[j-nsp] EX-series automation, NETCONF woes

2009-01-27 Thread Ross Vandegrift
Hello everyone, I've spent the past few weeks developing automation software for the JUNOS EX-series switches. During this time, I have come to miss IOS for its SNMP-based configuration. In case anyone from Juniper is reading, I'd like to describe why I have found NETCONF to be such a painful

[j-nsp] Control Plane Protection

2009-01-27 Thread Andrew Jimmy
You are concerned about DoS attacks against a key perimeter router in your company. Configure router so that it limits the aggregate rate of ARP traffic toward the route processor to 75 packets per second. Routing control traffic marked with an IP Precedence value of 6 should be limited to 100

Re: [j-nsp] Control Plane Protection

2009-01-27 Thread Tim Eberhard
There is an excellent book out that you should read. JUNOS Enterprise Routing. Here is what you're looking for: