Re: Aftermarket switches that were manufactured in any sort of quantity?

2022-06-09 Thread Garrett Skjelstad via NANOG
This is the way. On Thu, Jun 9, 2022 at 2:38 PM Dave Taht wrote: > I am mostly searching for switches that can have custom firmware on > them. The very long list of those > compatible with SONIC is here: > > https://github.com/Azure/sonic-buildimage/tree/master/device >

Re: Securing Greenfield Service Provider Clients

2020-10-11 Thread Garrett Skjelstad
If this is really greenfield, consider taking a tenant approach to your egress traffic handling, you mentioned a "black box with subscription", then consider making that blackbox/traffic path be only available to whatever tenant subscribes to the service, and if they want the SSL/MITM decryption, t

Re: Layer 3 Switches

2020-06-29 Thread Garrett Skjelstad
Cumulus (now NVIDIA) has just entered the access/edge market, so if you're running a 'development-enabled' team, it's a very attractive offering. They bring a pretty solid software solution, that can run on their own CX-1048, or on a variety of manufacturers switches (including Dell). self discla

Re: IGP protocol

2018-11-12 Thread Garrett Skjelstad
To be fair, Microsoft only just recently added BGP support to RRAS in 2012... On Mon, Nov 12, 2018, 21:50 Scott Weeks > > --- valdis.kletni...@vt.edu wrote: > On Mon, 12 Nov 2018 20:21:26 +, "Naslund, Steve" > said: > > > 2. Most corporate networks will be running OSPF > and/or EIGRP as an

Re: Service provider story about tracking down TCP RSTs

2018-09-01 Thread Garrett Skjelstad
I would love this as a blog post to link folks that are not nanog members. -Garrett On Sat, Sep 1, 2018, 11:52 wrote: > I want to share a little bit of our journey in tracking down the TCP RSTs > that impacted some of our customers for almost ten weeks. > > > > Almost immediately after we turne

Re: tcp md5 bgp attacks?

2018-08-20 Thread Garrett Skjelstad
Nah, they aren't asking about the other things, and only the order of operations which vary per vendor will matter. If I am reading correctly, they aren't asking about only successful MD5 attacks, but MD5 attacks in general. All the rest of your listed security configurations would be 'extra' rou

Re: telnet into a netgear switch?

2013-11-25 Thread Garrett Skjelstad
That netgear link you submitted is primarily for routers, not switches. Sent from my (old) iPhone5 On Nov 24, 2013, at 18:47, David Birdsong wrote: > Hey all, last night while at the datacenter I was in a pinch to extend a > rack's LAN. I compromised and ran out to the local Fry's to buy whatev

Re: nanog.org website - restored

2013-10-07 Thread Garrett Skjelstad
Perhaps you'd like to donate geebees to a nonprofit? Sent from my (old) iPhone5 On Oct 7, 2013, at 16:54, Michael Thomas wrote: > On 10/7/13 4:24 PM, Andrew Koch wrote: >> Working with onsite personel to upgrade the server with additional >> memory failed during the first announced maintenance.

Re: Cisco DMVPN Configuration Question

2013-08-16 Thread Garrett Skjelstad
No way around this with DMVPN. Sent from my iPhone On Aug 16, 2013, at 9:05, Ray Soucy wrote: > Don't usually poke NANOG for a second pair of eyes, but got hit with an > urgent need to get connectivity up on a small budget. > > I've run into a situation where I require multiple DMVPN spokes to

Network mapping software

2013-03-12 Thread Garrett Skjelstad
I have seen NetBrain mentioned a few times here on this mailing list. Does anyone have any experience with it, and could they tell me some of the pros & cons that they had of their installations? Any limitations or pain points? Feel free to hit me off list. -Garrett

Re: Net::Perl::SSH for MRLG

2012-06-26 Thread Garrett Skjelstad
Net::Appliance::Session has successfully worked for me. On Tue, Jun 26, 2012 at 6:48 AM, Peter Ehiwe wrote: > Hello All , > > Has anyone successfully implemented Net::perl::ssh with mrlg . If yes > please unicast me. > > The Perl module works fine but mrlg dosent seem to be able to connect to >

Re: Simple Peering Agreement

2012-06-15 Thread Garrett Skjelstad
Also: s/doc/PDF/g Sent from my iPhone On Jun 15, 2012, at 10:37, Nick Hilliard wrote: > On 15/06/2012 18:24, Justin Wilson wrote: >> Does anyone have a simple (1-2 page) peering agreement in plain English they >> would care to share offlist? > > http://www.google.com/search?q=peering%20agreeme

Re: CBT Nuggets streaming account

2012-06-11 Thread Garrett Skjelstad
Many CCIE training providers also offer alternative workbooks for CCIE Routing and Switching based solely on GNS3. If the argument is there is no 15.x, then I would argue that the *current* exams offer minimal differences between releases at this time. (IOS-wise) I can understand the switch asp

Re: CBT Nuggets streaming account

2012-06-11 Thread Garrett Skjelstad
Don't spam the list looking for black market copies of training material. Use GNS3 and design your own labs and google the test topics. Plzkthx. Sent from my iPhone On Jun 11, 2012, at 12:30, Ryan Burtch wrote: > Could someone contact me off list if you have a CBT Nuggets streaming > account a

Re: WW: Colo Vending Machine

2012-02-17 Thread Garrett Skjelstad
You must have a pre-dotcom bubble datacenter... Sent from my iPhone On Feb 17, 2012, at 10:52, Leigh Porter wrote: > > On 17 Feb 2012, at 18:37, "Jay Ashworth" wrote: > >> Please post your top 3 favorite components/parts you'd like to see in a >> vending machine at your colo; please be as sp

Re: Point to MultiPoint VPN w/qos

2011-09-06 Thread Garrett Skjelstad
Yes, but look in 891s at the remotes, the 19xx are too expensive for only 4 devices Just my 2c Sent from my iPhone On Sep 6, 2011, at 10:22, "Ryan Finnesey" wrote: > DMVPN would only work with 100% cisco hardware right? > > -Original Message- > From: Brant I. Stevens [mailto:bra

Re: network issue help

2011-08-10 Thread Garrett Skjelstad
Yea, it's T2SP or Time to Switch Professions... Sent from my iPhone On Aug 10, 2011, at 16:33, Stefan Fouant wrote: > Is there an acronym for RTFM when there are a volume of manuals that need to > be read? > > Stefan Fouant > JNCIE-M, JNCIE-ER, JNCIE-SEC, JNCI > Technical Trainer, Juniper Net

Re: Nortel, in bankruptcy, sells IPv4 address block for $7.5 million

2011-03-24 Thread Garrett Skjelstad
yay cloud. On Thu, Mar 24, 2011 at 6:32 AM, Bret Clark wrote: > Why would Microsoft need this many IP's? I could see the benefiting service > providers much more. > >

Re: Todd Underwood was a little late

2010-06-16 Thread Garrett Skjelstad
RFC 2827 anyone? On Wed, Jun 16, 2010 at 9:38 PM, Roy wrote: > On 6/16/2010 7:43 PM, Jon Lewis wrote: > >> On Thu, 17 Jun 2010, Mark Andrews wrote: >> >> Why was this traffic hitting your DNS server in the first place? It >>> should >>> have been rejected by the ingress filters preventing spoo