Current Mistakes Thread

Started by deanwebb, May 19, 2015, 09:46:51 AM

Previous topic - Next topic

deanwebb

root
password

I'm not going to say which box it is, but I have not yet changed that "easy password we'll use just for the demo..."
:naughty:
Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.

that1guy15

Quote from: wintermute000 on July 22, 2015, 10:37:29 PM
I recall at my last job, one of our guys threw in a debug ntp server and that crashed a 6500 VSS (IOS bug).
Thereafter, they decided that all debug commands required change management as well. sigh
Ouch! At a previous gig the MPLS team started deploying Juniper MX960s. Everyone ran around ranting and raving about how solid and reliable they were. Two days into production one of them crashed a full chassis just by connecting to the console... He said first the sup LED went red and then he just saw one by one each linecard lose power...
That1guy15
@that1guy_15
blog.movingonesandzeros.net

routerdork

Quote from: that1guy15 on July 23, 2015, 07:58:22 AM
Quote from: wintermute000 on July 22, 2015, 10:37:29 PM
I recall at my last job, one of our guys threw in a debug ntp server and that crashed a 6500 VSS (IOS bug).
Thereafter, they decided that all debug commands required change management as well. sigh
Ouch! At a previous gig the MPLS team started deploying Juniper MX960s. Everyone ran around ranting and raving about how solid and reliable they were. Two days into production one of them crashed a full chassis just by connecting to the console... He said first the sup LED went red and then he just saw one by one each linecard lose power...
I had the same issue with an ASR9K but luckily it just failed over to the other RSP.
"The thing about quotes on the internet is that you cannot confirm their validity." -Abraham Lincoln

SimonV

Quote from: wintermute000 on July 22, 2015, 07:17:29 PM


Yes, I tried it late last night. That fixed the policy sync issue, but this morning I had to move some VPN tunnels to new ST interfaces before they passed traffic again  :whistle:

SimonV

Was adding another vsrx to my lab yesterday so I needed something to route between them. Found out the hard way that the CSR-1000V is throttled to 100kbps  :mrgreen:

Any way to easily overcome this limitation? Settled for a VyOS appliance for now, which is actually pretty neat  :dance:

LynK

#20
Quote from: that1guy15 on July 22, 2015, 07:44:31 PM
My last was trying to train a couple juniors how to add a FEX to a pair of 5Ks with vPC. I was lighting up a new FEX like I have done 1 milion times.

This fex was going to be 102 and I build all the config in notepad to lay out what was needed for them. When I pasted the config in I got an error on the Port-channel config. Nothing seemed wrong with the config on Port-Channel02 so I figured it was a one-off issue. I decided to remove the port channel and re-add it.

config t
no interface port-channel02


I then manually added Po102 and showed them how to a FEX is added. All went smooth

About 5 minutes later everything in the DC blew the f* up... If you already picked up on what I did props to you!

If not you will see that port-channel02 is not PO102. Thats a f'n "L". I just dropped PO2 not Po102...
Shit, shit,shit.. Po2 is the uplink between my 5Ks and 7Ks. I just dropped my whole DC!

Took me 5 minutes to figure it out and correct but my apps team spent the next 4 hours stabilizing their shit.

Sometimes I hate this shit...


Can you please layout your exact conversation to your manager for our enjoyment... PLEASE!!!!  :mrgreen: :mrgreen: :twisted: :pub: :cheers:



My latest mistake was not changing the STP type on our new store switches. In these new switches, the default STP setting is edge. Guess what does work when you plug a device into it... a switch... aka multiple macs.. :developers: :developers: :developers: :developers: :developers:
Sys Admin: "You have a stuck route"
            Me: "You have an incorrect Default Gateway"

deanwebb

Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.

NetworkGroover

#22
Quote from: that1guy15 on July 22, 2015, 07:44:31 PM
Took me 5 minutes to figure it out and correct but my apps team spent the next 4 hours stabilizing their shit.

Sometimes I hate this shit...

Did you know that Arista switches support config sessions?  :problem?:

BGPDC-SPINE2#configure session test

BGPDC-SPINE2(config-s-test)#int e4
BGPDC-SPINE2(config-s-test-if-Et4)#description test

BGPDC-SPINE2(config-s-test-if-Et4)#show session-config diffs
--- system:/running-config
+++ session:/test-session-config
@@ -25,6 +25,7 @@
    ip address 192.168.255.20/31
!
interface Ethernet4
+   description test
!
interface Ethernet5
!

BGPDC-SPINE2(config-s-test)#commit
BGPDC-SPINE2#sh run int e4
interface Ethernet4
   description test

Engineer by day, DJ by night, family first always

that1guy15

Quote from: LynK on September 10, 2015, 03:27:14 PM

Can you please layout your exact conversation to your manager for our enjoyment... PLEASE!!!!  :mrgreen: :mrgreen: :twisted: :pub: :cheers:


hehe, I got the team cake and ice cream the following week for causing a downtime!

We are in the middle of a very screwed up network and been cleaning it up for well over 2 years. Leadership is very aware we will step on a few land-mines as we move through this shit-pile. Yes this was a screw-up on my part and could have been avoided but it highlighted several flaws in our design so its a win for them. Plus the old team would have outages like this about 2-3 times a year and they would last well over 4 hours.

Conversation was pretty much me saying sorry I screwed up I fat-fingered a number. Here is what happened and here is how I fixed it. This is what we found and here is what I will do to make sure it dosent happen again.
That1guy15
@that1guy_15
blog.movingonesandzeros.net

LynK

Sys Admin: "You have a stuck route"
            Me: "You have an incorrect Default Gateway"

that1guy15

Oh dont take that as my job is all sunshine and fluffy kittens. This network is a bitch, and will shank you in the side the second you take your eyes off it.

I cant wait for it to burn down so I can build it right or hand it off to the next sucker to run it...
That1guy15
@that1guy_15
blog.movingonesandzeros.net

Nerm

Quote from: that1guy15 on September 15, 2015, 02:21:05 PM
Oh dont take that as my job is all sunshine and fluffy kittens. This network is a bitch, and will shank you in the side the second you take your eyes off it.

I cant wait for it to burn down so I can build it right or hand it off to the next sucker to run it...

:haha3:

LynK

Quote from: that1guy15 on September 15, 2015, 02:21:05 PM
Oh dont take that as my job is all sunshine and fluffy kittens. This network is a bitch, and will shank you in the side the second you take your eyes off it.

I cant wait for it to burn down so I can build it right or hand it off to the next sucker to run it...

lmao :glitch:
Sys Admin: "You have a stuck route"
            Me: "You have an incorrect Default Gateway"

warren.sullivan.526

Years ago I connected a normal console cable to an APC UPS "serial" port, it forced a reboot, killed power to 7 48 port POE access switches......doh


Sent from my iPhone using Tapatalk

deanwebb

Quote from: warren.sullivan.526 on September 27, 2015, 07:53:09 AM
Years ago I connected a normal console cable to an APC UPS "serial" port, it forced a reboot, killed power to 7 48 port POE access switches......doh


Sent from my iPhone using Tapatalk

:zomgwtfbbq:

That is bad because it is not good.
Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.