RouterOS 7 goes RC

What’s new in 7.1rc1 (2021-Aug-19 13:06):

!) added support for IPv6 NAT (CLI only);
!) added support for L2TPv3 (CLI only);
*) added “expired” user status with suggestion to change password (WinBox v3.29 required);
*) added bridge HW offload support for vlan-filtering on RTL8367 switch chip (RB4011, RB1100AHx4);
*) added password strength requirement settings;
*) added skin support for WinBox (WinBox v3.29 required);
*) fixed support for RIP (Routing Information Protocol);
*) improved general stability and performance;
*) other minor fixes and improvements;

Portable Raspberry Pi Game system

Looking for a way to take all of those retro games with you? The folks over at VILROS have a solution for you. It’s called the Retroflag GPi CASE with Carrying Bag for Raspberry Pi Zero and Zero W. Add a $10 Raspberry Pi Zero, an SD card, and some software and away you go.

Retroflag GPi CASE with Carrying Bag for Raspberry Pi Zero and Zero W with Safe Shutdown - Vilros.com

https://vilros.com/products/retroflag-gpi-case-with-carrying-bag-for-raspberry-pi-zero-and-zero-w-with-safe-shutdown

Musings of an ISP engineer Part 1

-Mondays are for emergencies leftover from the weekend. Try not to schedule meetings or things that can’t be fluid.

-Customers lie, even when they don’t do it intentionally. They can’t help it.

-Sometimes you have to ask your questions in different ways. The more educated the person you are asking the question to, the more you have to do this.

-Automation is the future. Learn it. Embrace it.

-When dealing with customers make sure to get them to define anything halfway vague. I once had a 30 minute call with a customer who said “it” wasn’t getting online. “It” ended up being a Toaster. Damn you iOT!

-Configurations just don’t change unless someone or something made it change. Quit spending countless hours second guessing your production configuration. If it has been working for the past 90 days and all of a sudden it isn’t, do a once over but don’t spend alot of time on your config. Spend your time looking for outside influences. Layer 1 and layer 2 issues are more common than OSPF or BGP configs just changing.

-I hate buzzwords. Stop sending me emails that are nothing but buzzwords

-If you have a networking product and it doesn’t support IPv6, the following image automatically comes to mind on how you get to work

-Once a packet leaves your network you have very little control over it. Your job is to know what those influences are so you can predict how your network reacts.

This is just on map from one backbone provider of their connectivity to the Global Internet.

-Ask for as much stuff as you can before the sales contract is signed. Your salesperson might not be there tomorrow.

-While on the topic of asking for things. Ask for route maps from your fiber providers. Ask what gear you are plugged into and where it is. Too many times I have known more about the physical layout of my circuit than the tech dispatched.

ISP networks are far different than enterprise networks.

-Network design is Philosophy mixed with best practices, mixed with vendor-specific logic, and a side of experience. Realizing there are many right answers will make you a better engineer.

-Just reboot it is an acceptable fix the first few times for a network device.

-If you ask me to fax you something I will probably stop talking to you. Only the government and vacation scammers use faxes. I don’t want to talk to either one of you.

-Cisco live is just a cult meeting for geeks.

-An ISP network is as close to a living thing as you can get with computer parts. Seasoned veterans can look at traffic flows and know if something isn’t right. A good ISP engineer just doesn’t know just how to turn the knobs and make things work. There is a lot of reading between the lines.

-Make friends with the NOC folks at data centers where you have equipment. They can save your ass.

-Your job as a service provider is to provide raw Internet to your customers. Don’t worry about what they are doing. Give them the bandwidth and call it a day. Your life will be simpler.

-I don’t get excited about much in terms of outages. I can’t control fiber cuts. I can’t make the splicers work faster. I can’t make the storm go by quicker so we can climb the tower. Save your energy for when you can really make progress.

-There is never money for redundancy until after you need it. Then it’s your fault it’s not redundant.

-Learn speed reading. At the very least learn how to scan large amounts of text quickly.

-Knowing how to google is not enough when searching online. Knowing how to filter and read search results is an art.

-There are reasons I built my own bar. Most of them are due to user interactions.

-Create information funnels. Monitoring software, mailing lists, co-worker messages, upstream outages, and even local power and weather are just a few things you and/or your team needs to know. Cutting down the time of sifting through things is huge! find a way to get the most relevant information in front of you the quickest.

-Strings of expletives can be very calming. Even better when said out loud. My wife can attest to hearing, from the ground, profanity ridden conversations I am having with with inanimate objects while I am 300 feet on a cell tower.

-People you can learn the most of are probably not even in your field of work. That outside perspective can make you grow more than any technical manual you may read.

-If I am in charge of the network I don’t do network by democracy. Subscribe to my philosophy or I’m out.

