Layer 2 traffic filtering can be very useful when you want to drop packets closer to
the source because you can do this on L2 next-hop which is the switch where the
devices are connected. Based on mac-address, Layer 2 filtering can be apply using
one of the two most common method: Port Security and MAC Access Groups.
Port Security is the more secure method of the two. To use it, map a switch port to the
specific MAC address of [...]
The official term of Cisco for Packet sniffing is SPAN ( Switched Port Analyzer ) also called sometimes port mirroring or port monitoring and it’s purpose is to select traffic from a source and send to a destination with a network analyzer tool. You can find out there terms like RSPAN, PSPAN, VSPAN, ESPAN, but this are at their basic functionality nothing more than SPAN with some enhanced features ( e.g. ESPAN – Enhanced SPAN ) or describing their primary functionality ( e.g. VSPAN – [...]
One of the most used method for remote access today is SSH protocol. Even most on the network engineer say what is so complicated in the process of the enable , disable , reconfigure of the SSH process, my experience proved me that it can be really complicated, if you mess up stuff there.
One of the situation that I see very often, is that after a network engineer (administrator, beginner…) reconfigure SSH or hostname / domain-name on the Cisco routers is that they tell [...]
Spoofing is a kind of network attack to compromise your network security with the intention of traffic capture which will enable an attacker to get access to confidential data. Usually a spoof attach is associated with IP spoofing, which means that the source IP of the packet which arrive to your device has been changed with intention. For example, let’s assume that you are having a plain http communication with mail server and you want to login to your mail account. You sent the intial [...]
I had lately to configure compressed real-time protocols (CRTP) over a Frame-relay link.
I thought that it will be good to make a tutorial about how to configure this on the Serial interfaces (with HDLC or PPP encapsulation) and on the Frame-relay interface. Another type of interface supporting this is and ISDN interface, but the configuration there is the same like in the Serial interface case.
If you were asking why I don’t configure this on a Ethernet interface, well this is because [...]
Some time ago a person asked me to set the HTTP traffic to 256 kbits during weekdays from 8:00 – 16:00, to limit “the fun” in the office while other are working. In theory I’m against this type of policy, because if you have a team of network engineers and they have to access cisco.com in the same time for information and other stuff like IOS download, then this will take a lot of time. Of course if you see that the productivity is going [...]
In this tutorial I propose to show something that is not very used these days, or at least not every day, but which can be tricky if you don’t know how to approach this type of configuration. To understand this, I assume that you know the basics about PPP, FR and Multilink. I will make a short summary here but I will not go into details:
PPP or Point-to-Point protocol is used to establish direct connection between two network points. It can provide authentication, encryption [...]
In a well controlled environment, false information routing should not reach your OSPF domain, as network engineer take care what to advertise and what not into OSPF. But there are cases when you have to deal with 3rd party companies somehow, and you want to be sure that nothing in injected by mistake into your domain. Also this can be a task for CCIE RS lab exam.
And since I specified that this can be an exam task, let take some “DO NOT USE” rule [...]
From the beginning let me tell you that I don’t see very useful this command, as I prefer to use “interface range…” syntax, but since I saw it as a requirement in one of the task for CCIE RS lab exam, and maybe somebody will find it usable in real environment, I said I should put it here in a tutorial.
As many of you already know, you can control a range of interfaces by typing the command “interface range Fa0/1 – 6″ (for example), [...]
Let’s say that somebody (or some task in a test) ask you to limit the inbound traffic on a switch Layer 2 port by using minimal configuration possible. I must say that in the first steps I failed this task miserable, but actually is very simple to do it.
I will use a plain layer 2 Cisco 2950 switch for this task. I observed that I could not implement this on a Cisco 3500XL. I don’t know if the IOS image was wrong, but I [...]
Which WAN Optimization vendor will consolidate and expand its market position on 2011
447 votes - Thank you all!I add the results in a blog posts so we can see over years on which [more]
CCIE home rack - Ubuntu persistent net rules
In one of my last posts, I was writing about my CCIE home rack which has one server that runs Ubuntu + [more]
Black Friday 2011 - 50% Off on INE bundles
If anybody is interested in buying INE products, do it now. I've got the following marketing e-mail. The [more]
Free streaming course CCNA 640-802 from INE
I'm sure that a lot of people out there got this info already, but for those who are not part of INE [more]
Home lab for CCIE exam training
Before I started with my preparation I was in front of a dilemma. I knew that I will need a rack to [more]
Professionals Blogs
- blog.ioshints.info
Close preview
Loading... - cisco-tips.com
Close preview
Loading... - blindhog.net
Close preview
Loading... - CCIECisco
Close preview
Loading... - amyengineer.wordpress.com
Close preview
Loading... - danielhertzberg.wordpress.com
Close preview
Loading... - Cisco Network Engineer Blog
Close preview
Loading... - brainbump.net
Close preview
Loading... - mellowd.co.uk
Close preview
Loading... - globalconfig.net
Close preview
Loading... - packet-forwarding.net
Close preview
Loading... - noshut.blogspot.com
Close preview
Loading... - bradhedlund.com
Close preview
Loading... - routing-bits.com
Close preview
Loading... - gns3-labs.com
Close preview
Loading... - etherealmind.com
Close preview
Loading... - packetlife.net
Close preview
Loading...
- blog.ioshints.info
