I have been doing alot of reading lately about network monitoring, IDS, network problem diagnosis and other such topics. Out of that reading I have been picking up on something that was totally left out of my education in the finer arts of networking. That something is the necessary use of network TAPS for full visibility of of traffic in a structured switched Ethernet network. I plan on discussing that issue more in the near future. But on the front end I have discovered the need to use the existing SPAN and port mirroring options to get a better view on a highly VLAN’d environment. This article from NetworkIntrusion was just what the doctor ordered. So until I can get my hands on some TAPS and get some articles out about how they have revolutionized my troubleshooting methodology I hope this use of tried and true tools for monitoring switches helps.

  • del.icio.us
  • NewsVine
  • Reddit
  • Digg
  • Slashdot
  • StumbleUpon
  • Technorati
  • email
  • Facebook
  • Google Bookmarks
  • LinkedIn
  • Live
  • TwitThis

The Magical Disappearing ASA ACL.   December 10th, 2007

I was on a client site about a month ago finishing an ASA install running PIX IOS 7.2.3. We were moving the client from flat ACLs to Object Group based ACLs, Object groups and named hosts. But for whatever reason we were having problems with the ACL. So from the command line I planned on using the tried and true no access-list “ACL NAME” to get rid of the offending ACL and start over. I was confused when the ACL did not go away. Well in reading 6200networks yesterday I came accross the the answer. From global config mode use clear configure access-list “id” and is should take care of that troublesome ACL. Thanks to Joe at 6200networks for the info.

  • del.icio.us
  • NewsVine
  • Reddit
  • Digg
  • Slashdot
  • StumbleUpon
  • Technorati
  • email
  • Facebook
  • Google Bookmarks
  • LinkedIn
  • Live
  • TwitThis

Always Flush when your done!!!   September 7th, 2007

One of my clients has had their web server exposed to the wild world of the internet now for several years. Up till about a year and a half ago many systems on their network actually had IP ANY ANY statements cut through from the Outside of their Firewall to the Inside. However it has been one of my many jobs since I started with them to eradicate these problems and start securing their infrastructure. The firewall changes have been easy for the most part and any problems that remain are policy issues that we are working to eliminate. However their web server sitting outside of the firewall has been an ongoing issue and due to some anomaly’s on the server they are deploying the recommended DMZ and migrating their web server there. Read the rest of this entry »

  • del.icio.us
  • NewsVine
  • Reddit
  • Digg
  • Slashdot
  • StumbleUpon
  • Technorati
  • email
  • Facebook
  • Google Bookmarks
  • LinkedIn
  • Live
  • TwitThis

Led Zeppelin said it best I guess.  This past week Ohio along with lots of other states got hit with the remains of hurricane Dean.  So far it has been the most damaging storm for my clients in my short consulting career.  The first call came on Tuesday morning August 21st.  That call was from one of our account managers who indicated a client had sustained catastrophic damage to their 6509 when water rushed into their core network closet.  My first two thoughts were how quickly can we get replacement hardware and how long should it take for me to get them back up and going? Read the rest of this entry »

  • del.icio.us
  • NewsVine
  • Reddit
  • Digg
  • Slashdot
  • StumbleUpon
  • Technorati
  • email
  • Facebook
  • Google Bookmarks
  • LinkedIn
  • Live
  • TwitThis

Ok so I have been beating my head on ASA to LDAP auth (temporary fix till my client spins up RADIUS) but thanks to the great LDAP group at Cisco TAC I”m up and working. The piont of this post is to take what we tend to know about LDAP client configs and adjust it for what Cisco has setup in PIX IOS 8. Read the rest of this entry »

  • del.icio.us
  • NewsVine
  • Reddit
  • Digg
  • Slashdot
  • StumbleUpon
  • Technorati
  • email
  • Facebook
  • Google Bookmarks
  • LinkedIn
  • Live
  • TwitThis