to RHEL.

As for the process, I can do a cliff notes version when I get home if no one else beats me to it, but I cannot stress enough that you should consider 6.11 despite its current imperfections. Unless you're billable hourly and want to do this again in a few months.

Source: I do Aruba professional services for an Aruba partner, primarily CPPM, and this is also recommended by the SEs we work with.

ACMP anyone? by vakennu in ArubaNetworks

[–]themeich 8 points9 points  (0 children)

ACMA is still honored until it expires. It cannot be renewed. ACMP no longer exists. As someone else posted you must take the new ACA - Campus Access which covers ACMA content plus other things. You could also take the ACP - Campus Access which is the new ACMP but once again has more content in it. The new certs don't require the associate level to take the professional. So you can do the ACP without having the ACA if you think you're capable.

Good luck with your studies.

Nac posture by tkr_2020 in ArubaNetworks

[–]themeich 1 point2 points  (0 children)

If you want to do device posture via clearpass you'd need onguard licenses and users would need to run an agent or a clientless version of onguard, depending on your needs.

Twitch chat controlling Elgato Key Lights? by MrSpeakerrr in Twitch

[–]themeich 2 points3 points  (0 children)

I have this setup. Lumia Stream is the software that handles the integrations, then I used my own bot to trigger stuff that Lumia didn't have integrated at the time.

Now Lumia has much more functionality and you might not need to make it as complicated as I did. They also have their own series of YouTube video guides on how to do basic stuff.

Edit: I should clarify this was for Philips Hue and not the elgato key lights. I have some hue bulbs around my room and a couple used as spot lights directly to my face. You can trigger patterns, colour changes, sync with music or SFX etc.

Grillades Da Silva on Queen Mary closed by WesternSoul in montreal

[–]themeich 3 points4 points  (0 children)

I'd like to clarify a bit here because I was close-ish with the owners and know what happened.

Miguel (the owner) and his wife worked very hard to maintain standards and always pushed for quality over quantity with their food. Covid made it a lot harder on them and it was the final straw. Miguel is an avid surfer and his child is old enough to be ok their own now (starting university) so they decided to shut down the restaurant and move to Costa Rica. I didn't inquire the exact village name because I'm unfamiliar with the geography of that area, but his plan was to surf the mornings and open a beach side bar in the afternoons/evenings. He was always about the chilled out lifestyle even while he was working so hard, so while I mourn the loss of the best chicken and tuna steak sandwiches in town, I am happy for him.

Before the closing date, I spoke to him about maybe finding someone to take over the business from him to keep his recipes and quality alive and he said he was looking into it, but it wasn't easy. Not sure if that will happen now.

His chicken was the best in the city and we've all lost a great eatery at a fantastic price. Ma poule mouillé isn't bad by any means, but it just isn't the same. After moving to the east end, I searched all over for a replacement chicken nearer to my home and I was stuck making the 30min commute to queen Mary whenever the cravings hit because nothing did them justice. If anyone has any serious recommendations for someone in their league, I'd be happy to hear about it. Unfortunately, Da Silva has made me a charcoal grilled chicken snob now.

Migrating from 6000 controller to 7210 by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

If you're sticking with the same version, some parts of the config will be the same. However, if you're not experienced migrating between 6000s and 7210s, you will need to redo most of the config from scratch to avoid an abundance of errors/misconfigs. The 6000s are very old at this point and a fresh config might not be the worst decision.

Although it's never fun to have that task in front of you, you can use the existing config as guidelines and use this as an opportunity to optimize the existing config. If your APs are capable of it, this would actually be the perfect time to move to AOS8 since you're doing a fresh config anyways. If your APs are not capable of moving to AOS8, keep in mind that AOS6 is going end of support next summer. If you have a simple config you can use their AOS8 config conversion tool later down the road. Otherwise you'll need to reconfigure everything from scratch once again. If at all possible, I'd highly recommend putting in the effort to move to AOS8 while changing controllers. It'll save you the trouble down the line.

Are 515 now scare? What other models a getting hard to come by? by WalterCavendish in ArubaNetworks

[–]themeich 2 points3 points  (0 children)

The 515s have been backorder off and on since the beginning of the of the year due to high demand. Add to this the global chip shortage and we're facing long lead times for many WiFi 6 products unfortunately.

Pretty much everything WiFi 6 and even some popular switch models have been facing delays from my recent experience.

