Monday, November 5, 2018

Cisco CWS

I have asked this over at r/cisco and had no joy so thought I would ask here as there maybe someone who uses CWS.

Is anyone else using CWS and is good at using the reports?

I have ran a report and found a user that has a lot of blocks for pornography. This user has a written warning for looking at porn at work on a work device.

I see blocks against his domain user name but also blocks at separate times for his machine name, what does this mean? Is his machine doing something when he isn't logged in?

I need to be 100% sure that this user is still trying to access porn and it isn't something on his machine trying connections in the background.



(x-post from /r/Cisco) Cisco ASA code train 9.10 released

https://ift.tt/2D767Or

Firepower Flexconfig removing global_policy

A while ago I deployed a flexconfig policy that failed. This wiped out my EIGRP config, and also wiped out my default inspection policy (the MPF stuff). I eventually got my EIGRP config back on, but my default inspection was still lost on the device. Today I deployed another flexconfig change, which basically enabled a few bits of inspection on the box (h323 specifically), and I had a problem with the config not being 100% correct. This then put ALL the default inspection policy back onto the firewall. Firepower has pissed me off so much recently with this shit, and I'm looking to see if someone knows why a failed deployment of a flexconfig either removes all of my global policy, or adds all of the global policy in (neither of which I have put in the flexconfig).



Ubuntu VM recognizes gigabit ethernet but main windows 10 install doesnt

Hi all sorry if this is a somewhat stupid question but I noticed the other day that my ethernet adapter settings showed my connection was only 100Mbps, and thought it was strange. I coincidentally was poking around my Ubuntu VM and opened up the network settings and it seemed to still show I had gigabit ethernet. my ethernet controller is an intel i219-V if that helps whatsoever.



App on iOS and Android

Hello Collective,
I need an app to monitor a) the exact data throughput of a certain app as well as the connection details (WiFi and Cell) to the next AP based on GPS. I want to export this data and - here comes the catch - and want to compare the collected data over say 10 devices
Has anyone every built something like this or knows where to get it?



I've never seen a subnet swiped out like this, the description is "DDOSING NEWORK" guess what it looks like they are doing...



Sunday, November 4, 2018

Ethernet Couplers

Do Ethernet couplers affect bandwidth? What’s the maximum number of couplers should you use?



RIP Issues - Cisco

Hey Guys,

I'm having an issue with RIP not "working" with all of the routes. This is in a DMVPN network and I have disabled Split Horizon on the hub router. We are unable to configure OSPF/EIGRP due to not all of our routers supporting them (We have 860's etc).

R2 is unable to see the 192.168.1.0 network

Configs are

R1

router rip

version 2

network 10.0.0.0

network 172.16.0.0

network 192.168.1.0

no auto-summary

R2

router rip

version 2

no validate-update-source

network 172.16.0.0

network 192.168.3.0

distance 121 192.168.1.252 0.0.0.0

no auto-summary

When I run a debug ip rip - I can see the network (192.168.1.0/24) that I want to get advertised however it never shows up in the rip database

Debug - https://imgur.com/a/LoMm90G

RIP Database - https://imgur.com/a/3QYG8O4

Configs

R1 - https://pastebin.com/JqSRQsph

R2 - https://pastebin.com/1Vs607n7



Help with networking project

Basically I have a final network project for my class and me including the people in my group are supposed to build a network with 500 users with an expansion of 50 user growth in 10 years. There are 25 different departments/applications per site and there are a total of 11 locations one of them is including HQ. So far per site I have 24 regular switches and 4 multilayer switches set up as a distribution and core layer. I have a total of 6 vlans stating with networks 10.10.10.0. I'm not sure if for the 2 DHCP servers that I have if I need a different Ip schematic than the vlans or the same.

Our project needs to be reliable, have scalability, only internal traffic is allowed on all the locations except HQ's, doctors need wireless networks in the patients rooms, doctors need to exchange information between different locations. Most of my work is being done in packet tracer so I'm limited on what specific switches and things I can do. Because this is a network design for a hospital I know there needs to be security protocols in place, right now I'm just lost and kinda need some sort of guidance.

Some of my questions:

What type of security protocols should I apply to my network?

Do I need a different Ip address schematic for DHCP and vlans?

Should I implement FTP? for ACL?

Should I use EIGRP or OSPF?



How to "upgrade" DMVPN

Hey, Reddit!

For my final year of school project i chose to write about DMVPN, especially in connecting smaller branch networks.

My question is: This technology is kind of old. Can you suggest me any ways of making it more viable and/or more complex ( like integrating something ) ?

Thanks!

P.s: I am sorry if this post isnt for here or doesnt meet the guidelines. I will delete it ASAP if thats the case.