Switching

Cisco Spanning Tree Scalability

René Jorissen on January 12, 2012 0 Comments • Tags: #cisco #scalability #spanning #spanning-tree #stp #tree

A colleague (Twitter: @Toonieh) mentioned spanning-tree scalability in a Cisco network. He had an article about this matter. All the credits on this post go to him. I found the article on internet and post it here to be able to find it quickly.. In a Layer 2 looped topology design, spanning tree processing instances … Read More

Configuration Example, Firewalling

McAfee Firewall – NAT mapping

René Jorissen on December 28, 2011 0 Comments • Tags: #arp #enterprise #firewall #mcafee #nat #proxy #redirect

While testing a McAfee Enterprise Firewall running software 8.2.0, I had some problems with the creation of a NAT mapping. The firewall is configured as standalone firewall. All (NAT / access rule) configuration on the firewall is done using Access Control Rules. McAfee uses two types of NAT mapping: NAT: mostly used to translate a … Read More

Configuration Example, Management

CactiEZ – configuration basics

René Jorissen on December 19, 2011 0 Comments • Tags: #cacti #netconfig #networking #ntp #sync #time

Every time I install CactiEZ or Cacti on another platform, I am searching for the commands to basically install the most common parameters, like static IP addressing, NTP sync and time zones. Several times I thought about writing a simple article with the necessary commands and final I had time to create it. Networking netconfig … Read More

Configuration Example, Wireless

AeroHive Spectrum Analysis

René Jorissen on November 3, 2011 0 Comments • Tags: #aerohive #analysis #hiveap #hivemanager #spectrum

One cool feature about AeroHive is the build-in Spectrum Analysis feature, which is enabled by default from HiveOS 4 and higher. Spectrum analysis is very useful to get a view of the RF environment near an access-point.  This is especially useful when troubleshooting bad connections (high volume of retransmissions) or other problems related to the … Read More

IPSec / SSL VPN, Security

Microsoft UAG – Invalid External Port bug

René Jorissen on November 2, 2011 4 Comments • Tags: #2010 #a #access #activated #address #be #cannot #choose #different #due #external #following #forefront #gateway #invalid #microsoft #port #sp1 #the #to #uag #unified

Last week I have installed a Microsoft UAG array. I installed Microsoft ForeFront Unified Access Gateway 2010 including Service Pack 1. When using an array configuration you have to deploy Microsoft’s Network Load Balancing (NLB) for redundancy and load balancing purposes. I configured NLB with multicast and IGMP support. I had configured some HTTPS trunks … Read More

Wireless

Aruba: Split Tunnel with a RAP-5WN

René Jorissen on September 30, 2011 2 Comments • Tags: #ap-group #aruba #networks #profile #rap5 #rap5wn #session #split #tunnel #tunneling #user #user-role #wired-ap-port #wired-ap-profile

Split Tunneling is technique, which is used very often in (SSL) VPN scenario’s. The RAP-5WN access points has multiple Ethernet ports to connect different components, like workstations or printers. You can configure the usual user roles and other settings on these Ethernet ports. You can also configure Split Tunneling per Ethernet port. When using Split … Read More