Latest Templates

template icon

Cisco IOS Basic Zone-based firewall

March 11, 2014Basic Zone-based firewall which inspects dns, smtp, pop3, http, https, ntp, ftp and icmp. Enter inside interface (for example vlan1 or gig0/0) and outside interface (for example fa4 or gig0/1)
template icon

Nimsoft Monitor - Net_connect .cfx template (Beta)

March 5, 2014Nimsoft Monitor - Net_connect .Cfx Template (Beta) - 2 Hosts
template icon

ASA Real-time Capture with ACL

February 19, 2014A quick ACL for use with the capture command in the ASA. Use "host x.x.x.x" or "x.x.x.0 255.255.255.0" in the target boxes and it will reverse to see traffic in both directions. NOTE: It clears config on the ACL so be sure you've got the right ACL!
template icon

Add User Subnet to ASA

February 14, 2014General config for adding a DHCP enabled subnet to a Cisco ASA as a sub-interface. Note: Default firewall rule in this config blocks all traffic to RFC-1918 addresses. Warning: My regexes suck so make sure you type in correct values for subnets, etc.
template icon

Juniper Logical system using lt interface

January 8, 2014Creating logical system using lt interface.
template icon

NAT SourceNAT Juniper M,MX series

December 31, 2013SourceNAT Juniper M,MX series
template icon

Junos VLANs

December 5, 2013Just a test really - simple configuration of Junos VLANs
template icon

elasticsearch

August 14, 2013Sample config for elasticsearch cluster. You can exploit these settings to design advanced cluster topologies. 1. You want this node to never become a master node, only to hold data. This will be the "workhorse" of your cluster. 2. You want this node to only serve as a master: to not store any data and to have free resources. This ...
template icon

cisco interface vlan

August 14, 2013create interface vlan with hsrp
template icon

cassandra.yaml >= 1.2

August 1, 2013Cassandra yaml config file for 1.2 or greater
template icon

DMVPN Hub and Spoke configuration

July 15, 2013Basic configuration of dmvpn on cisco IOS using pre-shared keys
template icon

ipsec config for juniper M/MX series

April 22, 2013ipsec config for juniper M/MX series
template icon

Create ip sla udp-jitter probe

April 2, 2013Creates an ip sla probe to measure udp-jitter and more namely mos scores based on icpif calculations
template icon

A Few Easy Steps: Cisco IOS, Setup DNS Resolution Template

January 23, 2013Transcribed [http://www.staticnat.com/WP/2012/12/17/a-few-easy-steps-cisco-ios-setup-dns-resolution/] into hatch
template icon

A Few Easy Steps: Cisco IOS, Setup NTP Template

December 18, 2012Transcribed [http://www.staticnat.com/WP/2012/12/18/a-few-easy-steps-cisco-ios-setup-ntp/] into hatch
template icon

Cisco LACP Layer 3

October 21, 2012LACP Layer 3 bundle.
template icon

Cisco LACP Layer 2 802.1Q

October 21, 2012Layer 2 802.1Q LACP bundle.
template icon

Cisco ASR L2L VPN configuration (BETA)

October 18, 2012Cisco ASR L2L VPN Configuration (BETA) - This Template is for the configuration of a L2L IPSec VPN Tunnel on a Cisco ASR
template icon

RHEL5 minimalist kickstart http install

July 26, 2012Minimal kickstart template. Avoids the ginourmous @base package set in favor of the basics of yum and openssh-server.
template icon

Rwhoisd data entry

July 25, 2012The actual data of an entry
template icon

Create rwhoisd entries for a subnet

July 25, 2012Creates: -entries for network blocks in rwhoisd.auth_area -schema file -actual data for netblock
template icon

nginx Passenger puppetmaster

July 15, 2012Simple snippet of Nginx SSL configuration for running Puppetmaster as a rack app under passenger. Assumes a lot of defaults for RHEL and some paths may need to be adjusted.
template icon

Create Vlan

July 15, 2012An example of how to create layer 2 and layer 3 vlans
template icon

Cisco Switchports for Avaya IP Phones

July 11, 2012Shows the two methods - using LLDP or using DHCP Option 242 specified VLAN numbers in the L2Q and L2QVLAN options.
template icon

Cisco IOS Basics

July 9, 2012IPv4 only, no IPv6 options, see other template. Uses case insensitive local AAA only with enable secret and a local user. SSH and line timeouts are set to 15 minutes for PCI-DSS compliance requirement. FTP crashdump destination configured, remove if you don't want it. Bear in mind this disables the AUX port on routers, it isn't there on most switches, ...
template icon

Cisco IOS Secure NTP Configuration

July 8, 2012Synchronize Cisco IOS device clock with trusted and authenticated NTP servers. The <%NTP KEY%> must be the same on both the router and the NTP servers. NOTE: Only the peer and serve-only ACL's are set here, you may wish to change to query-only or serve. - peer, Allows time requests and NTP control queries and allows the system to ...
template icon

