Monday, March 1, 2021

Calculating router throughput

I'm working on finding routers to replace two 2921 core router pairs at my work. I'm looking at 4331s which can provide aggregate throughput of 100-300Mb or higher depending on licensing.

What I'm trying to do is calculate our current average aggregate throughput based on NMS data and I want to make sure I'm going about this correctly.

Each of our routers has 5 interfaces and there are 2 HSRP pairs so only one of each pair handles the vast majority of the traffic.

Do I simply take the average in bandwidth and out bandwidth of each interface and add them all up?



Does Tier 1 ISPs summarize or filter any /24s on their own?

If I advertise two consecutive /24 to two upstream ISPs (one to each) and their summarized /23 as well (to both, for redundancy). will any of my /24 be filtered for any reason at tier 1?

A colleague was telling me that they do, I would like to make sure.



SolarWinds NETPATH alternative

We're vetting new monitoring solutions and I am curious if anyone has found a good alternative to SolarWind's NETPATH tool.



snmp_python_project

The Graduate Project Team and I would like to consult with you about the LAMS idea; Automated laboratory management system, the idea talks about some tests that the administrative apparatus executes automatically in the laboratory equipment (computers, routers, and switches) and to ensure their stability for the benefit of the student throughout the time of the work office. And if there is any error, we will send a notification to the administrator.

We discuss with each other about the tests to do this, such as: interfaces status, CPU usage, hard disk usage, firewall status, etc., and we hope you can help us to provide Any recommendations we have about some of the tests that you hope you will find in our project.



ISE RADIUS Authentication from a specific IP address

Hi everyone, been lurking for awhile but we recently upgraded our authentication server to ISE. What we're trying to do is to add a policy that will ONLY allow a service-account authentication if you're SSH-ing from a specific IP.

For example, we want user A is using service-account on computer A to login to router Z, but don't allow user B using service-account on computer B (or any other computer) to login to router Z. User B authenticate with their own ID, however, just not the service account.

Is this possible? So far, we tried looking at the RADIUS protocol and did a packet capture and we didn't see any field that might support what we're trying to do. Any suggestion?



Cisco ASA VPN authentication

Hopefully there is an easy answer to this one.

If there is a Site to Site VPN which has certificate authentication on both ends and the certificates expire will the VPN re-establish using the PSK? Assuming you can configure both certs and PSK. ASDM hints at both certs and PSK being configured at the same time.

Cheers guys.



WWAN

Hey, guys does anyone know about WWAN. I am a total noob and want to how does it work, or at least how the whole architecture of the connection is.
Things that I already know of are, it is a type of network that provides internet to a wide area. It requires an antenna, an ISP, an access server, Wan switch, a modem, or a router? But how do they all connect to each other, this is what I want to know.

I tried googling but It is too complicated.



48-Port Patch Panels into 48-Port, half POE switches. Odds/Evens split for PoE, no cable management bars... looking for cabling tips.

Hi

I'm in the process of upgrading our infrastructure.

Budget has us purchasing 48-port switches with the first 24 being PoE+

We're wanting to Odds/Evens the PoE into the patch panel, and the combinations I've tried have been a little bit of a mess.

The cabinets are already in place, and don't have cable management bars, only alternating Patch Panels with Switches.

I've got an assortment of 0.25mtr & 0.5mtr red and black patch cables, but going shorts first and then longs still looks messy.

Any tips? I can tidy & bunch the longer cables up with cable ties, but I'd just like to make sure we're as tidy as possible with what we have.



Question About EVE-NE

Greetings, So I wanted to start using EVE-NE for labs, I did the setup like shown below: - Downloaded ISO from their website - installed it in a VMware workstation successfully - Updated/Upgraded the software - I got the IP address and all seems to be ok, I can even ping the internet from the VM

My issue is that I cannot access the web! I tried different solutions but nothing worked.

When I type the IP address in a web browser it simply says “site can’t be reached. Err_connection_timed_out.”

Does anyone know what the issue is?



[Question] How do ISPs connect you physically to their infrastructure

whatsup reddit,

So i was wondering, how do ISPs connect the fiber/coaxial/copper line from your home or flat to their specific infrastructure? what i mean is that there are ofcourse competing ISPs, so when a resident or company switches ISPs, does an ISP let a worker comeover next to your flat/home and let him or her unplug the connection from the competing ISP's cabinet and connect it to their cabinet (i doubt this because of security), and also does it then mean that we a complicated HFC/PON infrastructure of the competing ISPs in a close proximity of eachtother under the grounds?

while searching over the web i found some information about a process called LLU (local loop unbundeling) but it seems as if this is more aimed at ADSL..

Any information being shared is highly appreciated!