0 Followers
0 Following
4 Posts

Is OPNsense like dd-wrt or OpenWrt?

Yes, both are similar in terms of being a firewall/access point. OpenWrt is Linux based and OPNsense is based on FreeBSD.

OpenWRT and OPNsense have similar wireless capabilities but OPNsense is a little bit more restricted due to being based on FreeBSD, it still should be easy to manage though. More on the wireless compatibility can be found at the below link.

www.freebsd.org/releases/14.2R/hardware/#wlan

I haven’t used dd-WRT so I can’t speak to it, but have tried OpenWRT. My personal preference is OPNsense, I just find it easier to use and prefer the interface.

Here’s a link to the OPNsense documentation.

docs.opnsense.org/index.html

I’m far from a network engineer but have been tinkering with computers and network stuff for 20ish years and there is still a ton that I don’t know. Don’t let it discourage you, you can make it work! Documentation can be muddy sometimes, and bland, but I find it best to just go one step at a time and slowly implement each piece while testing after each step.

FreeBSD 14.2 Hardware Notes

FreeBSD is an operating system used to power modern servers, desktops, and embedded platforms.

The FreeBSD Project

German Article On Global Food Supply

https://lemmy.world/post/28015226

German Article On Global Food Supply - Lemmy.World

Link to post. https://metawire.eu/post/8319 [https://metawire.eu/post/8319]

I mentioned a firewall in your last post, but didn’t get a chance to respond to what you said and saw this post.

You can use something like opnsense or pfsense (or something similar) behind your current router/modem.

If you have a router/modem combo, it would look like this.

Wall cable (fiber, copper etc) > Router/Modem > Firewall/Router device with opnsense installed on it > wireless or wire connected devices.

The hardware will cost money up front, the OS for it is free.

You can use this to isolate your devices from the router/modem that is the cause of concern, and have a secure connection to your jellyfin server. Eliminating the need for signed certificates.

Don’t over think it. You can secure your network without making it excessively complicated.

If you have a raspberry pi you can also experiment with running the firewall on that (just as a test since there aren’t official builds for the RPI that I know of) and pentest from the whatever device you use to do so connected to your router provided by your ISP or however you want to test it before you go out and buy hardware.

Just to be clear I wasn’t trying to be any sort of way with my question previously, but wanted a better understanding of what you meant by not trusting your device.

Just out of curiosity, why is your network not a trusted party?

You could start with an additional firewall and maybe setting up traffic restrictions on it to mitigate what devices can communicate with each other, in addition to setting up a local VPN.

Yes its possible to spoof mac addresses and such but it really sounds like your concerns could be mitigated by having a more secure network setup.

If your network isn’t a trusted party then you need to start there. Why isn’t it a trusted party and what do you need to do to secure the traffic to/through it.

Radarr, Sonarr, SABnzbd and Permissions

https://lemmy.world/post/27438551

Radarr, Sonarr, SABnzbd and Permissions - Lemmy.World

I’m trying, and struggling a little bit with getting the three items in the title setup the way that I want. Running Arch. I would like to run Radarr, Sonarr and SABnzbd all under the same user/group. My reasoning is that I (am just being overly particular) want any of the files created by those services to fall under the same owner/group. This is easy enough to accomplish by running systemctl edit service.service and adding the appropriate lines in the configuration for each one and saving it so the services run using the specified user/group. The issue that I’m having is that the correlating folders in /var/lib/ have the ownership of the original users. I can manually change that ownership to the user/group I want but if I reboot the computer the SABnzbd folder ownership reverts back to default (the other two were doing the same thing but suddenly stopped and I’m not 100% sure why) or if the services get updated, the folders will also revert back to their default user/group. Is there a way for me to enforce the ownership of those folders to the user/group that I have set to run the services regardless of them getting updated or the machine rebooting?

I would take the whole thing out short of the side up against the house and put a decent wood picnic style table, a fire pit (if that’s allowed where you’re at) like one of the steel ones raised up off the ground and use the extra space for growing veggies and stuff.

Depends on what you want though.

Are you wanting to repair/replace it and have that whole patio area or are you willing to do a bit more with the earth underneath it?

You could always do like you said and use pavers or gravel some of the area too and still reclaim some of the ground underneath to use for other stuff.

Yeah, wireshark is a good start.

Something else to consider but requires a different device would be to add a firewall (something like a Protectcli device running OPNsense) between your modem and router and set it up to block the outgoing request and see if it breaks something, or at the very least if you’re concerned about security, you’re blocking that specific traffic while you troubleshoot the cause using wireshark or some other method.

Are we forgetting the actual model names?

Macbook Air - Mine is A2337. They do have arbitrary model numbers for all of their stuff too. Guaranteed they do the same thing with their pens, pencils, and other stuff. It’s just that most consumers rarely pay attention to them. To be fair though, most of the apple model numbers I’ve seen are similar to what I said above which is not nearly as bad as how they do TVs lol.

People comment because the foot to body length ratio looks weird. Not because he’s “short”. 5’7 isn’t short. It’s not tall like someone that’s 6’5 but it’s not short either.

+1

ADHD as a kid, only treated for a few months.

Got kicked out and shuffled around in my early teens, spiraled until I was in my early 20’s.

Military until I couldn’t take it anymore, I think the 24/7 activity and walking a narrow line helped the ADHD but got tired of getting threatened with jail for being forced to do things that were not legal.

Forced myself out of the military (long story but they let me do it because my 1SG was the cause of the above statement and he was force retired immediately after I got out) lived overseas for a while, watched as my home (the states) slowly started going crazy, started spiraling again and dreading moving back, moved back to the states cause I couldn’t make it work anymore, visa ran out and I didn’t have the energy to try to figure it out.

Two weeks after moving back, got a job (somehow), got therapy through the VA and am now properly treating my issues. Constantly dreading the near future even moreso with clarity now. Yay.

That’s the short version lol.