Mediterranean Juniper (Juniperus turbinata)
Mediterranean Juniper (Juniperus turbinata)
#Juniper patches bug that let Chinese cyberspies backdoor routers
Chinese cyberspies backdoor #Juniper routers for stealthy access
#China Cyber Espionage Group #UNC3886 Backdoored #Juniper Routers
UNC3886 hackers target Juniper routers with custom backdoor malware, exploiting outdated systems for stealthy access and espionage. Learn how to stay protected.
#JuniperMX routers running outdated hardware and software, using EOL configurations, were easier targets due to #vulnerabilities in their security systems. The #malware leveraged Junos OS’s Veriexec, a file integrity monitor, to avoid detection.
https://hackread.com/chinese-group-unc3886-backdoor-juniper-routers/
World's oldest #juniper shrub discovered in #Finland—rings suggest it's 1,647 years old https://phys.org/news/2025-02-world-oldest-juniper-shrub-finland.html
Common juniper, the oldest nonclonal woody species across the #tundra biome and the European continent https://esajournals.onlinelibrary.wiley.com/doi/10.1002/ecy.4514
"the juniper started its growth at #Utsjoki in 260 and died in 1906... It is the oldest shrub in the world and the oldest woody plant in Europe dated by annual rings... #junipers allow scientists to study #climate variations, exceptional #weather events etc."
Scan of an old 35mm photo. A Juniper shrub with numerous small spider webs on top of it.
Ok, if anyone can solve my little #selfhosting power problem, it's the people connected to me on Mastodon. Feel free to boost.
I just turned off a #Juniper switch that was pulling like 200W and replaced it with a #Mikrotik switch that pulls 20W. The Juniper had one benefit that the Mikrotik lacks, and that's dual power supply. Mikrotiks just have one 24V 1.5A DC in.
If I want to buy 2 power supplies and connect them to my 2 UPSes and achieve some measure of redundancy, is it possible? What's the name of the device and is it expensive? I've drawn a picture to help.
If this is like past tech questions I've asked on Mastodon, I'm gonna get 10 Alibaba links to a "bivalent multivolt snargleprong" or some shit I've never heard of, and everyone else has like 3 in their top desk drawer.
Justice Department Sues to Block $14 Billion Juniper Buyout by Hewlett Packard Enterprise https://www.securityweek.com/justice-department-sues-to-block-14-billion-juniper-buyout-by-hewlett-packard-enterprise/ #NetworkSecurity #Funding/M&A #Acquisition #Government #Juniper
Happy New Juniper Switch Day
tl;dr it's a Juniper EX4300-MP, with 24x 1G + 24x 1/2.5/5/10G + 4x 40G for redundant stacking, and quite a hefty PoE stat.
the new homelab network needed a new switch. I've had my eyes on this specific sku for about two years now, so when a corporate decom hit the secondary market with twenty or so units I was ready with an offer 15% lower than asking. I'd love to have a few more than one, but having one at all is pretty great
It was compromised Juniper VPNs last time, seems it’s compromised Juniper routers this time:
https://www.theregister.com/2025/01/25/mysterious_backdoor_juniper_routers/
Last time:
https://blog.cryptographyengineering.com/2015/12/22/on-juniper-backdoor/
Backdoor infecting VPNs used “magic packets” for stealth and security - When threat actors use backdoor malware to gain access to a network, they ... - https://arstechnica.com/security/2025/01/backdoor-infecting-vpns-used-magic-packets-for-stealth-and-security/ #magicpackets #backdoors #security #juniper #biz #vpns
Homelab Hardware Acquisition Dilemma
Juniper neteng nerds, which 10GbE capable SKUs am I missing here?
- purpose: firewall + routing, $1K soft limit on secondary market
- requirements: hardware EOL ok if Junos not EOS
- SRX1500 is nice but not very fun, not much to mod
- ACX4000 is pretty great and totally silent (EOS 06/2029)
- SRX1600 looks great but not on eBay, likely N>$
- SSR1200 looks great but not on eBay, likely N>$
Does #Juniper enforce license check to use MACsec ? My QFX5110s do not seem to enable it (even though VXLAN and BGP are working unlicensed )
```
denis@sw-4> show configuration security
##
## Warning: requires 'macsec' license
##
macsec {
connectivity-association testca1 {
security-mode static-cak;
include-sci;
pre-shared-key {
ckn 37c9c2c45ddd012aa5bc8ef284aa23ff6729ee2e4acb66e91fe34ba2cd9fe311;
cak "$9$M/nL-Vs24oGDev7VsYoa69Ct1RhclKvLREVw24DjP5Q3ApEcyeM8rl87-V4o69CpIErevW87/CpBRhrlaZGDi.n/Ct0BjH"; ## SECRET-DATA
}
}
interfaces {
xe-0/0/2 {
unit 0 {
connectivity-association testca1;
}
}
}
}
{master:0}
denis@sw-4> show security macsec connections interface xe-0/0/2
error: Macsec Interface xe-0/0/2 not found.
```
In my new job I inherited a network of mixed switches from Extreme Switching, Brocade and some old Cisco switches.
Coming from Cisco, EXOS seems a little bit weird.
Apparently Extreme is the main switch here for cost reasons.
Personally I'm more comfortable with Cisco switches and my impression is that Cisco documentation is waaaay better than Extreme documentation.
Within the next 2 years I expect a major renewal of network infrastructure.
Are they any real good reasons like manageability, performance, etc. (except the price) to stay with Extreme or is the whole package (including higher prices) with Cisco better in regards of performance, documentation, features, ecosystem?
Feel free to comment...