Monday, November 5, 2018

What would you classify as “switching and routing apparatus”? This question relates to the hts classification for importing networking equipment.

US Customs recently split HTS classification number 8517.62.0050. This classification was used for importing a variety of networking hardware (switches, routers, transceivers, Bluetooth devices, hubs, repeaters, WAPs, asset trackers, NICs, etc).

The new codes are 8517.62.0020 for “switching and routing apparatus”

8517.62.0090 for “other” (same description as the old .0059)

Customs is god when it comes to defining what “switching and routing apparatus” means.

What I am trying to do is define switching and routing.

In the broadest sense, customs might include hubs, repeaters/extenders, hotspots, APs in .0020

In the narrowest sense, customs might interpret “switching and routing apparatus” to just mean switches and routers.

How about this: Switching and routing could mean bridging and routing.

Switches are multi port bridges.

WAPs are technically Bridges.

So can WAPs be considered “switching and routing” under any logical interpretation?

If so, how about hotspots?

If not, explain.

Feel free to use OSI language, and Mac/ip address table language or any other technical language.

Thanks!



ipfix/sFlow data ITaaS

Hello guys, I'm looking for a company preferably in Europe but America/Asia is not excluded that can do $SUBJ - what I mean in more detail is that:

I have/manage smaller ISP with various upstream/peerings and I'd like to send sFlow/IPFIX/Netflow data from our border routers, shared customer routers and some customer routers directly to collector that is run by 3rd party, besides this I'd expect some data retention for a period of time, ability to receive periodical reports (defined and based only on available fields), ability to login to the tool to search flows/interresting traffic and also possibly some security/DDoS awarenes/alerting. Flows will be of course encrypted for passing internet.

What I don't want is to buy on my own tool/application and I don't want to manage either dedicated HW or cloud infrastructure.. All I want is to send the data away and be able to store there, perform analytics and have reports..

I've seen that companies like Flowmon, Gigamon, Plixer, Talaia offer their cloud solutions but I don't want to run/purchase them on my own and handle admin/tech areas..

Any ideas/company hints or correction of my mind would be appreciated..

Thanks



Setting up a hotspot dongle inside a fleet of vehicles with same SSID

Hey, I was wondering if I could please get some help. We have a fleet of vehicles and have multiple devices in them that need data. Instead of having a data plan for each device, we are thinking about doing a WiFi Hotspot dongle. The reason for the dongle is because the dashcam we are using comes with one, that has wifi built in and is required by the camera. Now what we want to do is setup the hotspot with a hidden SSID so that the tablet in the vehicle can connect to it via manually entering the SSID. My question is, can all the vehicles have the same SSID and password as sometimes the tablets do move vehicles?

Thanks in advance for any help.



Resources on migration strategies

Hi all. I got put into some network design and evolution projects, which is pretty new to me.

Apart from knowing protocols and terminals and stuff, a big part of this work seems to revolve around migration strategies. Migrate 500 users from X to Y switch, migrate VLANS, firewalls,... This is the part I'm having a bit more trouble with.

Where can I find quality resources on migration strategies? So far, I've found something in the CCNP R&S material, but that is a bit vendor-specific, and something here and there about firewalls.

I'd like to have a set of material covering multiple vendors and possibly cross-vendor issues (eg Cisco to Juniper, Fortinet to PA).



Blocking Modem GUI (AT&T)

Hello everyone,

I was wondering if anyone had success blocking the gui for att modems. For example, my modem is 192.168.0.1 and the only client is a router which is 192.168.1.1. I want any devices behind the router to be prohibited from accessing the modem. AT&T modem GUI shows WiFi password in plaintext along with device info so this has to be fixed ASAP. I have dd-wrt on the router and another router with tp-link managed switch software that I could use.

Thanks!!



Anyone having issues with Verizon in the Philly Area?

We have a site that way and apparently, there is a fire that destroyed some fiber.



Why does the Cisco.com website suck so bad?

Loged in with the ID I had for the last 5 years. Doesn't work.

Ok, maybe I forgot my password. Click forgot password, blank screen.

Ok, maybe I forgot both, Contact support, have you tried clicking the forgot password button. Case closed.

Now I am furious, ok maybe I will just create a new account, and go from there. Select your company. My company isn't listed neither is any other company even remotely close. Can't select the register button.

Now they have me questioning business decisions, maybe I should have built that IT room with all Juniper Equipment.



Arista to Cisco LACP port channel should just work, am i losing my mind?

I am labbing out a scenario in GNS3, 1 arista switch (access layer) connected via VPC port channel to two Nexus (cores). Scenario works fine when I have another Cisco switch port-channeled to the Nexus pair. I sub in an Arista switch at the access layer and I can never get LACP to come up, even single homed to a Cisco Nexus, removing VPC from the mix. New to arista, am i missing something simple?



Strange printer with behind a switch

Hey,

Came across a very strange issue with morning;

got a label printer connected to wifi, auth to wlc on .1x, ap trunks some vlans to its idf switch, switch fiber etherchannel to switch stack then to router and bgp etc.

The strange thing I'm seeing, printer will come on and join network happily behind the idf switch on one of ap's on that switch, I'll print a label or 2 and printer will just stop pinging, device still connected to ap, still visible as client in wlc. but just can't ping anywhere... this occurs on all idf switches.

Move that printer ap connected directly to switch stack and don't have any issues.

Don't have any stp configured beyond portfast across any of the links.

Anyone seen something similar or have some tips on what to look for?



Cisco CWS

I have asked this over at r/cisco and had no joy so thought I would ask here as there maybe someone who uses CWS.

Is anyone else using CWS and is good at using the reports?

I have ran a report and found a user that has a lot of blocks for pornography. This user has a written warning for looking at porn at work on a work device.

I see blocks against his domain user name but also blocks at separate times for his machine name, what does this mean? Is his machine doing something when he isn't logged in?

I need to be 100% sure that this user is still trying to access porn and it isn't something on his machine trying connections in the background.