Dale Coghlan

327 posts

Dale Coghlan banner
Dale Coghlan

Dale Coghlan

@DaleCoghlan

SRE & Car Enthusiast

Sydney Australia Katılım Temmuz 2014
251 Takip Edilen295 Takipçiler
Dale Coghlan
Dale Coghlan@DaleCoghlan·
My usg-3p is on its last legs now. Suffered a dead wan port from latest storms, so now using wan2 as primary wan port. Planning ahead, should I be looking at a UDM Pro or something else?
English
0
0
0
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
@etherealmind I found that even those who understood that there was a finite set of resources didn't understand the implications of what would occur if the limits were exceeded, and would then proceed to complain that the firewall should handle things gracefully.
English
0
0
0
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
Well that was a first. Microsoft Teams on my mac quit whilst I was in a meeting and was removed from my machine. WTF
English
1
0
2
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
In the final days in my current role, today has me looking over some firewall rules. I had a chuckle at the list of rules with the word 'temp' in the description. Some of these date back to 2012!
English
2
0
8
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
@UltTransformer Generally not. The NSX manager pushes the entire multi-tier nested group as a single object for performant lookups.
English
0
0
1
0
Chris Noon
Chris Noon@ChrisGNoon·
@DaleCoghlan Oh ok, that's interesting. I assume even if it's 1 rule, with groups... large groups or multi-tiers of nesting will have an adverse effect on performance/rule processing latency?
English
1
0
0
0
Chris Noon
Chris Noon@ChrisGNoon·
Hi @DaleCoghlan. I'd DM you, but you're all locked up. I watched your dFW Best Practices presentation in Barcelona: youtube.com/watch?v=fX9pwi… One of the optimizations you mention is having ports defined as such: 80, 443, 8080. Understood. What about the source and dest groups?
YouTube video
YouTube
English
3
0
2
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
Returning to work tomorrow after almost 2 months of leave, and I think its time for a change in role. Any suggestions?
English
2
0
5
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
@gnawt Haha yes, more leave sounds like a good idea.
English
1
0
4
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
@lamw @nic972 @lamw is correct. No public API, but since the website was written in Clarity/Angular it was relatively straight forward to figure out the correct URIs and payloads. I managed to find a few issues with the site along the way, so I am wondering if I can open bugs for configmax lol
English
1
0
1
0
William Lam
William Lam@lamw·
@nic972 @DaleCoghlan There's no public API, but luckily the team just used JSON payload (structure for the tool) can benefit automation. Yes, idea of checking against #VMWonAWS or any other env for that matter would be useful
English
2
0
1
0
Dale Coghlan
Dale Coghlan@DaleCoghlan·
@SupraOva It needs internet access so it can query configmax.vmware.com directly. Having a off-line mode would require an ability to "download" or cache the entire dataset. While it's not impossible to do with these cmdlets, it's something I may look to add natively in the future.
English
0
0
1
0