Archive

Category Archives for "Networking"

AT&T picked as top managed-SD-WAN provider for the third year

AT&T, Hughes, and Verizon were selected as the top three SD-WAN providers for the third year in a row in the latest Vertical Systems Group rankings for year-end 2020. Comcast jumped to fourth place.Despite the pandemic, expansion of carrier-managed SD-WAN services in the U.S. increased 39% in 2020. Demand was resilient across bandwidth-intensive markets, but vulnerable for verticals like retail and travel.Vertical Systems Group is an independent market research firm focused on network services. Each year it issues its Carrier Managed SD-WAN Services Leaderboard.The one notable change was Comcast has replaced Lumen Technologies in fourth place, moving up from seventh position in 2019. Lumen is now in sixth, Windstream remains in fifth and Aryaka dipped from sixth to seventh.To read this article in full, please click here

Nokia Lab | LAB 3 IS-IS |


Hello everyone!

It's the next Nokia lab. Today we will review routing protocol widely spread across service providers networks. 
Please check my first lab for input information.

Topology example



















Lab tasks and questions:
  • Basic IS-IS
  • configure IS-IS between R1 and R2 (use P2P interface type, Level 2 only, "system" interface as passive, area 49.01)
  • check neighbors state
  • examine IS-IS control plane PDUs (You can use debug or packet capture)
  • describe all IS-IS PDU and their purpose
  • What transport does IS-IS use for control plane PDU delivery? Any difference with OSPF?
  • Examine destination MAC address of control plane PDU
  • examine LSDB
    • examine LSP in detail
    • What TLV types does it contain? Examine every TLV
  • examine route table
    • What is the default preference of IS-IS routes?
    • What is max-metric of IS-IS routes (default configuration)?
    • How to change behavior? How to take into account link bandwidth? 
    • Multi-area IS-IS
    • configure R3 and R4 as L1/L2 IS-IS routers (use P2P interface type, area 49.02)
    • configure R5 and R6 as L1-only IS-IS routers (use P2P interface type, area 49.02)
    • check IS-IS adjacency on R3
    • What adjacency types do you see?
  • examine LSDB on R3
    • make attention to LSP attributes

    Must Read: Automate Nexus-OS Fabric Deployment

    Some networking engineers breeze through our Network Automation online course, others disappear after a while… and a few of those come back years later with a spectacular production-grade solution.

    Stephen Harding is one of those. He attended the automation course in spring 2019 and I haven’t heard from him in almost two years… until he submitted one of the most mature data center fabric automation solutions I’ve seen.

    Not only that, he documented the solution in a long series of must-read blog posts. Hope you’ll find them useful; I liked them so much I immediately saved them to Internet Archive (just in case).

    Must Read: Automate Nexus-OS Fabric Deployment

    Some networking engineers breeze through our Network Automation online course, others disappear after a while… and a few of those come back years later with a spectacular production-grade solution.

    Stephen Harding is one of those. He attended the automation course in spring 2019 and I haven’t heard from him in almost two years… until he submitted one of the most mature data center fabric automation solutions I’ve seen.

    Not only that, he documented the solution in a long series of must-read blog posts. Hope you’ll find them useful; I liked them so much I immediately saved them to Internet Archive (just in case).

    Cisco DevNet certifications: 10k awarded in first year

    In the year since Cisco revamped its DevNet certification portfolio to focus more on network programing, automation and application development, the need for those software-based skillsets has never been more important. IT Salary Survey on Insider Pro IT Salary Survey 2021: The results are in IT Salary Survey 2021: Compensation holds steady despite pandemic IT Salary Survey 2021: Hiring rate expected to increase but priorities will shift IT Salary Survey 2021: Over half of IT pros are satisfied at work – but nearly half are job hunting IT Salary Survey 2021: Security and cloud computing certifications on the up The requirement for software skills in the networking environment is being driven by a number of factors including the tremendous increase in the use of automation, the need to have an intelligent pipeline to remote users, and the growing necessity to efficiently network and secure multicloud resources. Many of these changes were already underway of course, but tons more are being driven by the COVID-19 pandemic’s impact on many enterprise data-center, campus and wide area network operations.To read this article in full, please click here

