Author Archives: pim

Re-instating a revoked OpenVPN certificate

The OpenVPN documentation will tell you how to revoke a user-certificate but NOT how to re-instate one. (or at least I was unable to find it) So here is a recipe on how to do this, using the easy-rsa scripts:

Posted in Geen categorie | Leave a comment

Subnetting 101

Posted in Geen categorie | Leave a comment

Calculating DeciBels for eg Wi-Fi networks and the conversion to mW

When calculating DeciBels, bear in mind that it is always a comparative number, eg output as compared to input power. This can be used to compare aerial’s etc. Here are examples of typical dB values: 0dB  =   same power 3dB =      2 *  power … Continue reading

Posted in Wi-FI Networking | Leave a comment

Creating an IPsec Dynamic VPN / Remote Access VPN on the SRX firewall for the Pulse Secure client, here on OsX

In the PDF below, I describe how to setup a Dynamic / Remote Access IPsec VPN on the Juniper SRX. The client in my case was an OsX machine running Mohave. Pulse secure worked admirably and can be downloaded for … Continue reading

Posted in Juniper-Junos | Leave a comment

If ip-monitoring does not work on an SRX cluster..

During a recent project, I built a Juniper SRX cluster where a Reth connected via a LAG to a switch, which in turn is connected it to the Internet. In case of a failure, they Reth should failover to the … Continue reading

Posted in Juniper-Junos | Leave a comment

Juniper SRX and Active and Passive FTP port forwarding

As you probably know, FTP comes in two flavours:-Active FTP where data port 20 is used on the Server and the client offers a random port > 1023 to the Server via a “Port” command. Hosting this behind a Juniper … Continue reading

Posted in Juniper-Junos | 1 Comment

A solution to the NAT traversal problem between a Nintendo Switch and the Juniper SRX Firewall.

I recently had to solve a problem with my son’s Nintendo Switch where the game called “Splatoon” would not find any Internet players because “there was a NAT traversal problem”. Googling told me the wildest stories from completely exposing the … Continue reading

Posted in Nintendo Switch | 1 Comment

Junos Routing-Instance, RIB-Groups, imports, and Logical Tunnel Interfaces explained.

This post will explain the wonders of routing-instances within Junos. (comparable to “vrf-ligth” with some other Vendors..) It wil also cover shady areas like RIB-groups, “import instance-from” and finally, Logical Tunnel – Interfaces. The examples should work.. although I had … Continue reading

Posted in Juniper-Junos | Leave a comment

IPv6 and Neighbor Discovery de-mistified..

Posted in Cisco and IPv6 | Leave a comment

Configuring an VMPS server with FreeRadius

Note: this setup is probably the WORST documented peace of Open Source software I have come across and all forums times I have found on it are of people struggling with it.┬áSo here goes.. “how do I use Freeradius as … Continue reading

Posted in Cisco Networking | Leave a comment