Skip to content
HOP16

A networking blog

  • Home
  • General
  • Data Center
  • Enterprise
  • Security
  • Service Provider
  • Home
  • General
  • Data Center
  • Enterprise
  • Security
  • Service Provider
  • Security

    We need to talk about GETVPN

    April 23, 2018 - By Jon Major

    We really have to talk about GETVPN. Despite its drawbacks, I can’t seem to get it out of my head now and I’m constantly running through scenarios where using it might make sense. If you’re not too familiar with GETVPN, let me offer this high-level summary of the technology. GETVPN…

    Continue Reading
  • Security

    Cisco Firepower Threat Defense (FTD) in GNS3 part 2

    February 12, 2018 - By Jon Major

    Video Only Post In this quick part two video, I cover some basic recommendations for organizing your access control policy and add a couple base rules in. I’ll also cover how we can create IPS policies, and apply them to access control entries, within our access control policy (ACP). As…

    Continue Reading
  • close up of a keyboard
    General

    Windows Server in GNS3

    January 22, 2018 - By Jon Major

    *UPDATE* After tinkering around with Spice and QXL VGA driver, I’ve found that increases performance exponentially as well. Update highlighted below. How I get a Windows guest running smoothly in GNS3 using virtIO drivers, sysprep, and creating a linked base. This can be especially useful for testing FirePOWER services, integrating…

    Continue Reading
  • Security

    Cisco Firepower Threat Defense (FTD) in GNS3 part 1

    January 17, 2018 - By Jon Major

    If you’re like me, then the best way to learn something new is to get your hands dirty. Get some lab gear, boot devices up, and try different scenarios. This is as true (if not more) with Cisco’s Next-Generation Firewall, Firepower (FirePOWER?) Threat Defense. Lucky for us, at least those…

    Continue Reading
  • Security

    Adjusting to Firepower Threat Defense

    November 24, 2017 - By Jon Major

    I wanted to do a quick post today about Cisco’s Firepower Threat Defense. As I’m sure most of you know, this platform is moving to (eventually) replace the ASA code we all know and love. It’s not quite there yet with some features missing that are keeping some from converting.…

    Continue Reading
  • Enterprise - Security

    Protect The LAN: IPv6 RA Guard

    May 30, 2017 - By Jon Major

    So while nerding on YouTube, one of my favorite YouTubers Quidsup did a demonstration of using Kali Linux to perform a pretty nifty denial of service attack against Windows 10. The attack has some minor caveats, but none the less is dangerous and relatively easy to pull off. It works…

    Continue Reading
  • yelling formal man watching news on laptop
    General

    CCIE status suspended (but then got it back)

    May 2, 2017 - By Jon Major

    So that happened. Now, I know what some of you are thinking based on the title of this post alone. That’s fair. The truth of the matter is, 2yrs sneaks up on you (or at least snuck up on me) really fast. After I passed the lab in 2015, all…

    Continue Reading
  • General

    I’m Alive!!

    January 18, 2017 - By Jon Major

    Just thought that’d be worth sharing… I guess. CCIE Security studies have been consuming most of my time. However, I’m just about at the point where I can publish some stuff. I’ve had drafts for my FlexVPN with dynamic spoke-to-spoke tunnels sitting in draft for months now. So that’ll likely…

    Continue Reading
  • Security

    Dynamic Site-2-Site VPNs with Cisco ASA

    August 15, 2016 - By Jon Major

    So let’s take a moment and assume your life is too easy, and you want to punish yourself. But how?! Here’s a way, let’s use the ASA for sites-2-site VPN. Even better, the spoke sites have be able to have dynamic IPs, and also need connectivity to other spokes. Also,…

    Continue Reading
  • Security

    How to Not Suck at Web Filtering: Cisco’s Web Security Appliance Part (2)

    August 13, 2016 - By Jon Major

    Write up coming soon..

    Continue Reading
 Older Posts
Newer Posts 

Recent Posts

  • Cisco ACI // SQL AAG
  • First post in a long while, so I did a video on EIGRP OTP and GETVPN.
  • Cisco ISE and Azure AD – Part 1
  • Cisco IOS & SNMP: A backdoor into devices you can’t access.
  • FlexVPN: Spoke-2-Spoke PSK

Tags

ACI ASA BGP Challenges Firepower VPN VxLAN WSA
Graceful Theme by Optima Themes