Juniper SRX NAT using Proxy ARP (Not interface Address

June 21, 2012NAT on JUNOS is better structured (IMO) then on IOS and IOS-like platforms. But it's still a different world. Here's a short to setting up NAT for packets moving from the Trust security zone to the Untrust security zone but using a dedicated "NAT address" not the untrust interface address. Proxy ARP is the key, it's what you'd usually forget ...
template icon

ESX Server CLI Switching Configuration

May 17, 2012CLI commands to create various VMware ESX virtual switches to a basic level. These can be used post-install or as part of a kickstart driven installation. vSwitch0 is created by default with vmnic0 or whatever NIC you tell the installer to boot with via kernel options. The management IP address will by default be on vm kernel NIC vmk0. Hence ...
template icon

Cisco Switchport Security

May 15, 2012Static access port with configurable permitted MAC's, if you want to use a dot1q trunk configure it as so and look up the option extras - MAC's can be specified per-VLAN on a dot1q trunk. One static MAC, sticky mode for additional MAC's. Duplicate mac-address line for more statics. Violation mode configurable, ensure mls statement is used if using protect ...
template icon

Generate Django 1.4 settings.py for my enviornment

May 2, 2012The following generates a standard settings.py file that I use for all my apps.
template icon

Import mysql database from file to table

April 4, 2012How to import data from a text file into a databse table
template icon

Export mysql table to file

April 4, 2012This is a simple way to select a table into a text file.
template icon

Add django-tinymce + django-filebrowser to projects

March 5, 2012Adding wysiwyg editors with image uploading is kind of a pain in the ass. The below template may need some cleanup, but it works for me now. This is on ubuntu using apache2, my projects are in /var/www/%{fqdn}%/%{project_name}%/. Make sure to grab django-filebrowser-no-grappelli-and-uploadify, I didn't want grappelli.
template icon

Password protect a site with .htaccess

February 24, 2012Despite htaccess being around forever, I always forget how to implement it. This is a simple "just get it to work" implementation.
template icon

Installing hubot as a Campfire Bot on Ubuntu

February 22, 2012A couple of friends and I utilize Campfire as a chat room, yeah I know there are free alternatives, blah blah. This room is essentially a better version of irc for us. Anyway.. there are a ton of tutorials on how to deploy hubot to heroku, but not a whole lot on how to deploy hubot on your own servers. ...
template icon

Refresh Browser for IE Citrix Session

February 16, 2012So I've been working on a development project for a client, and doing all of the development remotely. The issue I've been having is with their Citrix environment, I've launched Citrix from an IE8 browser and after a period of 30 minutes or so the remote session will die and the Citrix session will be gone due to inactivity. If ...
template icon

IP SLA Probes for IOS instead of rtr

February 16, 2012http://www.cisco.com/en/US/docs/ios/12_4/ip_sla/configuration/guide/hsicmp.html
template icon

Setup enivornment for new django application

May 11, 2012Copying this entire config into an ssh window on a linux host will create all the necessary scaffolding to run a django 1.4 site on apache2 using wsgi and create the necessary database and user.
template icon

Configure DHCP Snooping on Cisco IOS

February 16, 2012DHCP snooping allows you to create a white-list of interfaces for which trusted dhcp servers are connected. All dhcp specific traffic which passes through "untrusted" interfaces will be dropped. This helps guard against rogue dhcp servers.
template icon

Reset Mysql Password

February 16, 2012Created from http://www.debian-administration.org/articles/442
template icon

Convert PEM to PFX with OpenSSL

February 17, 2012OpenSSL command to convert from .crt and .key to .pfx.
template icon

Test MySQL Database Connection with PHP

February 16, 2012PHP script to test if you can connect to a MySQL database
template icon

Replace text in multiple files with perl

February 16, 2012This script allows you to replace a string in multiple files with a new string
template icon

Set up site on remote IIS Server

February 16, 2012Save this script as a .bat file Example script: cd .. c: cd "C:\Program Files (x86)\IIS Resources\IIS 6.0 Migration Tool" iismt.exe server-name w3svc/1 /serverbindings 127.0.0.1:80:dev-site2.example.com /siteid 1 /configonly
template icon

Change ID of website in IIS

February 16, 2012This script will change the ID of a site for you in IIS. You will need to save the output as a .bat file
template icon

Run a program as a specific user...

February 16, 2012Launch files as a specific user. Sample: set WshShell = WScript.CreateObject("WScript.Shell") WshShell.run "runas /user:Administrator ""C:\Program Files\Internet Explorer\iexplore.exe""" 'Open command prompt WScript.Sleep(1000) WshShell.SendKeys("AdminPassword") 'send password WshShell.SendKeys("{ENTER}") 'send enter keystroke WScript.Sleep(1000) set wshshell = Nothing Launches IE as a Administrator.
template icon

Configure 3750X Power Stack in Redundant Mode

February 16, 2012This is a standard configuration for powerstack redundancy. This was tested with 2 3750X switches each with a single 1100W power supply. In this configuration power can be removed from a single power supply and all the switches in this stack will stay powered on. http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps6406/white_paper_c11-578931.html
template icon

