<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Batiste Ansaldi — Tech Watch</title><description>Curated article picks on systems, networking and cybersecurity — by Batiste Ansaldi, BTS SIO SISR IT technician.</description><link>https://portfolio.net-flow.fr/</link><language>en-GB</language><item><title>[Grafana Labs Blog] pfSense — Manual migration from Promtail to Grafana Alloy across 10 Proxmox LXCs</title><link>https://portfolio.net-flow.fr/en/veille/</link><guid isPermaLink="true">https://portfolio.net-flow.fr/en/veille/</guid><description>The article that guided my log centralisation stack migration. Promtail officially reached EOL in March 2026 — I applied the migration across my 10 LXC containers and 2 Proxmox hypervisors. Alloy&apos;s River pipeline configuration is more verbose than Promtail but far more flexible when it comes to journald label handling.</description><pubDate>Thu, 15 Jan 2026 00:00:00 GMT</pubDate><category>Monitoring</category></item><item><title>[Cisco Learning Network] Cisco ACL Best Practices — Named ACLs, stateful filtering and sequence numbering</title><link>https://portfolio.net-flow.fr/en/veille/</link><guid isPermaLink="true">https://portfolio.net-flow.fr/en/veille/</guid><description>Came across this at exactly the right time, during my ACL deployment phase on the Cisco 3560-CX. The section on native VLAN and 802.1Q double-tagging VLAN hopping led me to review my trunk configuration — I had left the native VLAN at its default value, which is a known security weakness.</description><pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate><category>Networking</category></item><item><title>[Microsoft Security Blog] Active Directory Tiering Model — Why the Tier 0/1/2 approach changes everything</title><link>https://portfolio.net-flow.fr/en/veille/</link><guid isPermaLink="true">https://portfolio.net-flow.fr/en/veille/</guid><description>Directly relevant to my Windows Server 2022 Core AD deployment. I didn&apos;t implement the full tier model in the homelab (too many VMs involved), but I applied the core principle of not exposing the DC on the SERVERS network — it stays in the MGMT VLAN with restricted access, exactly as recommended.</description><pubDate>Sat, 15 Nov 2025 00:00:00 GMT</pubDate><category>Active Directory</category></item><item><title>[Network Computing] SNMP v3 vs v2c — Securing network equipment monitoring in production</title><link>https://portfolio.net-flow.fr/en/veille/</link><guid isPermaLink="true">https://portfolio.net-flow.fr/en/veille/</guid><description>I currently use SNMP v2c on my Cisco 3560-CX and pfSense with a non-trivial community string and source IP whitelisting. This article made the case clearly enough to convince me to migrate to SNMP v3 for encrypted polling — it&apos;s on my roadmap for next quarter.</description><pubDate>Wed, 15 Oct 2025 00:00:00 GMT</pubDate><category>Cybersecurity</category></item></channel></rss>