    Nvidia announces a 2023 launch for an HPC CPU named Grace

    Nvidia kicked off its GPU Technology Conference (GTC) 2021 with a bang: A new CPU for high performance computing (HPC) clients--its first-ever data-center CPU--called Grace.Based on the Arm Neoverse architecture, NVIDIA claims Grace will serve up to 10-times better performance than the fastest servers currently on the market for complex artificial intelligence and HPC workloads.But that’s comparing then and now. Grace won’t ship until 2023, and in those two years competitors will undoubtedly up their game, too. But no one has ever accused CEO Jen-Hsun Huang of being subdued.Nvidia made a point that Grace is not intended to compete head-to-head against Intel's Xeon and AMD's EPYC processors. Instead, Grace is more of a niche product, in that it is designed specifically to be tightly coupled with NVIDIA's GPUs to remove bottlenecks for complex AI and HPC applications.To read this article in full, please click here

    Nvidia announces a 2023 launch for an HPC CPU named Grace

    Nvidia kicked off its GPU Technology Conference (GTC) 2021 with a bang: A new CPU for high performance computing (HPC) clients--its first-ever data-center CPU--called Grace.Based on the Arm Neoverse architecture, NVIDIA claims Grace will serve up to 10-times better performance than the fastest servers currently on the market for complex artificial intelligence and HPC workloads.But that’s comparing then and now. Grace won’t ship until 2023, and in those two years competitors will undoubtedly up their game, too. But no one has ever accused CEO Jen-Hsun Huang of being subdued.Nvidia made a point that Grace is not intended to compete head-to-head against Intel's Xeon and AMD's EPYC processors. Instead, Grace is more of a niche product, in that it is designed specifically to be tightly coupled with NVIDIA's GPUs to remove bottlenecks for complex AI and HPC applications.To read this article in full, please click here

    First look: new O’Reilly eBook on Kubernetes security and observability *early release chapters*

    We are excited to announce the early release of a new O’Reilly eBook on Kubernetes security and observability!

    This practical book introduces new cloud-native approaches for Kubernetes practitioners who care about the security and observability of mission-critical microservices. Through practical guidance and best practice recommendations, this book helps you understand why cloud-native applications require a modern approach to security and observability practices and how to implement them.

    You should read this book if you want to:

    • learn why you need a security and observability strategy for cloud-native applications, and determine your scope of coverage;
    • understand key concepts behind Kubernetes’s security and observability approach;
    • discover how to split security responsibilities across multiple teams or roles; and/or
    • learn how to architect Kubernetes security and observability for multi-cloud and hybrid environments.

    Whether you want to know how to secure and troubleshoot your cloud-native applications, or are exploring Kubernetes for your organization and would like to solve security and observability challenges before making a decision, you will find that this book provides valuable insight.

    Get your early release copy here!

    The post First look: new O’Reilly eBook on Kubernetes security and observability *early release chapters* appeared first on Tigera.

    Tech Bytes: New Prisma SD-WAN Features Improve Operations, Analytics (Sponsored)

    Today’s Tech Bytes podcast explores new features in Prisma SD-WAN 5.5 from Palo Alto Networks, our sponsor for this episode. New features include event correlation and analysis, improved stats and analytics dashboards, and the ability to export telemetry to third-party devices and services. Our guest is Bill Pruitt, Sr. Product Manager, SD-WAN.

    The post Tech Bytes: New Prisma SD-WAN Features Improve Operations, Analytics (Sponsored) appeared first on Packet Pushers.

    Calico Cloud now available on AWS Marketplace

    We are pleased to announce that Calico Cloud, our software as a service (SaaS) for Kubernetes security and observability, is now available on AWS Marketplace! AWS users can now use Kubernetes security and observability as services along with managed Kubernetes services, all with a single click. For more information, see our official press release.

    Can’t wait to jump right in? Subscribe and deploy Calico Cloud on AWS Marketplace here.

    The post Calico Cloud now available on AWS Marketplace appeared first on Tigera.

