ST 2110 Network Interfaces: DHCP or Manual/Static?

Curious - for those of you working in a sizable ST2110 facility - are you statically assigning all Media and Control interfaces on all of your devices? Or are you running a DHCP server and allowing that to either hand out a pool or using DHCP Reservations?

I’d love more detail how you’re doing this and how it’s been going.

Thanks!

reddit.com
u/WhoRedd_IT — 2 days ago
▲ 1 r/GV60

Charge management from inside the car

I’ve had my GV60 since 2023 and as far as I’m aware, you cannot actually stop or manage your charge from within the vehicle, only from within the terrible app.

Am I insane or totally wrong?

reddit.com
u/WhoRedd_IT — 10 days ago

Low density fiber panels with clear numbering

I realize high density fiber patch panels are all the rage but does anyone know of lower density i.e. easy to get your hand in to change a patch options that also might have clear numbering?

Thanks!

EDIT: LC ideally

reddit.com
u/WhoRedd_IT — 14 days ago

CAT6 keystone panels always feel loose?

Hi is it me or do all CAT6 keystone pass through panels always feel loose? I’m talking about RJ45 feed through panels. RJ45 on either side of the panel.

These are going in mobile racks we’re building as a bulkhead.

All the panels I’ve tried seem to just always wiggle a lot. Meaning the actual keystone wiggles a ton?

Is this normal?

reddit.com
u/WhoRedd_IT — 2 months ago

Switch price increases

Probably been talked about before but I’m seeing crazy AI bubble switch price increases with Cisco. They claim memory related.

Oddly enough it only seems to impact certain nexus models, which doesn’t make a lot of sense to me. Maybe they have more of one model already made and therefore costs are lower?

Is Arista facing the same exact issue with price increases right now?

reddit.com
u/WhoRedd_IT — 2 months ago
▲ 0 r/Netbox

How has AI helped maintaining a Netbox instance?

Haven’t played with Netbox in a few years and I’m looking at it again for my data center build over the next 2 years.

How has AI played into Netbox?

Has maintaining my records and documentation become easier?

Thanks

reddit.com
u/WhoRedd_IT — 2 months ago

TACACs Setup for Network Device Access

Hi all,

I have stood up a pair of ISE servers in our environment and I’m looking to setup TACACs auth for them to control access to my network switches (nexus) and a few C8300 routers. Is this still the recommended way of doing things?

How have you created roles in your environment? Just a read only role (that can only run show commands) and a full network admin role that can run all commands?

Does ISE by default have accounting for all commands ran by logged in users?

Lastly, is your ISE server (or similar) pointed at your AD / LDAP for user auth? Or something else?

Thanks!!

reddit.com
u/WhoRedd_IT — 2 months ago

VXLAN EVPN needed for single site data center

Hi all,

I’m working through network design options for an audio visual facility we are building. It will have a “data center” but not in the traditional sense.

It will comprise of audio visual equipment, many of which are now COTS servers but not hundreds of racks full of servers like people traditionally think of.

It feels like folks push VXLAN EVPN so hard as the only way to build a network these days but for me I just don’t see the value in the added complexity unless you absolutely NEED it.

For me VXLAN EVPN feels like a band-aide designed primarily for vMotion. I get the other use case for campus is giant wireless VLANs stretched.

All in all, for a single site data center with some virtualization servers all within one DC, do I really need VXLAN EVPN? (We are Proxmox hypervisor)

I suppose if we needed to migrate VMs to another future data center (not planned) it could be a need?

EDIT: Are folks still deploying collapsed cores with leafs vPC hung off of them? How large can you go in a collapsed core design (leaf count). What other options do I have?

EDIT2: this switch fabric would only carry command and control of devices including AV and broadcast gear and servers. Some storage traffic to VM hosts. Media fabric will be separated onto a separate and isolated fabric.

Thanks

reddit.com
u/WhoRedd_IT — 3 months ago

Help me make an argument for Palo FW over Cisco FTD

Hi,

My company has a massive Cisco relationship which affords us some incredibly good pricing on all products. The vast majority of my company uses Cisco everything, including FTD and FMC.

We are living in a temporary facility right now for the next 1-2 years and using FTD/FMC.

It works fine and supports my needs, but to support everyone’s posts on here… it definitely feels like it’s barely hanging on as far as bugs, and forget it when you need to do upgrades… that’s a whole week burned because it never seems to go to plan. Also, Cisco documentation is a joke for FTD. Lastly, the OS is a mess of different CLIs glued together. It’s definitely Frankenstein like others have warned on here.

For our data center build coming up I want to potentially make the argument we should go with PA but it’s going to be massively more expensive as my company has basically no relationship with them.

That said, would Palo FWs actually make my network significantly more secure? If so, how?

My admins are of course begging for PA as they hate managing FTD, but that’s not an argument for leadership when I have to ask them for 500-700k for PA vs the pennies we’ll spend with Cisco. Plus the renewals!

Is Snort actually substantially inferior for to PA’s security features? Any data to quantity this somewhere? Any features that I can argue will actually make us more secure.

We’re an extremely lean network team so maybe I can make an argument that PA will give us more visibility? More security?

Thanks!

reddit.com
u/WhoRedd_IT — 3 months ago