We did have an interesting security event at work this week though. Someone responded to a phishing email that directed them to a OneNote where they put in AD creds and then it started spamming the entire company with emails. I ended up fixing the machine that had AV that had not been updated in months and the user was not using our two factor for login. We now have a 90 day PW policy and everyone had to reset their passwords.

So I saved the questions to a draft instead of emailing them to my self in case I had a little time to work on them, at work. I’m now realizing I can see the answer and the question but if I try to avoid cheating by looking below I should be fine haha. Anyway, my guess was A, the I realized the above comment and I was like ‘nice’ csb

Anyway, what the hell does PVST stand for?

Per-VLAN Spanning Tree (PVST) is a Cisco proprietary Spanning Tree Protocol (STP) which operates a separate instance of Spanning Tree Protocol (STP) for each individual VLAN. A separate instance of Spanning Tree Protocol (STP) for each VLAN helps VLAN to be configured independently and also can perform better.

Nice! Moooooving onnnnn omg whyyyyyy

Honestly, I have no idea at this point and I’m sure I’ll cover more material on this at some point so im not going to stress it and I’ll read the answer

You know, that sounds really complicated but there was the issue of ‘it doesn’t say pick two’ but the two given answers seem logical. The naming convention is a little different. So, System ID extension value, means vlan? ok.

First off I dont know what a BPDU is, so lets find that out. What is BPDU since we have taken away the option to use an HTML editor and dont have a field for ‘URL name’ in the drop down text but you can totally edit the HTML for a few extra clicks, I think I’ll keep it like this. I guess that’s intended functionality for the block editor at this point. Ok, fine ill click over to edit as HTML and update it.

Acronym for bridge protocol data unit. BPDUs are data messages that are exchanged across the switches within an extended LAN that uses a spanning tree protocol topology. BPDU packets contain information on ports, addresses, priorities and costs and ensure that the data ends up where it was intended to go. BPDU messages are exchanged across bridges to detect loops in a networktopology. The loops are then removed by shutting down selected bridge interfaces and placing redundant switch ports in a backup, or blocked, state.

Well, I know have the most basic info but I’m still not sure what the hell it does or contains. Or why.

I’m not going to say that reading that is headache inducing as to the amount of info I don’t quite understand but I will say I have a ways to go with it. Like where does the bridge ID come in with the VLAN id. Like how does it interact with that? Is that the link between routers? The second part about the trunking header used to understand what routers are ‘aware’ of the VLAN makes sense. The part about the 12 bits in the middle will be slightly confusing. TLV is confusing because I assume it means the same as TTL but its Type-Length Value.

The thing is, when you keep reading these things, you start to gain more of an understanding. Like you use a VLAN assignment, which is sort of the same as trunking, on 2 ports. You dont have to do that but it is an option. My guess without looking below is D and it looks like im right.

ok, next question.

no idea

Still not sure i understand the ideas but ok

My guess would be C but I wouldnt assume to add additional information to the headers but I would assume it to do ‘costing’ as it where, to determine fastest link and balance traffic

I was right. ok so, now I have to go get my tires rotated since they did not do that last Sunday.

Ahh the joys of documentation, Cisco book CH. 9

So anyway, lots to learn here and lots of leg work but whatever. I’m having a good time and maybe in a soild year of ‘lunches’ ill have this “under my belt”

Make belts great again! Anyway, lets do this

Ok, image posting has returned in full effect. Lets look at some questions!

No idea. lets find out what STP is

ahh ok, no loopsies

I want to guess B and C

Ok, so its still in STP state in which case blocking does actually make sense. Or things could stay the same. Honestly, its a really hard ball game at this point but the thing is, boy progression sure is great. Trust me, as a WoW player, I would know this …

A seems like the lowest but im not counting the number of digits so its C. Good thing to note , yep. sure is

hummm cd???

starting to get this

this is beyond me.

ok, im following

ok ….

this is simply terminology and ill try to remember it.

interesting. Well, this chapter was pretty well laid out. And I learned, I still have a lot to learn but right now we are covering all the basic’s and will get into tons of detail at a later date. I did at least go through these questions though.

CCNA Book 1, Ch 8,9…part uhaa, w/3..never mind it’s just 8.

So you may be unaware of this but there's a rather large community of tech workers on twitter that all comunicate on a daily basis and if you remember Wolf Pack or NWO era professional wrestling, its pretty much the same. But basically every one thats like a product owner on something important thinks they are like some sort of half assed cyber punk from the future that doesn't give a shit about common sense stuff and thinks "the cloud" and "containers" and fucking "information security" is great while forgetting the basics of how all of this shit works.

