• Breaking News

    [Android][timeline][#f39c12]

    Saturday, February 27, 2021

    Cheapest 10G router? Networking

    Cheapest 10G router? Networking


    Cheapest 10G router?

    Posted: 27 Feb 2021 06:42 AM PST

    We're lucky that we colo in an ISP that runs our local IX, and ports into that are free at any speed (yay!).

    This org has traditionally used UBNT EdgeRouters as our needs were very simple, we've since dabbled into Mikrotik simply because we needed some 10G ports and the price was cheap enough we figured "lets try it". So far it's been halfway decent but the lack of IPv6 support and some other routing oddities are driving me to look elsewhere.

    We've got a 1G DIA link, a 10G IX link, both receiving on net + defaults (which means about 500 routes on the DIA side and about 90k on the IX) and two 10G ports in a LAG back to the switches.

    I'm hoping to find something a little more enterprise than the 'Tik without a 30k pricetag.

    TNSR on Netgate looks promising but the forums show some BGP growing pains, this may be very interesting in an year or two but I don't think now.

    Any ideas here?

    submitted by /u/sryan2k1
    [link] [comments]

    Cisco Identity Based Firewall Access - Issues

    Posted: 27 Feb 2021 10:28 AM PST

    Hello,

    I've recently setup identity based access on our Cisco firewalls using Cisco ISE.

    I have five locations that this is setup for. Rules are in place for wired and wireless networks that require identity to work.

    My problem is that when someone swaps from either wired or wireless, they get a new IP address on a different subnet and thus the identity rules no longer work.

    I'm really struggling to find a solution to this. Is there anyway that I can resolve this without asking people to lock and unlock their machine? I'm not sure if there's any AnyConnect modules available that can assist with this?

    TIA.

    submitted by /u/ArubaaAribaa
    [link] [comments]

    Where to start with OSPF implementation??

    Posted: 27 Feb 2021 12:13 PM PST

    To make a complex issue as simple as I can... I work in an environment that utilizes static routing almost exclusively. I would like to implement OSPF and eventually redistribute it into BGP for all of our WAN connections.

    The problem I am running into is that I don't know where to start when it comes to designing areas. I know areas need to reach back to area 0, but our network is a mess topology-wise. I would like to make the OSPF configurations as simple as I can for the sake of newer technicians in my work center. However, I have no idea how I will be able to have all areas reach back to area 0 without the use of virtual links.

    If anyone has advice on transitioning a large network utilizing static routing over to OSPF I would greatly appreciate it.

    submitted by /u/sincerelylondo
    [link] [comments]

    How do/ do you guys monitor the built in shaper usage in ISR and ASR routers?

    Posted: 27 Feb 2021 03:38 AM PST

    During a monitoring tune up session it occurred to me that this might be interesting to monitor rather than have to calculate it from the sum of all the interfaces. Is that a thing and does anyone do it?

    Back in the day you'd monitor your router capacity by keeping tabs on CPU and memory, but nowdays you have an ASR that's hardware is capable of 20Gbps but you only have the 2.5Gbps license so you can run out of throughput long before the CPU load ramps up. I can see how being able to plot a trend and see when you might need to look at upgrading the license might be useful.

    Interested to hear your thoughts.

    submitted by /u/Skilldibop
    [link] [comments]

    Wireless Coverage in Warehouse

    Posted: 27 Feb 2021 08:38 AM PST

    For our wireless experts.

    I am relocating my business to a new warehouse (still being build). One of the needs I have is providing wireless coverage (prefer a mesh or seamless handoff) for our warehouse staff that use tablets as part of their work. The ceiling is 22' and the dimensions are 31' x 67'. I am looking for an AP that most likely would need to be mounted vertically. Any suggestions/ideas for equipment providers that have a good quality product and can survive in a open warehouse environment?

    submitted by /u/talino2321
    [link] [comments]

    Router/NAT on public or private (or both) network

    Posted: 27 Feb 2021 12:04 PM PST

    I'm taking a practice exam for AWS, though their VPC technology may be different than Cisco there were 2 options. One to place the NAT on the private network and one to place the NAT on the public network. Shouldn't it be on both or in the DMZ? I answered private and the correct answer was public. Then I thought the same question for a router as an Internet Gateway. Any help would be appreciated, Thanks!