    4 Data Center Security Issues That Will Make You Rethink Firewalling

    Recall what was happening a decade ago? While 2011 doesn’t seem that long ago (you rememberthe Royal Wedding, Kim Kardashian’s divorce, and of course Charlie Sheen’s infamous meltdown), a lot has changed in 10 years. Back then, most data centers were just starting to experiment with virtualization. Remember when it was considered safe for only a handful of non-essential workloads to go virtual? Well, today about half of the servers globally have become virtualized, and we’ve moved well beyond just virtualization. Nearly every enterprise data center has become a hybrid environment, with a mix of physical and virtual storage and compute resources. Containerization and the technologies supporting it are starting to take hold. And of course, cloud computing has become pervasive in all aspects of enterprise computing. 

    Now, the business benefits of today’s software-defined data center are many, especially in terms of resource efficiency and cost savings. But there’s no denying that complexity has also increased, because all the same resources are still needed—compute, storage, switching, routingbut now any number of these resources may be on-prem or in the Continue reading

    Loose Lips

    When I was in the military we were constantly drilled about the problem of Essential Elements of Friendly Information, or EEFIs. What are EEFis? If an adversary can cast a wide net of surveillance, they can often find multiple clues about what you are planning to do, or who is making which decisions. For instance, if several people married to military members all make plans to be without their spouses for a long period of time, the adversary can be certain a unit is about to be deployed. If the unit of each member can be determined, then the strength, positioning, and other facts about what action you are taking can be guessed.

    Given enough broad information, an adversary can often guess at details that you really do not want them to know.

    What brings all of this to mind is a recent article in Dark Reading about how attackers take advantage of publicly available information to form Spear Phishing attacks—

    Most security leaders are acutely aware of the threat phishing scams pose to enterprise security. What garners less attention is the vast amount of publicly available information about organizations and their employees that enables these attacks.

    Going back further Continue reading

    The Week in Internet News: Encryption Faces Serious Threats

    Encryption in danger: Encryption is essential, but a number of countries are trying to weaken its protections, Wired.com says. Recent attempts to weaken encryption have happened in Germany, Brazil, India, and other countries. “Technical as encryption can be, it is really about something at the very core of how we live our lives today: Should […]

    The post The Week in Internet News: Encryption Faces Serious Threats appeared first on Internet Society.

    Network Break 328: Arista CloudVision Adds Config Workflow Automation; Innovium ASICs Embrace SONiC

    On this week's Network Break we cover Arista's careful steps into automation, new support for SONiC from Innovium, a cash injection for whitebox NOS maker Pica8, a startup tackling cloud infrastructure and application experience, and why you can blame cosmic rays the next time there's a network problem.

    The post Network Break 328: Arista CloudVision Adds Config Workflow Automation; Innovium ASICs Embrace SONiC appeared first on Packet Pushers.

    Developer Challenges

    Developer Challenges
    Developer Challenges

    Welcome to Developer Week at Cloudflare! We are excited to announce we are running a series of Developer Challenges throughout the week to give you the excuse you needed to play with all our new features.

    Between now and April 19 you’ll get to know the Cloudflare developer tools and walk away with a fun new app (or five) to your name. You’ll also become a part of the Cloudflare Developer community!

    We hope that some of you will be inspired to create your next project using Cloudflare Workers, Workers KV, Pages, Durable Objects and all the developer-focussed products that Cloudflare offers. There’s already a vibrant community building applications using the Workers ecosystem; we hope the Developer Challenges inspire you to build on Cloudflare.

    What are Developer Challenges?

    We know that some people are new to the Cloudflare services for developers and that some of you have been using them for a while, so we have come up with two streams of challenges.

    If you’re just getting started with Cloudflare, there will be a new challenge each day of the week that will help you level up your knowledge in no time. There’s also an extra bonus challenge Continue reading

    Packet Pushers LiveStream – Alkira and Multi-cloud Networking

    We are doing the first ever Packet Pushers LiveStream on Thursday, April 22nd 1000PST/1300CET/1700GMT. Our take on a LiveStream is a cross between live podcast, presentation and interviews where the audience  can join us live for recording.   Our sponsor is Alkira and Multi-Cloud Networking. The Alkira product is interesting in its ability to build network […]