Anyway, here is his public page

When you see something that looks like this on infosec twitter, its probably a highway to the boomer zoomer zone that lives with no ragrets


Its possible its a hela 1337 troll but unlikely lol. Anyway, why dont we learn how to do things instead of express the fact that we are rude and cannot read??

Anyway, lets talk networking here hahaha I guess I could provide the names of the chapters but you could also read the book and find out! Don’t take my word for it!

Honestly, its a subnet but it may also be E. To be real, its kind of a confusing concept as its very similar to a subnet and I dont really understand “trunk”

Not really completely understanding this but it helps to clear up what a broadcast domain is. I guess.

I think you can have them all on the same subnet but you need to have a subnet right?

lol ok. further confusion

My money was on B however I felt that C was an unlikely possibility.

absolutely no idea

I should really learn more about trunking at this point since I absolutely do not understand it. VLAN Trunking

Trunking, a term frequently used in IT and telecommunications, refers to a network configuration that efficiently conveys data between multiple entities without using one-to-one links. Similar to how a tree trunk carries water to every branch and leaf, a network trunk essentially carries multiple streams of signals to the correct locations. For managed services providers (MSPs), trunking in networking will typically relate either to link aggregation or virtual local area network (VLAN) trunking, a practice that is integral to VLAN configuration. IP trunking refers specifically to Voice over Internet Protocol (VoIP) services, which may be relevant to some MSP customers as well. 

I’m not really clear on how this concept of, apparently a broadcast domain, is different in practical uses from a subnet. Maybe I can find some contrasting info to explain it. I didn’t really find this helpful but subnets are fucking address segments that are layer 2 and vlans are layer 3 and I have no idea how they are “comprised” or assigned The Difference Between VLANs and Subnets

At a high level, subnets and VLANs are analogous in that they both deal with segmenting or partitioning a portion of the network. However, VLANs are data link layer (OSI layer 2) constructs, while subnets are network layer (OSI layer 3) IP constructs, and they address (no pun intended) different issues on a network. Although it’s a common practice to create a one-to-one relationship between a VLAN and subnet, the fact that they are independent layer 2 and layer 3 constructs adds flexibility when designing a network.

This next paragraph is for my only fans

Just kidding, a little humor for you there. But I did realize I can keep an a href link text up and plug in what I want into it and copy and paste without having to switch the block to HTML to edit it. So that’s nice.

D for sure seems logically true based on how other systems work but A, does that one show all vlans? Oh shit he hit that you pick 2 situation again. Lets find out.

I guess D issss wrong. ITs happened before! Damn it all!

what the hell is he looking at “see this wall? its made of wall!”

Good to know, running-config will show vlans

I mean, I dont really understand trunking which I guess is the same as having a vlan or broadcast domain but I felt like I learned something, none the less.

I’m guessing A&B, highly confused by C/D

Good, it’s not just me that thinks it shouldn’t do any thing if its currently shut down.

B??????????????????????? I obviously I have no idea what I’m doing here.

So here's the scoop. I wanted to get these done yesterday but I'm trying to quit smoking again and was chewing nicorrette most of the day. When you do that, you may find your stomach in knots and that you can't get off the can.

Part 4, Cisco Book, ch 6,7

So just some things, my coworker has a youtube channel and has made his first video about his 6k gaming PC build.

Anyway, nice day. Not really much else to say besides blogging from a Pepboys and getting an oil change.

So lets get into this. Going to do 6-7 in this post and then do 2 more tomorrow. I think at least 2 day is a good pace. Who knows, I may do two more tonight. I really need to get rolling on this material lol..anyway.

Humm, no idea. Assuming B but given that I know like nothing about Cisco routers and I know at this point that generally watching videos about cisco routers is not as effective of a use of time as reading and writing about them, I’m not going to waste my time with that as I find this to be a more efficient platform.

I was right! great! moving ohhhnnnnn hum..,,/, nope

I have no idea. Why the fuck wouldnt you air gap them and have their PCs be in the lab or use a password. Or put their machines on like a VPN into the lab? Or use traffic control on a router that’s set to the lab.

Realizing you read the question wrong because you assumed it was “passwordless auth” given that using passwords is common. So do you always use vty to set up a login? This is that stuff that people that ask questions want to know. the 3rd paragraph nothing that login local setup requires username/password. Thats good to know. but the standard is just PW. I wonder if they log config changes with username/password lol ….speaking of ACTIVE DIRECTORY SHOULD TRACK LAST MACHINE LOGGED INTO ON USER DATA AND LAST USER LOGIN ON MACHINE DATA. Anyway.

