security 归档 - 第6页 共9页 - 夜莺博客

标签:security

TLS Certificate Chain Problems: Diagnosing with OpenSSL

TLS Certificate Chain Problems: Diagnosing with OpenSSL

Use openssl s_client to prove a certificate chain end to end: missing intermediates, SNI problems, expiry and trust-store gaps, with the exact command

admin admin 2026-09-11
0 0 0
IPsec IKEv2 Troubleshooting: SA_INIT and IKE_AUTH Debugs

IPsec IKEv2 Troubleshooting: SA_INIT and IKE_AUTH Debugs

Read IKEv2 debugs like a state machine: which message failed, what NO_PROPOSAL_CHOSEN means, and how to tell a Phase 1 fault from a Phase 2 one.

admin admin 2026-09-11
0 0 0
ArubaOS-CX ACL Configuration: Build, Apply and Verify

ArubaOS-CX ACL Configuration: Build, Apply and Verify

Build IPv4, IPv6 and MAC ACLs on ArubaOS-CX, apply them to interfaces, VLANs and the control plane, enable hit counts, and verify what actually matche

admin admin 2026-09-11
0 0 0
华为交换机ACL配置:限制不同网段互访实例

华为交换机ACL配置:限制不同网段互访实例

华为交换机高级 ACL 实战:用 acl 3001 搭配流分类、流行为、流策略限制研发部与市场部两个网段互访,涵盖高级 ACL 深度优先匹配顺序、基于时间段的访问限制、traffic-filter 与流策略写法对比、命中统计验证,以及 ACL 配置后不生效的四大原因排查思路。

admin admin 2026-09-09
0 0 0
ArubaOS-CX DHCP Snooping: Trusted Ports and VLAN Setup

ArubaOS-CX DHCP Snooping: Trusted Ports and VLAN Setup

Configure DHCP snooping on ArubaOS-CX: enable it per VLAN, trust uplinks and LAGs, verify MAC addresses, handle Option 82, fix clients with no lease.

admin admin 2026-09-09
0 0 0
FortiGate SSL VPN Web Mode: Configuration Guide

FortiGate SSL VPN Web Mode: Configuration Guide

FortiGate SSL VPN web mode step by step: local users and groups, web portal bookmarks, SSL-VPN settings on the WAN interface, and the ssl.root firewal

admin admin 2026-09-07
0 0 0
Cisco IOS Password Recovery: config-register 0x2142 Method

Cisco IOS Password Recovery: config-register 0x2142 Method

Cisco IOS password recovery with config-register 0x2142: break to ROMMON, confreg, restore startup-config, reset credentials and register.

admin admin 2026-09-06
0 0 0
MikroTik RouterOS Firewall: Chains, Filters and Address Lists

MikroTik RouterOS Firewall: Chains, Filters and Address Lists

Build a hardened RouterOS firewall: input/forward chains, connection states, dynamic address lists that auto-ban attackers, FastTrack, mangle and NAT.

admin admin 2026-09-06
0 0 0
FortiGate Site-to-Site IPsec VPN: Phase 1 and Phase 2 Setup

FortiGate Site-to-Site IPsec VPN: Phase 1 and Phase 2 Setup

Configure a FortiGate site-to-site IPsec VPN: phase 1 (IKE) and phase 2 (IPsec) settings, selectors, NAT-T, DPD, CLI verification and common failure f

admin admin 2026-09-06
0 0 0
Junos Firewall Filters: Terms, Match Conditions and Actions

Junos Firewall Filters: Terms, Match Conditions and Actions

Junos firewall filter configuration: terms, from match conditions and then actions, loopback filters, counters, the implicit discard and verification.

admin admin 2026-09-06
0 0 0
1 … 4 5 6 7 8 9