David Davis has covered most of the basics but I would add the "do" command under config mode. My most basic use of this command is "do sh run" while I'm inside an interface.
-PC
Friday, December 12, 2008
Basic IOS commands
Tuesday, December 9, 2008
security policies
One of my major frustrations has been the implementation of meaningful security policies at my work. I am in the unenviable position of having not enough pull in the company to own/implement a restrictive policy and my boss, a couple years from retirement, I don't think sees the need to write down everything. I guess he figures we are a small enough operation that policy can be made up on the spot and communicated verbally. This doesn't help me however when I'm trying to be pro-active in locking down the network and have nothing to measure against. Frustrating.
-PC
Monday, December 8, 2008
BackupExec
Update -- Now they are claiming that there is a possible conflict between BE and either "Mail security for Domino" or "Endpoint Protection". Again, possible....but it would be nice if after the very large vxgather file I sent them, they could give me more than generalities. So, now I get to reboot our mail server
So we've had this problem with BackupExec (version 12) backing up Lotus Domino. The remote agent will continually crash and can't be resurrected unless the machine is restarted. This becomes a problem on live servers. Symantec's solution is to upgrade my media server to 12.5 and push out new agents. He assures me that during the transition my v.12 agents will still work until I can get around to upgrading them. I don't mind upgrading software and understand that bugs happen. My problem revolves around being Symantec's guinea pig. I've seen this issue crop up enough times on their tech support forums that they should be able to tell me if this is going to fix it and why. I'm also pissed because the engineer is telling me that I need to upgrade all of my license keys from v12 to v12.5. Apart from the fact that this is just stupid and hurts my head, I now have to track down my software VAR and send him on a wild goose chase to track some numbers down. Dumb!
-PC
Twittered!!
I'm up and running on Twitter. You can come and follow me at http://twitter.com/portcullischain
-PC
Thursday, December 4, 2008
Problem 3rd party connection
So I became aware of a problem connecting to a 3rd party that we use for additional information when rating quotes. I believe the problem lies with the 3rd party's firewall. I think it is limiting it to only a few class "C" subnets that we used to use. Me being the rabble rouser that I am, I've dropped my users to a /21 subnet mask and move servers around to some /16 networks. I'm thinking their firewalls are basically giving me the finger. More to come.
-PC
p.s. Yes I know that it has been eons since I last posted. Given the fact that only my grandmother and one individual in the Balkans ever read my blog, I'm not all that concerned about how you feel.......ok maybe a little concerned.
Wednesday, September 24, 2008
New So. California Office
So, come to find out that the new office that we integrated into our network......wait for it......is moving. Everything must go. This will at least give me the opportunity to rack the server responsibly.
-PC
Wednesday, August 27, 2008
Update on Technical projects
It's been a while since I updated everyone (currently some dude in Singapore and a group of zombie PCs in Malaysia) on my going ons. This is my weak attempt to stay relevant. Some of what I'm talking about references my post on 07/13/2008.
1. The T-1 to our Arizona Office has been installed. Now I've got to figure out if the secretary will send me mail bombs for placing the loud Cisco router next to her desk. I might have to extend the DMARC elsewhere and mount an actual rack to install it. The office only has like 5 or 6 nodes on it and I haven't felt the need to devote the money to fixing this situation.
2. The folding of the new So. California office into our corporate network went without a major hitch. I dropped a new Dell R200 server with Windows 2003 running as a DC and global catalog into the network. The server barely fit in the rack that was in place but I managed to cram it in there. I will need to keep monitoring the temperature via OpenManage. We also got rid of the SonicWall TZ1...something and installed a Juniper SSG5 for firewall and VPN back to us. So far no issues.
3. I also finally got rid of RIP for our routing protocol (don't laugh) and moved us over to OSPF. That means my backup VPN through our DR site now fires up whenever our corporate line flops (like it's been doing since yesterday). Damn you ISWest.
4. BackupExec now working except for synthetic backups on my big box (350GB data store). I've been escalated through 3 levels now at Symantec and am still waiting on an answer 2 weeks later.
5. Endpoint Protection rolled out to about 75% of the company. Central exceptions not appearing to be working as I'm getting roughly 4.2 million entries (give or take a million or so) in my event log saying SAV couldn't scan "X" files inside d:\data\x.zip. I'm waiting to fix my BackupExec problems before starting another conversation with Symantec because.....well because I can
6. DS3 installation between corporate and DR site moving forward slowly but might meet sudden death when powers that be see that Cisco 3845 routers for connection will be over $25K. The data lines are a no brainer and we will not be spending any more money than we are already spending on our 4 DS1 lines.
That's all I have currently. Got to get back to work.....alright.....got to get back to watching the DNC right now and forwarding all calls to VM
-PC