Skip to content

Network deployments: Past and Present vol. 5

In a previous blog post, I demonstrated the Fabric Attach capability in my lab. Now, let’s explore the Auto-Sense capability. I previously explained what Auto-Sense is: essentially, it allows a switch port to be configured automatically based on the connected devices. On Fabric Engine, Auto-Sense is enabled by default: The Auto-Sense capability is straightforward and… Read More »Network deployments: Past and Present vol. 5

Network deployments: Past and Present vol. 2

This “self-forming” network is based on Extreme Networks gear. The complete solution is called Extreme Automated Campus and consists of several key components: Core Components of the Solution The foundation of this solution is the switches running Fabric Engine/VOSS, which can communicate using standard protocols as well as Fabric protocols. Fabric uses only two protocols:… Read More »Network deployments: Past and Present vol. 2

How to choose the right firewall model?

How do you choose the right firewall model for your environment? The first and obvious  factor to consider is performance. We need to account for the features that will be used in our firewall (IPsec tunnels, security features, SSL decryption). Based on the expected throughput and using vendor datasheets, we can estimate which model is… Read More »How to choose the right firewall model?

CRWD fuck up, how to prevent it

We all know what happened last Friday (19.07.2023). “Crowdstrikers” had a terrible day. What are my thoughts about that situation? Of course, it is obvious that some team at CRWD missed something, and the testing phase wasn’t good enough. Mistakes happen, and this one had a really big impact. I don’t want to blame the… Read More »CRWD fuck up, how to prevent it

Methodology and Papers: Why They Are So Important

As an engineer, I don’t particularly like paperwork; the best aspects of my world are implementations, integrations, and the like. In short, I enjoy the “real engineer meat” of the work. Unfortunately, without papers and documents, there are many opportunities to make mistakes, especially during complicated implementations in brownfield environments. During my professional career, I… Read More »Methodology and Papers: Why They Are So Important

Palo Alto NGFW custom App-ID

App-ID is a core technology of Palo Alto Networks’ next-generation firewalls (NGFWs) that identifies applications traversing the network, regardless of port, protocol. Custom App-ID extends this capability by allowing to create unique signatures for proprietary or obscure applications that are not covered by the default App-ID database. This ensures that all applications, including those specific… Read More »Palo Alto NGFW custom App-ID