Networking-Forums.com

General Category => Forum Lobby => Topic started by: icecream-guy on June 11, 2017, 06:31:33 AM

Title: New Job
Post by: icecream-guy on June 11, 2017, 06:31:33 AM
Hey all

I recently accepted a Senior Network Security Engineer position with a major health company in the DC area. Hanging up the routing and switching hat and putting on a firewall hat. it's a major move up for me career-wise. Looks like  a fun opportunity.
Title: Re: New Job
Post by: deanwebb on June 11, 2017, 02:59:49 PM
:applause:

You'll need to use this one a lot, though:

:notthefirewall:

What kind of firewalls will you be working with?
Title: Re: New Job
Post by: SimonV on June 12, 2017, 06:02:28 AM
Congrats, hope they aren't running ASAs :)
Title: Re: New Job
Post by: icecream-guy on June 12, 2017, 06:23:49 AM
Quote from: SimonV on June 12, 2017, 06:02:28 AM
Congrats, hope they aren't running ASAs :)

yep, those and PA
Title: Re: New Job
Post by: wintermute000 on June 12, 2017, 06:49:52 AM
congratulations!
Title: Re: New Job
Post by: that1guy15 on June 12, 2017, 08:15:50 AM
WOOT congrats dude!!!

Title: Re: New Job
Post by: Nerm on June 12, 2017, 09:20:16 AM
Congrats!
Title: Re: New Job
Post by: Otanx on June 12, 2017, 09:45:18 AM
Congratulations. Welcome to the dark side.

-Otanx
Title: Re: New Job
Post by: deanwebb on June 12, 2017, 10:53:02 AM
Quote from: Otanx on June 12, 2017, 09:45:18 AM
Congratulations. Welcome to the dark side.

-Otanx


What are you trying to say? Us security guys just say "no" a lot?

:no:

OK, so maybe we are a bit negative...



Title: Re: New Job
Post by: SofaKing on June 12, 2017, 10:57:24 AM
Congrats on the new job!!
Title: Re: New Job
Post by: mlan on June 12, 2017, 01:20:50 PM
Congrats on the new position.  Trust it will be a good move for you, as long as they still let you sleep at night.
Title: Re: New Job
Post by: NetworkGroover on June 12, 2017, 02:22:11 PM
Congrats!
Title: Re: New Job
Post by: Dieselboy on June 12, 2017, 09:27:50 PM
Congratulations!!!  :mrgreen:

Best of luck and hope it all works out A+
Title: Re: New Job
Post by: Dieselboy on June 12, 2017, 09:28:36 PM
Quote from: SimonV on June 12, 2017, 06:02:28 AM
Congrats, hope they aren't running ASAs :)

What's wrong with ASA's? Apart from numerous code bugs and features causing crashing / rebooting?  :twitch:
Title: Re: New Job
Post by: SimonV on June 13, 2017, 04:58:20 AM
Quote from: Dieselboy on June 12, 2017, 09:28:36 PMWhat's wrong with ASA's? Apart from numerous code bugs and features causing crashing / rebooting?  :twitch:

That, and they are horrible firewalls.
Title: Re: New Job
Post by: wintermute000 on June 13, 2017, 06:41:31 AM
That, and next to no next-gen features. Chaining an actual NFGW in-line doesn't count... that's two firewalls. LOL

I won't even mention zoning.... at least they can do BGP and routed VPNs now, allegedly LOL

Back on topic though, please for the love of all that is holy, remember your roots and remember that security is supposed to make things happen securely, NOT just secure things.
Something that can't connect to anything is 100% secure after all.


That, and if anyone proposes to stick a default gateway on a firewall, burn it with fire. Esp if they are trying to shove it into a leaf-spine fabric.

Title: Re: New Job
Post by: dlots on June 13, 2017, 08:54:08 AM
GRATZ!!

Quote from: SimonV on June 13, 2017, 04:58:20 AM
That, and they are horrible firewalls to work with on the CLI.

Still better than working with them on the GUI :-P
Title: Re: New Job
Post by: SimonV on June 13, 2017, 08:56:59 AM
I've corrected my original post :)
Title: Re: New Job
Post by: LynK on June 21, 2017, 08:57:43 AM
CONGRATS MAN!

Let me give you a few caveats I have found with PAN products so far:

1) Their sub-interfaces do not have separate MAC addresses (BIG ISSUE... really stupid)

2) They cannot support DHCP to DHCP IPSEC VPN

3) Cannot do http redirects (not really a big surprise here)
Title: Re: New Job
Post by: icecream-guy on June 21, 2017, 11:03:56 AM
so far going well, still working on my access and lots of training, maybe next week i'll even get to do some real work. Mostly working with non-X ASA's in a LAN setting. providing different groups with LAN access to different services, seems like a good place, busy, with lots of nice people, commute is minimally worse and I do get to sleep in a bit later. don't know what the commute will be like when school starts back up.