    submitted by /u/Reasonable-Swimmer-5
    [link] [comments]

    Auto Kicking off AP if <30mbps. 15+ access points

    Posted: 27 Feb 2021 10:51 AM PST

    Hey guys, I just installed 15 access points across a 50k sqft building in NYC to help a friend.. It seems like while walking throughout the building it hangs on to the original AP and it goes from 300mbps to 10 mbps. Is there a way to automatically kick users off previous access points and get them on the closest access point to them? Let's just say if you're not getting atleast 30mbps then it'll boot you off the AP. The access points we are using is the trendnet 821dap. I'm an amateur doing this so any suggestions would be greatly appreciated

    submitted by /u/Jon2249
    [link] [comments]

    S2750-28TP-PWR-EI-AC Firmware issue

    Posted: 27 Feb 2021 12:04 PM PST

    Hi all, have an old S2750-28TP-PWR-EI-AC which had the flash system formatted (so missing the startup file). I created an account on support.huawei.com, registered the device, and downloaded S2750EI-V200R011C10SPC600.zip which is the latest firmware for the S2750-28TP-PWR-EI-AC. As the switch has no firmware I had to load this over serial, which even over 115200 baud took 4 and a half hours to transfer the 27MB firmware file (S2750EI-V200R011C10SPC600.cc). But once I try to change the startup file to the new filename, I get this:

    ``` Flash startup file (can not be cleared) current: s2750ei-v200r007c00spc500.cc new : s2750ei-v200r011c10spc600.cc

    Error: The file is not a valid startup file. ```

    Any ideas? There were no errors during transfer, really don't want to wait another 4 hours to try the same file again. There is an FTP client, but this is at a remote site and I'm removing into an old MacBook Pro with a USB<>Serial adapter to do this. No way I can get a local FTP running, the switch can't use a gateway so has to be on the local network :(

    submitted by /u/melainotype
    [link] [comments]

    UDP Packet Corruption

    Posted: 26 Feb 2021 05:50 PM PST

    Hey ya'll, i made a few posts a few months ago asking how to do reliable high rate UDP transmission.

    I'm able to now receive data at a high speed from SFP+ fiber connected to another device. Only thing is, i'm getting 99.9% accurate data, and it always seems to corrupt in the same area, usually towards the end of the file transmission.

    The device sends me packets, and i dump the entire packet minus the initial 4 byte header into a Memory Mapped File on Windows. I keep track of position for file write and this for the most part is able to assemble the file correctly except towards the end.

    I don't get any packet loss on these full dumps, i discard the entire MMF if i get anything less or more than the desired amount of packets. But when i do get the full transmission, towards the end of the file i get random bytes being flipped to 0's, never the case for them to be flipped to 1's. I did a HEX compare and it's strangely always in the same area of the dump.

    I don't think there's anything wrong with my algo to store the data since there'd be rampant corruption everywhere and i treat the data the same whether it's at the beginning of the transmission or the end.

    My system, Windows 10

    Xeon Silvers @ 2.2Ghz

    Intel X710 10G adapter

    Jumbo frames is set, datagram size is 8400

    Method used to catch the data : Registered IO with a 2GB ring buffer, and i dedicate a single thread to polling the receive constantly.

    submitted by /u/greengaragenyc
    [link] [comments]

    EOL Enterprise Firewall Questions and Recommendations

    Posted: 27 Feb 2021 01:56 AM PST

    Hello. We have a Cyberoam CR 500iNG-XP in our office but it is due for EOL next month so in my understanding the support and the subscription based features will also end. So my first question is, with appliances like this, is there anything else we can do to this after retiring it? Can we repurpose it to a let's say a linux server or are these things locked? Or is it wiser to look for exchange programs with suppliers? Pardon me if this is a dumb question. Second, in buying NGFW's, how many years normally is the life of these appliances before it goes EOL? Lastly, I've found these recommendations to replace the said model in other forums, mentioning Palo Alto PA-3000, Sonicwall NSA4600, and Fortinet E or F series. I'm still checking them out. Any comments on these models? Thanks!

    submitted by /u/d4rkn123
    [link] [comments]

    No comments:

    Post a Comment

    Fashion

    Beauty

    Travel