Configure tacacs in Cisco IOS

February 16, 2012Simple template to configure tacacs on a given IOS piece of gear. A "network" entry should be added to your CiscoACS configuration for the ip address of %[tacacs_source_interface]%.
template icon

Configure SNMP RO/RW Community Strings Cisco IOS

February 16, 2012A simple template to configure snmp community strings for read-only and read-write access according to access-lists
template icon

Cisco ASA Guest Wireless Configuration

February 16, 2012This is a simple template to configure an ASA device using asa821-k8.bin code. Interfaces: Ethernet0/0 is connected to a DSL modem and that DSL modem dishes out dhcp addresses. Ethernet0/1 is the management interface for this device. Ethernet0/2 is a trunk interface to a Cisco wireless controller. The guest wireless network is 192.168.10.0/24
template icon

Create Share buttons using Django Templatetags

February 16, 2012It's easy to copy and paste urls to share links, but its easier to just click on a button to do it.
template icon

Cisco Router as Terminal Server with SSH Line Access

February 16, 2012Example of how to use a Cisco router as a terminal server using an NM-32A 32-port async serial line card. In use with 2811's and IOS 12.4T. SSH is used to securely make the serial lines available on the network. Be aware that SSH requires a username/password combination, hence this is not like when you simply bind the serial ports ...
template icon

Cisco IOS IPSec L2L VPN with AES PSK Encryption

February 16, 2012Example of Cisco IOS IPSec LAN2LAN VPN with local on device AES (type 6) encryption of PSK's to protect them. WARNING - This will encrypt your PSK with non-reversible encryption. MAKE SURE YOU HAVE A SECURE BACKUP OF IT. Notes: - xauth is disabled for the peer - AES 256 with PFS using group 5 for phase 1 ISAKMP. - ...
template icon

Tweeting from a django application

February 17, 2012A recent feature request for hatch was to have a twitter feed. A twitter feed would allow people to be notified when new config templates are created via twitter.
template icon

Configuring A Cisco 2600 Series Router as a Terminal Server

February 16, 2012Configures the use of a NM-16A card in a cisco 2600 router as a terminal server.
template icon

Ipsec l2l tunnel between two routers

February 16, 2012Build an ipsec tunnel between Router A and Router B.
template icon

Get IOS version via snmp

February 16, 2012The following allows you to grab the IOS version of a list of cisco devices.

Radius Authentication on OpenBSD

February 16, 2012login.conf file which configures radius authentication for an OpenBSD host servers file which contains keys for each of these radius servers
template icon

Apache2 mod_wsgi for django

February 16, 2012A simple template to setup a django site for apache2 and mod_wsgi.
template icon

F5 Base System Template

February 16, 2012F5 base system configuration template. * LACP based 802.1Q trunk for uplink * Failover configuration for HA pair with state mirror and config sync password Dump template output to file and use bigpipe merge. If it errors fix file and try again :-)
template icon

Configure RTR/SLA Ping in IOS

February 22, 2012This configures and schedules the pinging of a destination ip address. I tend to define "site codes" which is generally the third octet of a given site's /24 address space. For example: Beijing, China = 192.168.56.0/24 , site code is "56" rtr 56 type echo protocol ipIcmpEcho 192.168.56.1 frequency 300 rtr schedule 56 life forever start-time now Once this is ...
template icon

Cisco IOS - Create VLAN

February 16, 2012Create a VLAN and it's L3 interface on Cisco IOS.
template icon

tcl ping script

February 16, 2012Cisco tcl ping script
template icon

shell script ping all IP

February 17, 2012Simple shell script which will ping all devices which are in text file. Please enter your filename %[file]%
template icon

Cisco ACE Module New Farm - 2 Servers http/https - w/ sticky

February 16, 2012Create Rservers Create Serverfarm Create VIP This is specific to my environment and doesn't create the probes but should be easy enough or enough of a baseline for most simple configs.
template icon

Enable netflow and export on a router

February 16, 2012Enables netflow monitoring on the %[interface_to_monitor]% interface and configures netflow exporting to a %[destination_ip]% and %[destination_port]%
template icon

Fetch ipsec Tunnel in/out octets with SNMP

February 16, 2012Simple bash script to retrieve ingress and egress traffic statistics for an ipsec tunnel.
template icon

Log4J Basic Config

February 17, 2012Apache Log4J basic configuration file Test edit.
template icon

Hibernate Config

February 16, 2012A basic Hibernate configuration file
template icon

Loop through text file in Bash

September 26, 2011Simple way to loop through a text file in a shell script using bash.
template icon

Create MySQL user

February 16, 2012This template generates the commands to create a new MySQL user with full permissions on a given database.
template icon

Apache 2 Django Application Configuration

February 16, 2012This template helps create apache 2 configurations for django applications using mod_python. The assumed structure is that "/var/www/" is the base path and that sites exist in a directory such as "/var/www/%[app_name]%/. This file should be placed named %[fqdn]% and placed in /var/www/sites-available. After this file is saved you should issue a2ensite %[fqdn]% then restart apache.