-Be open to input and a second set of eyes. Just because you have to subscribe to my Philosophy doesn’t mean I don’t want your input or can’t learn from you.

-Well rounded engineers are hard to find. Round engineers are easy to find.

-Every team should have a researcher /analyst. These are the Gunnery Sergeants of the IT world. I spend more my time researching prices, specs, etc. than I want to.

-I don’t care about windows vs mac. Android vs iPhone. Why do you care so much? Hellman’s vs Miracle whip is the true discussion.

-Mac and linux users love to tell you why they think you should come over to their side. I don’t want to join your cult. <this was written on a mac>

As they say at the end of the Casper slide..stay tuned for part 2

Justin’s laws of running an ISP

Some of you may recognize these similar to Murphy’s laws of combat

1. 3am is when you find out your backups don't work

2.  Incoming ddos attacks have the right of way

3.  Don't look important, important people get asked tech support questions.

4.  There is always a way.

5.  The easy way requires money.

6.  Professionals are predictable, it's the amateurs that are 
    dangerous.

7.  Things break when:

       a. When you're ready for them.
       b. When you're not ready for them.
       c. At 11Pm on friday night after your 6th whiskey sour
       d. 2 minutes before the door for your 4 hour flight closes


8.  If a meeting is going too well, wait for the 120 slide powerpoint.

9. If you can't remember the password, its something simple.

10. That hard drive failure you have been ignoring just crashed your san due to some bug

11. That temporary fix is still temporary 3 years later

12. If your coding session is going well, then your save will get corrupted.

13. "This will take just a second" never does.

14. Anything you do can get you hacked, including nothing.

15. Never share a server room with someone who eats garlic with every meal.

16. That one cable you need won't be in your kit.

17. It's always DNS, even when it's not..

18. When it's not DNS it's the network. But its really DNS. 

19. The software fix that will bring the network back up isn't available because your service contract expired.  

20. Your cell phone battery could be 100% charged but as soon as you dont have a charger it will drop to 1%

22. If a feature is useful, it will have to be changed.

23. If a feature is useless, it will be the only thing documented.

Important Cambium Upgrade by July 1, 2021

UPDATE: Cambium has extended this to January, 31 2022.

Updated Bulletin
https://www.cambiumnetworks.com/support/field-service-bulletins/fsb9083/?fbclid=IwAR0rhizW7jkovSvBFQnUTWyqEKL41nMEceEyfGaeFMAIOIiWNGZTVU0HmTE

On July 1, 2021 Cambium will update the certificate for https://cloud.cambiumnetworks.com 14 to use a new Certificate Authority. All cnMaestro managed devices without the updated Root CA certificate will fail to connect to the cnMaestro Cloud service. Please see the following Field Service Bulletin (FSB) for ePMP upgrade instructions.
https://www.cambiumnetworks.com/support/field-service-bulletins/fsb9083/

https://community.cambiumnetworks.com/t/notice-need-for-epmp-upgrade/74457

As of the bulletin the minimum softwar versions to support the new certificate are:

Family Model Version
cnMatrix cnMatrix EX2K 2.1-r5

cnPilot
cnPilot R200, R200P 4.6-R16
cnPilot R201, R201P 4.6-R16
cnPilot R190V, R190W 4.6-R16
cnPilot e400/e500 3.11.4.1-r3
cnPilot e410/e430w/e600 3.11.4.1-r3
cnPilot R195P 4.7-R6
cnPilot R195W 4.6-R16
cnPilot e501S/e502S 3.11.4.1-r3
cnPilot e700 3.11.4.1-r3
cnPilot e425/e505 4.1-r3
cnPilot e510 3.11.4.1-r3

cnRanger
Sierra 800 1.1-r3
Tyndall 101 1.1-r3

cnReach N500 5.2.18h

Enterprise WiFi 6
XV3-8 6.1-r5
XV2-2 6.1-r5

ePMP 1000
Hotspot ePMP 1000 Hotspot 3.3.1.2-r1

ePMP
ePMP 1000, Force 180/200 4.5.0
ePMP 2000 4.5.0
ePMP Elevate XM/XW 4.5.0
ePMP Force 190 4.5.0
ePMP Force 300 4.5.0
ePMP PTP 550 4.5.0
ePMP MP 3000 4.5.0
ePMP PTP 550 E 4.5.0
ePMP Elevate SXGLITE5 4.5.0
ePMP Elevate LHG5 4.5.0
ePMP 3000 4.5.0

PMP
PMP 450i, PMP 450, PMP
450m, PMP 430 SM 20.0 Beta-6
PTP 450, PTP 450i, PMP 450
Retro 20.0 Beta-6
Micro-pop Omni/Sector 20.0 Beta-6

PTP
PTP 650 650-01-50
PTP 670 (650 Emulation) 670-01-50,
670-03-12
PTP 670, PTP 700 700-03-11