Archive for Blog

October 2026: Another leap second coming???

An unknown number of NTP servers may mistakenly announce an upcoming leap second during October 2026. If this occurs some NTP clients’ time could briefly be in error by one second. The atomic second used in coordinated universal time (UTC) is defined by a specified…

Continue reading →

Modbus Fundamentals

If you’re dealing with industrial protocols, you’ll certainly have seen Modbus packets in your network. But what are these packets used for, and what data do they contain? Before we dive into Modbus, let’s have a quick look at an example. Let’s assume you have…

Continue reading →

Bidirectional Forwarding Detection (BFD) on a Palo

To improve the convergence times of a routing protocol, BFD can be used. This feature monitors the adjacencies using some kind of ping packets. It detects link failures much faster than the routing protocol’s built-in keepalive timeouts. The interesting part: You must only enable BFD…

Continue reading →

Network Encryption with MACsec: Basics & Cases

Modern networks are not only threatened by external attacks but are increasingly exposed to internal risks as well. These include unauthorized physical access to network components or manipulated data streams within the LAN. Classic Network Access Control (NAC) based on IEEE 802.1X-2004 often… Source link…

Continue reading →

Packet Capture of a Post-Quantum Site-to-Site VPN

After using several post-quantum secure VPN tunnels (here and there), I was interested in how this key exchange with ML-KEM looks on the wire. Especially in direct comparison to a classical VPN setup with just ECDH (group 21). Spoiler: since it does not fit in…

Continue reading →

PQC VPN-Tunnel between Palo Alto FortiGate

Since we have learned the basics of post-quantum secure VPN tunnelslet’s configure a site-to-site VPN between a Palo Alto Networks firewall and a FortiGate with PQC ciphers to verify vendor interoperability. Spoiler: it works like a charm. 😉 This is one of many VPN articles…

Continue reading →

PQC VPN-Tunnel with Palo

As the advent of practical quantum computing draws closer, security vendors are increasingly introducing post-quantum cryptographic (PQC) algorithms to protect existing security architectures against future threats. One important use case is site-to-site VPN connectivitywhere organisations… Source link Author: legendary Johannes Weber

Continue reading →

Basic IPv6 Messages (v2): Wireshark Captures

In my IPv6 classes, I always teach the basic IPv6 messages as seen on the wire. There’s so much new stuff, such as Router Advertisements, Duplicate Address Detections, Neighbour Solicitations, and so on. Therefore, I’m using a rather simple packet capture showing the starting process…

Continue reading →

Page 1 of 11 1 2 3 4 5 → ... Last →