ohai.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A cozy, fast and secure Mastodon server where everyone is welcome. Run by the folks at ohai.is.

Administered by:

Server stats:

1.8K
active users

#pfsense

0 posts0 participants0 posts today

People really need to set up a dns black hole, use #pihole #pfsense with #pfblockerng use something.

Essentially a mini PC sits between my devices and the internet and filters it.

I am subscribed a bunch of lists that allow my device to block malware, adware, ads and other things I don't want my devices to connect to.

You can't trust most devices so you need to control your connection.

Also, use #Grapheneos

#privacy #security #fuckgoogle #apple #ads

pi-hole.net/

pi-hole.netPi-hole – Network-wide Ad Blocking
Replied in thread

@fusl @mnalis @0xF21D

I do that with #pfSense & #OPNsense (depending on the exact network in question) and have it merge multiple sources that get cached.

In total, I do may out the 30 DNS servers and whilst I have #IPv4only, I have everything ready for #DualStack (#IPv4 + #IPv6) once my ISP stops keeing it's thumbs um their ass...

List of useful things. Contribute to greyhat-academy/lists.d development by creating an account on GitHub.
GitHublists.d/dns.servers.list.tsv at main · greyhat-academy/lists.dList of useful things. Contribute to greyhat-academy/lists.d development by creating an account on GitHub.

This is super tempting as a #pfSense / #OPNsense box. 12GB RAM, 512GB SSD, dual 2.5G network ports for $149 with coupon. It doesn’t specify if it’s an Intel NIC but one of the reviews says they use it for OPNsense. [Edit: It’s Intel I226-V]
tapbots.social/@paul/114140961

tapbots.socialPaul Haddad :tapbots_logo: (@paul@tapbots.social)Attached: 1 image It's so cute, but needs moar RAM. https://www.amazon.com/AOOSTAR-Upgraded-Computer-Computer4K-Business/dp/B0DT47LM6S

I've always been told that #OpenWRT was somewhat unprofessional, that it was just a bunck of duct-taped tools with a linux kernel in it, that I should rather use #opnsense / #pfsense for more complete use case.
Now that I got enough experience with both (several years of quite advanced use), I can say that I feel way more confortable with OpenWRT.

Hi I'm 90s Script Kiddie, I grew up online. I do #devops and #automation code stuff for my job. My hobbies are #gamedev, #vintageelectronics, #gaming, #repair ing stuff to keep it out of the landfill, old #apple hardware, #linux admin (I run my own mail, web, media etc servers) #network admin especially #pfsense, I love #books, #anime, #manga - reading in general really. #music too! Jazz, alt-rock, pop, folk, chiptunes... I also enjoy #cooking and am trying to get better at it. Beliefs-wise I'm something of an anarchist, yearning for a #solarpunk future I'll probably never live in, but I do what I can to do #mutualaid for the people in my circle. If you're my friend, I will set up all your electronics for you, replace the battery in your phone, give you some free mail or web hosting... whatever! I try to limit my consumption of news media for my own sanity, but I love reading about what people are doing in their own words. That's why I love the Fediverse, and it's why I'm lurking around on #gopher

I don't have a lot of friends. I've always been kind of a loner, and a little awkward. Luckily, I love my own company and have no problem spending time alone. Those few in my circle are people who I think make the world better by being in it.

I'm a #queer #bi #enby and I don't really give a hoot about what pronouns you use for me. Actually, I sort of feel like however you labeled me I'd want to break out of that box somehow. I guess I'm pretty contrary.

New #introduction who dis.

Any #PFSense / #OPNsense wizards out there?

Anyone ever see it where one's WAN interface randomly decides to become a private IP instead of proper public one?

This is like the 3-4th time over 2-3 years and it's really getting on my nerves. Rare enough for me to not dig in and fix, but common enough to where -> this must never happen again.

Maybe fault of AT&T gear? But would love to have pfsense re-check for IP if it ends up with a 192 somehow for WAN interface.

Replied in thread

@snow Maybe consider a provider that allows you to do #Blackholing?

  • In fact that is something #DECIX advocates for: Stopping #DDoS at the #IX level!

#Contabo for example allows to book a dedicaded, managed #pfSense #Firewall woth their #dedicaded #Servers so you can just block entire ASNs aggressively.

I am trying to configure #pfsense #openvpn through alias instead of single CIDR notations, as soon as I make the changes, clients from the outside can't connect, even after restarting the openvpn server. But testing with a machine I have here through a mobile provider hotspot the new openvpn settings work. *scratches head* #sysadmin #IPV6 #ipv4