Well, I’m fairly certain about D but its absolutely and interesting conversation that I will not forgot. I don’t know why, you just kind of dwell on things. Anyway, its not commenting out the idea on the user name so I have no idea.

I guess I don’t have to turn on SSH? Did i miss something lol “they previously changed the config to support SSH” Starting to get the VTY stuff but I’m interested in the B part now. The Global Config command. I’m trying to explain this to my self at this point and I think I’ll start to understand it in a few.

Total guess, ADF

Maybe I’m kind of starting to understand this. Nice!

I have no fucking clue and its so much information to read and consume and I'm doing that "i dont want to think thing"

Ok then, that one is kind of complicated and I’m not super clear on it but I think i understand it, conceptually most. But then translating the “this is what makes this work” which I only sort of understand into “this is what we need to do on the router” is kind of crazy.

Last question in this chapter. Going to guess A as none of the rest of the answers really make any sense to me but to be honest, I have no clue at all.

Thank god I was right but I still don\t understand any of that. I mean, it took along time to get to understanding server but I'm sure I'll understand this stuff eventually. Networking is not as universal as client management.

I guess I could have made that one post since I didn’t get around to doing the second chapter yesterday.

Lol, absolutely no fucking clue. What the hell is IEEE standard Autonegotiation?

Autonegotiation is a signaling mechanism and procedure used by Ethernet over twisted pair by which two connected devices choose common transmission parameters, such as speed, duplex mode, and flow control. In this process, the connected devices first share their capabilities regarding these parameters and then choose the highest performance transmission mode they both support.

This is super annoying that I cant add a link text in the visual editor? It’s somewhere between you want to subjgate people to using a format you can sell and simply making people look dumb. Then judge them for copying and pasting basic HTML cmds? I’m not really sure but you should fix it lol

Anyway, that actually makes sense now that I know what it is.

Given the answer to the last one, that involved setting duplex, one would assume E as well but who knows lol

great. that makes sense.

I want to say the switch is going to want to go at full speed, A but who knows.

They caught me on the D part. I didnt read the 2 answers but I was kind of curious to see if it said “full duplex” or was like “nah fuck it its just 1000 mb”

Just a guess because B&C don’t make any sense lol AD&E

Ok, reading it again maybe B does make sense? It says 2 down things. And E says “can be”. MaYbE I N33d t0 ReaD bettR

I dont know why it wouldnt not be D. It’s going to take some explanation to understand why its not D

Damn, the you pick 2 strikes again but the thing is, I was right.

Im guessing B, C and D are producing a similar scenario. A is possible but im not sure how a shutdown can be the source of collision.

ok, yeah now it makes sense as to “C is not a cause for concern because SW2 should also be set to full” but isn’t duplex and speed like the same thing? That’s what all the answers have been saying. you know full dup or 1000 mbps?

lol ok then…right. This isnt a you pick two.

Well, having fun. Hopefully I’ll get two more chapters done today. I dont really have anything going on so it should be possible. Excited about that! Happy Labor day!

Part 3, ch…4 of the Cisco book. Maybe 2 chapters, H2T

Anyway, Holiday weekend. I'm home alone, watching oceans 12 and reading about stuff. Went to the gym, getting really strong at these squats pretty quick. I did 135×10, 145×10, 155×10, and 135×10 again. This time last year I was having trouble squating using ropes that had handles for me to pull my self up with lol. So, I made a lot of progress. Not really trying to be bulky and break records but my main fitness goal is a 60 min 10k in the next year or so and squat and bench my own weight.

I want to say ABC but this is a total shot in the dark.

well, that clears that up. A&B. Next question

I would say C&D but it seems like it work work in all of them. Kind of an odd reboot cmd though

lol so if you put ‘do’ in front of it, it works in C&D but with just reload it only works in enable mode. ok…..

Im more inclined to pick B as I dont think telnet encrypts any thing but it might encrypt password exchanges with like the oldest/most vulnerable encryption standard known to man.

Still, SSH isnt that secure. its old as shit. anyway.

Im going to guess ROM as its usually fixed and then flashed and RAM, as a PC concept, looses its data upon being shut down generally speaking

Noooo we are going to uses these terms differently lol

No clue at all.

Ok, So its loading on boot from NVRAM (ROM) (im sticking with this until im proven that I dont know what I’m saying) into the RAM and then you can edit the running config in the RAM without saving it into the config thats loaded on boot? Thats actually kind of helpful, I suppose. But really only in a test enviro and 9 times out of 10 people are going to be like “why isnt this working” after a switch reboot, so its kind of dumb.

I have no clue whats going on here. Anyway, Going to move into another chapter as I accept that my foldering situation for photos are messed up. I guess I could post it in another post….wait , how long is this? Not that long lol Ok, Here is Chapter 5 and I’m going to try to do one more of these tonight after this one. Then as many as possible tomorrow too.

So here is the interesting thing about this,troubleshooting%2C%20especially%20for%20remote%20locations im not even going to bother editing the HTML, just click it. Nothing to do with the question at hand, which i dont know the answer to.

What the hell do they mean by floods the frame? I dont think im going to get a solid google answer on that but im going to assume it goes nowhere if it doesnt know where to rout it? Why is it using a just a mac and not an IP? That seems like a tough but fun project.

Oh so flooding is sending it out till it finds a winner, cool.

To be honest, my first guess was A but I had no idea what the hell was going on with it. you would think that, wait the answer was in the answer to the last question lol. Moving on.

I want to say “why wouldn’t it only need to know MACs on its own VLAN so C but I dont understand this well enough and im still unsure of the concept of bridging but I will get to it.

Of course, precisely. I understood that totally.

I understand this but I would like an explanation as to why its not B given there are 3 macs listed here. The answer does not clarify that. I wish that it did.

Anyway, thats all for now. Going to try to get one more done before bed but currently its cig and beer time. Trying to roll back on smoking.

CCNA Book review, PT 2

This is going pretty good, learning some new stuff. I never really thought that I would be able to get any Cisco cert when I got my first cert on Windows Vista about 6 months to a year after it was released. I don't remember it being exceptionally challenging as I was able to go to class and pass the test right away. This may have been the best decision I have ever made in my entire life as I had some credit with a boot camp company that helped me to get my MCSA and if I had not gotten that, I honestly don't know where I would be today.

Again, I don’t even know what the hell an HDLC header is so lets start there

Ok, good to know! But I’m not finding any info on whats normally in the header. And, the article mentions something about a protocol type.

This is different from the WIKI but who knows.

I’ve heard of MPLS but I’m not exactly sure what it is, so I’m going to have to check on that.

Multiprotocol Label Switching (MPLS) is a routing technique in telecommunications networks that directs data from one node to the next based on short path labels rather than long network addresses, thus avoiding complex lookups in a routing table and speeding traffic flows.[1] The labels identify virtual links (paths) between distant nodes rather than endpoints. MPLS can encapsulate packets of various network protocols, hence the “multiprotocol” reference on its name. MPLS supports a range of access technologies, including T1/E1ATMFrame Relay, and DSL.

The second part of B is confusing because it seems like it should be a p2p local connection but this says WAN so who knows. Maybe I’m confused about the concept. D makes sense to me but I suppose I have to drop the assumption that R1 to R2 doesn’t include other hops.

This is absolutely reasonable knowing my body and how I've geared up to press my legs, anyway. I'm sure ill post pics on twitter. Anyway, I listened to this and learned that the Cisco devices that use this add a type field and will not send using this protocol to non Cisco routers and its time to head home.

Well that wasnt really enough info

This gave me every thing i needed to know and honestly didn’t even finish it because i’m not sure how much of this ill need to know. I’ve done a few of this and know generally its best not to waste time on some of this stuff but you really have to get a feel for the learning curve. Anyway, ill probably end up coming back to it. I did this with Sec+, which is a real bugger, and it worked great. Also, i have no idea how that IP packets vary from HDLC packets and I should probably get into that at some point. Here is one more video that covers FCS but says nothing about the added Cisco Type field, which isnt surprising given this is just general networking knowledge.

ok, lets move on to question 4

My gut is C as when i look in routing tables I dont think ive ever seen a MAC listed and DNS does not normally use MAC addresses for anything.

I’m pretty sure this is C as well but its possible it’s A. in Azure its probably A lol

Turns out I was right!

I want to say C&D

Ok, that makes sense and D probably should be another protcol rather than “network discovery” not being included in this as A is a basic function. Its not really DNS though, right? I dont often look at whats in routers but im assuming its a routing table which does not provide name resolution, as I understand it? who am I asking this to lol

it says learn and PCs can keep local copies of DNS so im going with C as ARP tables are configured manually and ping isnt “learning” but I could be fucking this up lol

ok, i was right! I was thinking I would do two of these chapters per post but this is a really long post. I might get started on another tonight but after a 3 mile run, cleaning the house and generally acting like Thor which consists of dealing with problems that im good at dealing with that are extremely unique to my life situation, im kind of exhausted lol and my laundry is buzzing.

