I have two sites connected peer-to-peer through OpenVPN. How can I access machines at the remote site using their hostnames? For example I would like to access service1.siteB.domain.com while I am at siteA. Somehow the local DNS at siteA needs to know about the DNS table at siteB. I am able to access all machines by IP.
Monday, December 6, 2021
How to route to remote VPN machines by hostname?
10G Connection to Provider not working
I have a 2Gb Layer 2 circuit that I am picking up in a carrier hotel from a Data Center provider in another market. I have elected to have this handed off as a 10G Connection instead of a 2x1G LAG to save on cross-connect costs and to be able to grow this circuit without physical changes in the future.
The issue that I am having is that I can't get the darn thing to come up! I have multiple 10G circuits from other providers and none of the others are having issues. The optics are 10G-LR (10KM) on either side. I have verified that I have light, and the provider has light. I am terminating the Circuit on a Nexus93180-YC FX with 10G-LR optics from FS.com. I have done loopback tests on the optic as well as patched the optic to another optic on a different switch to make sure that it would come up, and the optics checked out, no issue. I also hard-coded speed and duplex, however the Nexus platform does not allow the "no negotiate auto" command at 10GB. I have good light levels from the Provider (-5db) and the provider has the same levels. I have had the Meet-me-room manager clean all cables and bulkheads. The Provider was originally using FS.com optics and has now switched to Cisco Genuine. The PE router is giving a "far-end error" message (I believe this is an ASR 9K Chassis?) They have also changed optics, ports, etc to no avail. To just see if I could get the circuit to come up, I changed the optics on my side and the PE side down to 1Gb and the circuit came up with no issue (Both Cisco Genuine). Is there something blatantly obvious that I am missing? I can post sanitized configs from both the CE and PE devices if that would help connect the dots.
TIA
App suggestion for wireless network optimization
Guys is there any application for network optimization? plz suggest me any (preferably) iPhone app (if there is any) for wireless network optimization. I am asked to install few WAPs in new office and then optimize the coverage.
Networking upgrade to 10gb SMB 250 users.
Sysadmin here responsible for a site with 250 end users and about 300 endpoints in total. Looking for advice on a core switch upgrade…
Currently I have 8x 2540 SFP+ (10gbe capable) edge switches fed into a stacked HP 2920 core switch. All trunks are 1GB uplinks cat6 ethernet. I use this switch for routing / ACLs but I’m probably going to take the opportunity to offload VLAN routing to our firewall.
Our network is exclusively 1gb and is in dire need of upgrading to 10GB. I am interested to know what people would recommend as a ‘core switch’ replacement. I think 2x HP 3810 16SFP+ would be an ideal choice however my boss has severely underestimated the cost of the project without input from his technical team. This will easily be circa £15k – that’s another matter.
Cisco Nexus Multiple VRFs to share same MPLS uplink
We're looking to run multiple VRFs at one location on our Nexus to keep logical separation between two separate server farms.
Each server farm has a dedicated Firewall + internet connection but share the same Core Nexus switch. The idea being that we can maintain separate routing instances for each Farm.
The catch is we need both VRFs to access the same uplink to our MPLS.
MPLS comes in on a single Fiber plugged into the Nexus Directly.
Since the MPLS comes into a single VLAN, I can't make that VLAN a part of both VRFs?
I can make separate virtual IPs and OSPF instances for the 2 VRFs easily enough, but I need an elegant way to split the MPLS feed between both VRFs.
Designing VLANS and subnetting (FOR SCHOOL PROJECT)
I could use some help with a few of the VLANs I need to design. I need to subnet a class C network -192.168.234.0/24 I just need to figure out how to get Number of Hosts, CIDR, and IP address for two VLANS: First -8 computers and two printers Second -3 servers with 3 NICs each
Even some resources that would help me learn to solve this would be amazing
EPL Link working only 1 way
Hello folks,
I've been working for a while on this configuration but I can't seem to make it work somehow. I am totally alone trying to make it work and I need help. Thanks in advance for your input. Basically, EPL is like a very long cable and it seemed easy to setup but i'm stuck. Here is the topology:https://imgur.com/gallery/aPKyeJQ
On site B, I can reach a server in the 10.37.20.0/24 network from the 192.168.100.0/24 network but I can't reach anything from site A to anything in site B. There's an address object group including the lan networks from site A including 10.37.100.0/29. There's also a routing policy from X0 to X3.
Even though I looked through the Meraki documentation, I haven't found anything related to an EPL connection or routing to non-meraki router. There are mostly MPLS or VPN walkthrough. There's a routing subnet from the L3 switch MS250-48. If I create a DHCP server in the 10.37.100.0/29 network and plug my PC in in site B, I get an dhcp IP and can reach everything in the site A. It seems the rest of the Routing configuration that I found can be done on the firewall side in "adressing and VLANS" but in order to maximize the bandwidth I'd like not to use the MX if possible.
So, what I am missing? any idea is welcome!
Equipment woes
My cisco switch orders from August just got pushed back again, now to February.
I know with the chip shortage, this is probably affecting everyone but is anyone having luck with aruba or juniper orders? I've been itching for an excuse to change our standard.
Ubiquiti edgeswitch dhcp conflict issue with ping and host declined errors
We have an edgeswitch at one of our locations that runs the dhcp server. And almost 2/3 of the pool is coming back with a conflict of mostly "ping" or sometimes "host declined"
Any help would be appreciated...I am stumped on why this is happening.
Traceroute % Loss
When I perform a trace route to a host behind the firewall (FortiGate 601E)
- i see a 75 % loss at hop 19 which is the external port of the firewall . Should I be concerned about this ?
19.|-- 203.126.222.xxx 75.0% 4 260.6 260.6 260.6 260.6 0.0
20.|-- 203.126.222.yyy 0.0% 4 259.1 262.1 259.1 267.2 3.6
However, if I traceroute only up to the firewall external port, I see 0% loss.
17.|-- 203.126.222.xxx 0.0% 4 263.5 262.5 262.0 263.5 0.7