[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
OOB
- Subject: OOB
- From: mansaxel at besserwisser.org (Måns Nilsson)
- Date: Tue, 26 Jul 2011 23:34:04 +0200
- In-reply-to: <CAL9jLaYN5g=UTHWtSE-v34Y-eTqgtthEejE49q9Hck1CNKiWDw@mail.gmail.com>
- References: <CAB_zYd+Dswo=+YXSDz9qW4EKXX0LZE8i66rYDjFH+hXmhDpH5g@mail.gmail.com> <018501cc4b9c$bdb1f6c0$3915e440$@org> <CAL9jLaYN5g=UTHWtSE-v34Y-eTqgtthEejE49q9Hck1CNKiWDw@mail.gmail.com>
Subject: Re: OOB Date: Tue, Jul 26, 2011 at 10:14:21AM -0400 Quoting Christopher Morrow (morrowc.lists at gmail.com):
> On Tue, Jul 26, 2011 at 10:03 AM, Paul Stewart <paul at paulstewart.org> wrote:
> > We do everything in-band with strict monitoring/policies in place.
>
> what do you do if your in-band fails? if a router/switch/ROADM is
> isolated from the rest of your network?
> (isn't that the core point of the OP?)
Vendor C sells nice small routers with something like CAB-OCTAL-ASYNC
_and_ a 3G modem instead of the BRI port. The 3G modem keeps its
connection up (our telecom provider has true flat rate on domestic 3G,
YMMV) and VPN's to the head office much like any other telecommuter. This
cuts through all telco stupidity with firewalled or NAT'ed 3G phones
etc, especially if one uses the break-out-from-hotel-LAN functions of
the VPN system. The router of course actively keeps the VPN up and
reestablishes it if needed.
--
M?ns Nilsson primary/secondary/besserwisser/machina
MN-1334-RIPE +46 705 989668
I'm wearing PAMPERS!!
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: Digital signature
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20110726/2dc73f89/attachment.bin>
- Follow-Ups:
- OOB
- From: morrowc.lists at gmail.com (Christopher Morrow)
- References:
- OOB
- From: harbor235 at gmail.com (harbor235)
- OOB
- From: paul at paulstewart.org (Paul Stewart)
- OOB
- From: morrowc.lists at gmail.com (Christopher Morrow)