Posts

Showing posts with the label Juniper

Happy 2026!

Image
It is time to wish everybody happy holidays and do annual reflection of 2025. Career and professional development This blog has started to support my CCIE studies. Surprising it is, but I am still pursuing the title.  With almost 20 years in networking I still think that CCIE has some value, at least as a long-term goal. This December I passed 305-401 ENCOR and started 1.1 blueprint with INE subscription. I keep INE for the third year now and happy with their materials and lab setup. To prove my new title I did some research and studies on what it is to be a Technical Architect. Among others I took a PM and BA foundation trainings, passed Juniper Associate Design test. Lot of "buzz technology" trainings were taken: Cisco Infrastructure for AI, advanced prompting, Cisco Security solutions, etc. It's always good to keep up with the market, I don't regret any minute spent on those. Project-wise I had a good one of integrating on-premises routing / Azure cloud routing / C...

Juniper software. Part 1

Image
 Intro The Great Juniper Firewall is welcoming visitors Over the last decades I was mostly working with routing and switching stack and corresponding protocols and techniques. OSPF, BGP, STP and MPLS were my best friends keeping me busy and feeding my family. What I am spending most of my time nowadays though are different pieces of software. When technologies seems to be stable, management, provisioning, orchestrating, and monitoring systems are booming around.   This is an attempt to wade through what Juniper offers in this regards, particularly for Juniper SRX firewalls. List is probably not complete:  J-WEB Junos Space Security Director Cloud ATP cloud Sky Enterprise Apstra Contrail Mist Being heavily involved in this project   Juniper & CTC  I'm familiar with Mist only and had to search about the rest. Some of those above came from the Juniper Open Learning training, which by the way is a brilliant initiative. Some are used by my clients. Agai...

This year and a New Year's resolution

Image
The last time I wrote something in my blog was a year ago! This is not what conscious people should do. Apart of my laziness, there was a reason for that – it was a tough time.  First, Veon to whom I devoted 7 years and me are no longer together. Veon decided to outsource all its technology staff, broke all organization structures, and laid off all IT management (three "alls" in a row, eh 😁). I reached my ceiling as an engineer and during last several months mostly worked as a field manager trying to plug holes. Me and Bi.Zone In spring, I went to Moscow and have been working as network security specialist at Bi.Zone for the half a year. It was an amazing time. Good office, young and brilliant colleagues, trips to Kazakhstan. What is more, I passed this little one, which took me 3 month of learning and practicing.  Bi.Zone I miss you and I appreciate that intensive experience in data centers, Juniper, Palo Alto, virtualization, automation,...

EDU-JUN-JMV lab on vMX. Part1.

Image
This time I'm going to continue my experiments with Juniper virtualMX I've started in this getting started post   It was written in Russian, but contains enough pictures and CLI issues which describe themselves. Now I'll cover how to set up Junos MPLS and VPN's labs with vMX. That may be useful for companies with a low education budget as a way to spread knowledge among staff. Objective I intend to solve two main tasks. Firstly, I have to deploy an appropriate topology in a virtual environment and accomplish two basic labs: Lab-1 and Lab-6 so as to prepare baseline configurations used in the rest of labs. Secondly, I must see that it works :) thus I will perform Lab-12 LDP based VPLS - my beloved technology. Physical topology. Almost physical) Let's take a diagram from site provides Juniper labs for rent  and make something similar. It will take two vMX - vr1 and vr2 for the core network and a couple vMX as two PE routers called mx...

Juniper VMX. Скрины консолей и бесстыдного хвастовства псто

Image
Помимо пьянства, блядства и тунеядства я же еще и обладатель LPIC-1 и JNCIS-SP сертификатов. Которые норовят просрочиться. Но, благо, есть хороший человек, давший поюзать  неслабый сервер. Качаем vMX jinstall-vmx-14.1R1.10-domestic , в нем находим: подробную инструкцию с картинками, образ вируальных машин для разных платформ. Ставим на сервер Centos + KVM, конфигурируем несколько виртуалок, делаем доступ к ним и вуаля - у нас несколько виртуальных роутеров Juniper! Теперь подробности) Делаем нормальный стенд Для осмысленности и конечности задумки берем стандартную топологию из лабораторок курса AJNR Реализуем, для начала, центральную часть - роутеры SJ, Monr and Denv. Настраиваем по гайду из пакета 3 VM. virsh # list  Id    Name                           State ----------------------------------------------------  6     SJ             ...