<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Aaron&#039;s Worthless Words</title>
	<atom:link href="http://aconaway.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://aconaway.com</link>
	<description>It&#039;s possible that someone somewhere needs to see this.</description>
	<lastBuildDate>Thu, 16 Feb 2012 04:31:51 -0700</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.4</generator>
	<item>
		<title>Comment on JNCIA &#8211; Epic Win! by Shoaib Merchant</title>
		<link>http://aconaway.com/2012/02/09/jncia-epic-win/comment-page-1/#comment-85186</link>
		<dc:creator>Shoaib Merchant</dc:creator>
		<pubDate>Thu, 16 Feb 2012 04:31:51 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1843#comment-85186</guid>
		<description>Congrats Aaron!

I have been working on Juniper routers for quite sometime now. I too would like to know the materials you used. I&#039;ve heard the Student Guide is good.</description>
		<content:encoded><![CDATA[<p>Congrats Aaron!</p>
<p>I have been working on Juniper routers for quite sometime now. I too would like to know the materials you used. I&#8217;ve heard the Student Guide is good.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on JNCIA &#8211; Epic Win! by That1guy15</title>
		<link>http://aconaway.com/2012/02/09/jncia-epic-win/comment-page-1/#comment-84710</link>
		<dc:creator>That1guy15</dc:creator>
		<pubDate>Fri, 10 Feb 2012 15:03:12 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1843#comment-84710</guid>
		<description>Congrats!

As for forcing everyone to certify I feel is the wrong approach. Those that dont want or care to take the time to lear the material will just dump it. Waste of company money IMO. Setting a policy for new-hires and promotions to have a specific certification level would be more motivating.</description>
		<content:encoded><![CDATA[<p>Congrats!</p>
<p>As for forcing everyone to certify I feel is the wrong approach. Those that dont want or care to take the time to lear the material will just dump it. Waste of company money IMO. Setting a policy for new-hires and promotions to have a specific certification level would be more motivating.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on JNCIA &#8211; Epic Win! by Ben Story</title>
		<link>http://aconaway.com/2012/02/09/jncia-epic-win/comment-page-1/#comment-84704</link>
		<dc:creator>Ben Story</dc:creator>
		<pubDate>Fri, 10 Feb 2012 13:52:17 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1843#comment-84704</guid>
		<description>Congrats on the pass, out of curiosity, what materials did you use for studying?</description>
		<content:encoded><![CDATA[<p>Congrats on the pass, out of curiosity, what materials did you use for studying?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on JNCIA &#8211; Epic Win! by Anthony Burke</title>
		<link>http://aconaway.com/2012/02/09/jncia-epic-win/comment-page-1/#comment-84666</link>
		<dc:creator>Anthony Burke</dc:creator>
		<pubDate>Fri, 10 Feb 2012 03:42:40 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1843#comment-84666</guid>
		<description>Congrats on the pass. Epic work. I think your boss is doing the right thing. It is a shame that you have used the line &quot; motivated to learn for themselves.&quot; It seems it&#039;s a common thing in the IT industry that there are those who don&#039;t want to learn and be the best they can be.

Love your blog and your &#039;Worthless&#039; words.

Anthony</description>
		<content:encoded><![CDATA[<p>Congrats on the pass. Epic work. I think your boss is doing the right thing. It is a shame that you have used the line &#8221; motivated to learn for themselves.&#8221; It seems it&#8217;s a common thing in the IT industry that there are those who don&#8217;t want to learn and be the best they can be.</p>
<p>Love your blog and your &#8216;Worthless&#8217; words.</p>
<p>Anthony</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Goals for 2012 by sebastian</title>
		<link>http://aconaway.com/goals-for-2012/comment-page-1/#comment-84635</link>
		<dc:creator>sebastian</dc:creator>
		<pubDate>Thu, 09 Feb 2012 18:47:04 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/#comment-84635</guid>
		<description>Hey Aaron,

Great job on the exams man, i found your links on the ACL&#039;s and the ports correlation&#039;s very useful.
it actually helped me solve and issue i was seeing with GLBP and the dot1q sub interfaces. Thanks for the great tips !!!</description>
		<content:encoded><![CDATA[<p>Hey Aaron,</p>
<p>Great job on the exams man, i found your links on the ACL&#8217;s and the ports correlation&#8217;s very useful.<br />
it actually helped me solve and issue i was seeing with GLBP and the dot1q sub interfaces. Thanks for the great tips !!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Junos Basics &#8211; OSPF by CJ Infantino</title>
		<link>http://aconaway.com/2012/01/31/junos-basics-ospf/comment-page-1/#comment-84170</link>
		<dc:creator>CJ Infantino</dc:creator>
		<pubDate>Fri, 03 Feb 2012 01:08:27 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1824#comment-84170</guid>
		<description>Listen man, Uncle Chambers is getting pretty heated about all this J*Nip3r stuff. 

And, it is making me jealous because I don&#039;t get to work with any Juniper kit!

Anyway - when is the JNICA-JUNOS scheduled? :) I have to recert JNCIA so keep the posts coming.</description>
		<content:encoded><![CDATA[<p>Listen man, Uncle Chambers is getting pretty heated about all this J*Nip3r stuff. </p>
<p>And, it is making me jealous because I don&#8217;t get to work with any Juniper kit!</p>
<p>Anyway &#8211; when is the JNICA-JUNOS scheduled? :) I have to recert JNCIA so keep the posts coming.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Junos Basics &#8211; OSPF by Ralph Rye</title>
		<link>http://aconaway.com/2012/01/31/junos-basics-ospf/comment-page-1/#comment-84053</link>
		<dc:creator>Ralph Rye</dc:creator>
		<pubDate>Wed, 01 Feb 2012 15:45:56 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1824#comment-84053</guid>
		<description>Aaron,

Nice post.  Studying for my JNCIE-ENT right now so I am keep an eye out for any Junos blog posts.

