Network

Cisco Site to Site VPN (Dynamic to Static)

In most cases, a branch office uses a static outside IP address to connects to a main office by configuring a site-to-site IPsec VPN between two Cisco ASA firewalls with static IP address on both end, But what if one of the remote ASA firewalls has a dynamic IP address?

more …

Cisco Router – Switch DHCP server configuration

DHCP server on a Cisco router or switch.

DHCP is an application layer protocol used to distribute network configuration parameters, such as IP addresses, subnet masks, default gateways, etc.. to devices on the network. a DHCP client send request to a DHCP server. A DHCP server is assigns network parameters (IP address) to the DHCP client from configured IP addresses pool.

Cisco router and switches can be configured as a DHCP server, In this post I will walks you through the configuration process.

more …

The Concept of PaloAlto configuration management – P1

The concept of configuration management

PA configuration management has powerful functions to manage configuration, but at the same time it can be very confusing if you are used to other firewalls vendors. So, let me explain the concept of configuration management, and how to set it up in the right way in order to be effective to make a full use of it.

I would like to share my experience with you. Let’s start with configuration management; on a Palo Alto firewall, there is a dedicated Management plane and Data plane.

more … concept of Palo Alto configuration management

VMware NSX and Software Defined Data Center

nsx-logo

Network virtualization platform NSX and Software Defined Data Center architecture

IT organizations have gained significant benefits as a direct result of server virtualization. Server consolidation reduced physical complexity, increased operational efficiency and the ability to dynamically re-purpose underlying resources to quickly and optimally meet the needs of increasingly dynamic business applications.
VMware’s Software Defined Data Center (SDDC) architecture is now extending virtualization technologies across the entire physical data center infrastructure. VMware NSX, the network virtualization platform, is a key product in the SDDC architecture. With NSX, virtualization delivers for networking what it has already delivered for compute and storage

Step By Step NSX Deployment ..more …

 

Arista vEOS in a VM

arista_cloud

Arista Networks was founded to deliver software defined cloud networking solutions for large data center and high-performance computing environments.
Consolidation of what was traditionally three-tier Core/Aggregation/Access designs into two-tier Spine/Leaf designs; fewer tiers decrease cost, complexity, cabling and power/heat.

more …

Windows 2012 ISCSI Server as a storage device for vSphere 6

Windows 2012 ISCSI Server as a storage device for vSphere

Win2012R2

VMware

You should have a central storage like SAN in order to play with the VMware advance feature like HA, vMotion, FT…Etc, but that is not always possible for Lab or evaluation.

In my previous posts, I showed you how to install and setup HPLeftHand P4000 on ESX and provide a shared storage for VMware.

In this blog I will show you how to use Microsoft windows 2012 ISCSI solution as a shared storage for VMware.

I will not walk you through the step to setup iSCSI Target; if you are interested in step-by-step   iSCSI Target setup take a look in to Microsoft iSCSI Solution.

more …

How to stretch your network behind firewall to Windows Azure by setting up a Site to Site VPN

How to stretch your network behind firewall to Windows Azure and setting up a Site to Site VPN using RRAS.

images

You may planning to stretch your datacenter network to Windows Azure by setting up a Site to Site VPN where the VMs up in Azure are effectively connected to the Enterprise Datacenter. The Site to Site VPN just extends the datacenter to allow for VMs to be created in the cloud With VMs both on-premise and up in Azure.

You’ve probably read guidance requiring you to have two network adapters, one for internet facing traffic and the other for internal facing traffic. You may have also read that you must assign a static public IP address on the Internet facing network adapter as you cannot NAT the traffic.

more …