Firewalls: Expensive, Broken Routers

In a previous post on IPS, I made a fairly negative comment on the value that you get from enterprise firewalls in the modern … [Read more...]

Why Should I Consider IPv6?

Network Overlap

A lot of people are talking about IPv6, but I'm using IPv4 and quite content. I have plenty of public addresses. As long as … [Read more...]

Understanding When a Cisco ASA NAT Rule Can Override the ASA Routing Table

cisco-asa

Thanks to @bobmccouch who responded multiple times to my frustrated tweeting about Cisco ASA packet forwarding weirdness … [Read more...]

My Utopian Daydreams for 2012

Wouldn't the world be perfect if... QoS schemes were a global standard? Now, you can point to recommended best practices, … [Read more...]

Cisco ASA 8.3+8.4 Hairpinning NAT Configuration

hairpin

I ran into an issue over the weekend where a VPN client was unable to access a remote office connected via an L2L tunnel … [Read more...]