It would also be good to point out to Cisco converts that including a interface under an area injects that connected IP subnet into OSPF and enables that interface to send/receive Hellos to form a neighbor relationship. If you want to include a directly connected subnet into OSPF but not allow the interface to form a neighbor relationship, simply add the passive option.

protocols {
    ospf {
        area 0.0.0.0 {
            interface ge-0/0/0.0;
            interface ge-0/0/1.0 {
                 passive;
            }
        }
    }
}</description>
		<content:encoded><![CDATA[<p>Aaron,</p>
<p>Nice post.  Studying for my JNCIE-ENT right now so I am keep an eye out for any Junos blog posts.</p>
<p>It would also be good to point out to Cisco converts that including a interface under an area injects that connected IP subnet into OSPF and enables that interface to send/receive Hellos to form a neighbor relationship. If you want to include a directly connected subnet into OSPF but not allow the interface to form a neighbor relationship, simply add the passive option.</p>
<p>protocols {<br />
    ospf {<br />
        area 0.0.0.0 {<br />
            interface ge-0/0/0.0;<br />
            interface ge-0/0/1.0 {<br />
                 passive;<br />
            }<br />
        }<br />
    }<br />
}</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Junos Basics &#8211; OSPF by Aaron Conaway</title>
		<link>http://aconaway.com/2012/01/31/junos-basics-ospf/comment-page-1/#comment-84045</link>
		<dc:creator>Aaron Conaway</dc:creator>
		<pubDate>Wed, 01 Feb 2012 14:17:57 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1824#comment-84045</guid>
		<description>Andrew and Kurt:  Thanks for the input, guys.  I had no idea about the packet versus flow modes.  Time to go for some training, then, eh?  :)

RFairclough:  Thanks for those bits of information.  Those are the details that I&#039;m just not sure of since I&#039;ve been doing Junos for just over 2 months now.  LOL</description>
		<content:encoded><![CDATA[<p>Andrew and Kurt:  Thanks for the input, guys.  I had no idea about the packet versus flow modes.  Time to go for some training, then, eh?  :)</p>
<p>RFairclough:  Thanks for those bits of information.  Those are the details that I&#8217;m just not sure of since I&#8217;ve been doing Junos for just over 2 months now.  LOL</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Junos Basics &#8211; OSPF by RFairclough</title>
		<link>http://aconaway.com/2012/01/31/junos-basics-ospf/comment-page-1/#comment-84043</link>
		<dc:creator>RFairclough</dc:creator>
		<pubDate>Wed, 01 Feb 2012 13:07:19 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1824#comment-84043</guid>
		<description>Remember interface specific statements will over-ride your zone configuration. 
Pretty sure your lo0 doesn&#039;t need to be in a zone, however good to make it passive otherwise it does wait out the election period.
Best thing to do with OSPF is create a group enabling BFD on every interface. Group automation is great!</description>
		<content:encoded><![CDATA[<p>Remember interface specific statements will over-ride your zone configuration.<br />
Pretty sure your lo0 doesn&#8217;t need to be in a zone, however good to make it passive otherwise it does wait out the election period.<br />
Best thing to do with OSPF is create a group enabling BFD on every interface. Group automation is great!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Junos Basics &#8211; OSPF by Kurt Bales (@networkjanitor)</title>
		<link>http://aconaway.com/2012/01/31/junos-basics-ospf/comment-page-1/#comment-84010</link>
		<dc:creator>Kurt Bales (@networkjanitor)</dc:creator>
		<pubDate>Wed, 01 Feb 2012 04:27:02 +0000</pubDate>
		<guid isPermaLink="false">http://aconaway.com/?p=1824#comment-84010</guid>
		<description>Hey mate, great post. I would just like to point out one thing that many new Junos converts dont realise (especially if they start out with SRX).

The problem you state about the firewall rules requirement is because the SRX by default (and later version J-Series) runs in Flow-Mode. In this mode all traffic through the device is subject to security policy.

This feature can be disabled (and you should if you are studying for the -ENT track) by deleting the security section of the config then creating the &quot;security forwarding-options&quot; as per http://juniper.cluepon.net/index.php/Enabling_packet_based_forwarding .

When the SRX is set to packet-mode it will operate like a regular router like we all expect.</description>
		<content:encoded><![CDATA[<p>Hey mate, great post. I would just like to point out one thing that many new Junos converts dont realise (especially if they start out with SRX).</p>
<p>The problem you state about the firewall rules requirement is because the SRX by default (and later version J-Series) runs in Flow-Mode. In this mode all traffic through the device is subject to security policy.</p>
<p>This feature can be disabled (and you should if you are studying for the -ENT track) by deleting the security section of the config then creating the &#8220;security forwarding-options&#8221; as per <a href="http://juniper.cluepon.net/index.php/Enabling_packet_based_forwarding" rel="nofollow">http://juniper.cluepon.net/index.php/Enabling_packet_based_forwarding</a> .</p>
<p>When the SRX is set to packet-mode it will operate like a regular router like we all expect.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