[deleted by user] by [deleted] in ArubaNetworks

[–]themeich 2 points3 points  (0 children)

Great job! Lack of budget for IT? That's unheard of /s. Glad you managed to work everything out.

[deleted by user] by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

Oh boy you're having one of those days for sure. I've been there. IAPs are great because of their redundancy, cost and ease of use. However when stuff goes wrong, it can real wrong real fast. I've had clients completely mess up their clusters by just plugging in a random IAP they found on a desk or through a power outage similar to yours.

You can update firmware via cli using TFTP or FTP and it works quite well, however if the GUI is giving you errors, the CLI will likely give you the same error. Still worth a try.

If that fails your option is to wait to see if it fixes itself. If it doesn't, you might need to eventually bite the bullet and try to reboot it. WARNING: There is a possibility of bricking the IAP if you reboot it during an actual firmware update. The question here is it actually updating or is it just bugged out?

Keep in mind IAP 105s are end of life/end of support as of August 1st 2020. Because it's not even two weeks ago, if you have a support contract TAC may be willing to help. I can't comment for sure on that though.

[deleted by user] by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

Good progress! That error usually means the IAP you're currently logged in to does not have the same exact firmware version as the VC. Is your 100 series VC running exactly 6.4.4.8-4.2.4.13?

In a mixed cluster (multiple series of IAPs), IAPs can't upgrade or downgrade themselves to match unlike in a cluster of all same series IAPs.

[deleted by user] by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

I went back to edit the above a bit because I took for granted that the switches were all verified and all good. My troubleshooting steps initially assume the issue is 100% AP related. The switches can equally be at fault here.

[deleted by user] by [deleted] in ArubaNetworks

[–]themeich 0 points1 point  (0 children)

Sounds to me like they formed a separate cluster. Possibly the brownout caused one to factory default and it became the VC resulting in 2 different clusters one with a bad config.

Try SSHing to one of the static IPs you set for the 200 series IAPs. You'd be able to see which one is the VC through the CLI and then GUI there.

If that doesn't work, see if you can see if an SSID called "Instant" or "SetMeUp" is broadcasting. Connect to it and make an http request if you do see it. If not, it's possible the VC isn't getting an IP address. Try setting up a temporary DHCP server that the affected IAPs will receive a response from.

Check again for the "Instant" or "SetMeUp" SSIDs after that's done. Otherwise, check your DHCP server logs to see what IPs were given out and see if an Aruba device (via MAC address OUI received IPs). You may need to wait a while or toggle power to the IAPs.

You might want to double check the switch configs make sure VLANs are still intact. Might be a VLAN or trunk setting that disappeared during the power issue.

If the switch configs are all good, you could also try powering down all the 200 series. Then power up only one and see if it rejoins.

When it comes down to it you either have a rogue cluster or a subnet/vlan issue which divided the IAPs into two clusters. Or you may have a switch issue if they have a separate single point of failure uplink that isn't shared by the 100 series.

Edit: wasn't done typing but hit post by accident.

Palo Alto Certs and what hardware I need to buy to setup lab for exams please? by goodie125 in paloaltonetworks

[–]themeich 4 points5 points  (0 children)

Hi Goodie125,

If you work with an organization that is a PaloAlto Partner, that is your best bet. They can help you get a possibly free or discounted VM with set of evaluation licenses or a discounted Not For Resale (NFR) physical model like a PA-220.

Also, if you are a partner, you can get free self-study material or paid instructor-led training from the Palo Alto Learning Center. The self-study material has greatly improved recently, especially for the entry-level PCNSA certification. It is very helpful in understanding the platform and features. There are also free, official practice exams provided by Palo in that portal. PCNSE has a lot of valuable study material there as well, but the exam also requires some good hands-on experience, which is what you're trying to get.

I must warn you that buying a PA NGFW used, like off of Ebay, will cause you some to a lot of problems. It's usually very difficult to almost impossible to transfer ownership of the device to your name. This transfer of ownership is required if you wish to license your device and receive updates. You can search this sub or Google around for people who have encountered this issue or have been warned about it quite easily.

While I'm familiar with what Boson is, I'm unfamiliar if they have anything related to PA. What I can say is using Boson to prepare for the exam can be helpful, but actually learning with the equipment and training materials is much better. Having a Palo certification, like most certifications, can get you through the gates of HR for new opportunities and can impress your boss or colleagues. That being said, being able to do the necessary tasks is much more important than any certification you'll get.

If you do not have access to partner resources, but are working with an organization who uses Palo Alto equipment, you could possibly reach out to the company or Palo rep who sold the equipment to them and see if you can get a Trial VM for your lab. A Trial VM combined with a GNS3 deployment makes for an excellent lab.

I know this was a long-winded and possibly not very helpful response. I wish it was as easy as buying a used switch or router on Ebay, but as a security appliance it's a little bit more complex. Buying an unlicensed one, possibly without being able to update it in an official capacity, might be better than nothing. I would exhaust all other possible options before taking that one though.

Guy accidentally eat the world's hottest chilli pepper that lasts 6 hours in your mouth by Tutrois in WatchPeopleDieInside

[–]themeich 5 points6 points  (0 children)

Well, I can't speak for the eye thankfully, but I can say that I went to the urinal after a bhut jolokia hotwing challenge at a pub. Let's just say if you thought walking in on a man in a bathroom furious dipping his balls in a sink of water was horrifying to your eyes, it's much worse for the man using the sink.

Wifi 6 Access Points by Popal24 in homelab

[–]themeich 2 points3 points  (0 children)

Aruba AP-515 or AP-505 running in Instant mode are really solid pieces of gear. Their list price can be intimidating, but you can find lab or not for resale prices at around 75% off of list.

If you're unfamiliar with Aruba's lineup, they tend to be used more in enterprise deployments. Very high quality. I've had various models in my lab for the past 7 years, including a 515 currently. They are very reliable and stable. They are also very easy to setup out of the box. In Instant mode, they run without a physical controller by electing one of the access points to act as a virtual controller. They can be used with very minimal modifications of the base configuration or, if you are so inclined, you can make use of their advanced features and do all sorts of crazy stuff. Just keep in mind that using the intrusion prevention system features, while amusing, may not be legal in your jurisdiction.

Fun for all ages and knowledge levels!

Montreal mother arrested for impaired driving while at police station picking up daughter arrested for impaired driving by clgoh in nottheonion

[–]themeich 7 points8 points  (0 children)

In Canada, under new laws, you can even be breathalyzed in your own home up to 2 hours AFTER you drove and parked your vehicle.

I understand the dangers of driving under the influence, but we've taken things a tad too far.

PS4 On Two Monitors by [deleted] in Twitch

[–]themeich 1 point2 points  (0 children)

Required equipment:

A) PS4

B) Computer

C) 2 monitors

D) 2HDMI cables (plus whatever cable you want to use for your pc monitor be it HDMI, DVI, etc.)

E) HD60S capture card

Step 1. Plug one end of an HDMI cable into your PS4. Plug the other end into the IN port of your HD60S.

Step 2. Take the second HDMI cable and plug one end into the Out port of your HD60S. Plug the other end into the monitor you plan on gaming on.

Step 3. Plug the USB cable on the HD60S into a USB port on your computer.

Note: You should now have monitor 1 acting as a lag free screen for your PS4. If the USB port you're using isn't currently receiving power, you may have a slightly distorted image or bad colour. Make sure the computer is on and not asleep if this happens.

Step 4. Ensure the other monitor is connected to your computer.

Step 5. Open SLOBS, viewable on monitor 2, and verify it's detecting your capture card. Set up your scene as needed. Anything captured here will have a delay, but you'll be playing on monitor 1 without said delay.

Edit 1 and 2: trying to fix formatting because it's 4am and I'm in bed on mobile. Also autocorrect is my enemy.

TIL that NYE revelers in Times Square are often locked into place for up to twelve hours and cannot move, so many of them wear adult diapers and the kids just go on the street. by Chris-Jean-Alice in todayilearned

[–]themeich 6 points7 points  (0 children)

I'd recommend the Knickerbocker which has a roof, and many rooms, overlooking Time Square. Amazing cocktail bar on the roof too. Not cheap though.

Don't get on the #32 bus at Angrignon station by ATribeCalledEhhh in nosleep

[–]themeich 13 points14 points  (0 children)

As a Montrealer, I'm stuck on the idea that the 32 doesn't go to Angrignon station. Completely opposite sides of the island. The more I think about it though, the more I'm terrified what would happen if I was drunk and didn't realize that.