Re: Need Network Engineer for Small Project

2020-01-03 Thread George Toft

Taking conversation off list.

Regards,

George Toft

On 1/3/2020 8:39 AM, Herminio Hernandez Jr. wrote:

I can meet with you. What is your availability?

Sent from my iPhone


On Jan 2, 2020, at 6:57 PM, George Toft  wrote:

Need Network Engineer to consult/guide for a few hours on a small project.

Existing: Three node mesh VPN between three locations.  Been in-place since 
2012.  Recently upgraded VPN devices (Linksys LRT-224's) as a part of the next 
step.  However, the VPN device at one node is not the default gateway for that 
LAN segment - the old device is as it is bound to a public IP address that the 
customer's customers access by IP address and not name.  Added static routes to 
LAN devices to route traffic to the other two nodes via the VPN device.  This 
has been working since September. This doesn't mean we can't reconfigure if we 
have to.

Next Step: Customer wants two ISP connections using different media.  Old ISP 
is Cox Business.  New ISP is CenturyLink.  Have installed new devices at office 
and data center and created second VPN tunnel between these two nodes.  Unable 
to get traffic to reliably use second VPN.  I can get the traffic to go down 
the CenturyLink VPN, but only by configuring the CenturyLink devices with the 
same IP addresses as the Cox devices.  This is OK for an emergency, but not the 
desired end result.

Final step: Get traffic to fail-over from one tunnel to the other when the 
primary VPN fails.  Cox has already notified customer that the cable needs to 
be replaced and there will be several days of downtime, so this is a certainty.

Lots more details to share.  Need to show topology.  If you're with me at this point, 
saying "Uh-huh, George, easy stuff" then please email me.  I'm willing to pay, 
so this will get you some fine craft beer, not that free beer.  I anticipate a 
preliminary meeting to discuss requirements, then some on-site working sessions.

--
Regards,

George Toft

---
PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
To subscribe, unsubscribe, or to change your mail settings:
https://lists.phxlinux.org/mailman/listinfo/plug-discuss

---
PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
To subscribe, unsubscribe, or to change your mail settings:
https://lists.phxlinux.org/mailman/listinfo/plug-discuss

---
PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
To subscribe, unsubscribe, or to change your mail settings:
https://lists.phxlinux.org/mailman/listinfo/plug-discuss

Re: Need Network Engineer for Small Project

2020-01-03 Thread Herminio Hernandez Jr.
I can meet with you. What is your availability?

Sent from my iPhone

> On Jan 2, 2020, at 6:57 PM, George Toft  wrote:
> 
> Need Network Engineer to consult/guide for a few hours on a small project.
> 
> Existing: Three node mesh VPN between three locations.  Been in-place since 
> 2012.  Recently upgraded VPN devices (Linksys LRT-224's) as a part of the 
> next step.  However, the VPN device at one node is not the default gateway 
> for that LAN segment - the old device is as it is bound to a public IP 
> address that the customer's customers access by IP address and not name.  
> Added static routes to LAN devices to route traffic to the other two nodes 
> via the VPN device.  This has been working since September. This doesn't mean 
> we can't reconfigure if we have to.
> 
> Next Step: Customer wants two ISP connections using different media.  Old ISP 
> is Cox Business.  New ISP is CenturyLink.  Have installed new devices at 
> office and data center and created second VPN tunnel between these two nodes. 
>  Unable to get traffic to reliably use second VPN.  I can get the traffic to 
> go down the CenturyLink VPN, but only by configuring the CenturyLink devices 
> with the same IP addresses as the Cox devices.  This is OK for an emergency, 
> but not the desired end result.
> 
> Final step: Get traffic to fail-over from one tunnel to the other when the 
> primary VPN fails.  Cox has already notified customer that the cable needs to 
> be replaced and there will be several days of downtime, so this is a 
> certainty.
> 
> Lots more details to share.  Need to show topology.  If you're with me at 
> this point, saying "Uh-huh, George, easy stuff" then please email me.  I'm 
> willing to pay, so this will get you some fine craft beer, not that free 
> beer.  I anticipate a preliminary meeting to discuss requirements, then some 
> on-site working sessions.
> 
> -- 
> Regards,
> 
> George Toft
> 
> ---
> PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
> To subscribe, unsubscribe, or to change your mail settings:
> https://lists.phxlinux.org/mailman/listinfo/plug-discuss
---
PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
To subscribe, unsubscribe, or to change your mail settings:
https://lists.phxlinux.org/mailman/listinfo/plug-discuss

Need Network Engineer for Small Project

2020-01-02 Thread George Toft

Need Network Engineer to consult/guide for a few hours on a small project.

Existing: Three node mesh VPN between three locations.  Been in-place 
since 2012.  Recently upgraded VPN devices (Linksys LRT-224's) as a part 
of the next step.  However, the VPN device at one node is not the 
default gateway for that LAN segment - the old device is as it is bound 
to a public IP address that the customer's customers access by IP 
address and not name.  Added static routes to LAN devices to route 
traffic to the other two nodes via the VPN device.  This has been 
working since September. This doesn't mean we can't reconfigure if we 
have to.


Next Step: Customer wants two ISP connections using different media.  
Old ISP is Cox Business.  New ISP is CenturyLink.  Have installed new 
devices at office and data center and created second VPN tunnel between 
these two nodes.  Unable to get traffic to reliably use second VPN.  I 
can get the traffic to go down the CenturyLink VPN, but only by 
configuring the CenturyLink devices with the same IP addresses as the 
Cox devices.  This is OK for an emergency, but not the desired end result.


Final step: Get traffic to fail-over from one tunnel to the other when 
the primary VPN fails.  Cox has already notified customer that the cable 
needs to be replaced and there will be several days of downtime, so this 
is a certainty.


Lots more details to share.  Need to show topology.  If you're with me 
at this point, saying "Uh-huh, George, easy stuff" then please email 
me.  I'm willing to pay, so this will get you some fine craft beer, not 
that free beer.  I anticipate a preliminary meeting to discuss 
requirements, then some on-site working sessions.


--
Regards,

George Toft

---
PLUG-discuss mailing list - PLUG-discuss@lists.phxlinux.org
To subscribe, unsubscribe, or to change your mail settings:
https://lists.phxlinux.org/mailman/listinfo/plug-discuss