• 1 Post
  • 9 Comments
Joined 1 year ago
cake
Cake day: June 12th, 2023

help-circle


  • I really appreciate all your input, its really helped me connect a few dots that needed connecting so I really do appreciate it my man. I’m aware of the OSI model and I was hoping my work with my homelab would help me understand better, but I’ve still got a ways to go. I really appreciate your explanations on Layer 2 and Layer 3, I understood the definitions but your explanation helps me connect the idea to real world examples. I also understood bridges somewhat but relating it to a switch makes it simple to understand and configure.

    Thanks for the links as well, I will be messing around with this config tonight so I will be using your comments as a resource, so really, thank you! Can I ask for permission to PM you if I have any questions related to homelab/networking? You and I seem very similar in our scatterbrain-ness lol, so I figured it might make things easier if that makes sense. I will definitely be doing more reading and research, the first link you provided seems like an absolute blessing of a resource.


  • I also think the abundance of content is a part of the issue, but with no clear solution. People are bombarded with a thousand stories about a thousand different things going on in their country, the world, their city, etc… But we know that Humans can only reasonably maintain around 150-200 close personal relationships max that you would be able to converse with and empathize with and what not, Dunbars number. I think this is part of the problem why people see everything in black and white imo, there’s an abundance of information out there and our society currently is in a state where everyone has to have an opinion on every conceivable subject but that’s just not feasible. And when there’s so much information to parse through humans tend to group things together as we love our patterns. So if you believe an idea from this group of people, you must believe the 100 other possible interpretations of correlated subjects and what not, or at least that’s how people tend to view others expressing certain viewpoints. I struggle with this and people who espouse hateful ideas and disinformation against Trans people, a lot of people may not know any better or believe that there’s this widespread push to transition people as young as possible which just isn’t the case. It’s something I find hard to extend grace on, it feels morally wrong to prevent people from making informed decisions between themselves and their healthcare specialist and besides that it is such a tiny portion of the population to be focusing on when there are much bigger widespread issues that affect us all. But its also something I feel is fueled a bit by this same issue we are discussing, I’m honestly not sure how you would work against this besides smaller and more tight-knit communities but then you have echo chambers, not that it wasn’t a problem in some subreddits as well. Very interesting thing to think about! Love hearing everyones thoughts!





  • Dude this is awesome, thanks for your comment! It’s exactly the type of engagement I was hoping for, someone to help with a few key concepts. I’ll definitely be taking your advice to heart it sounds like you’ve been through the ringer with your own setup

    I agree with you that running OPNsense in a VM is less than ideal but I figured as it would only affect my lab, I can deal with the occasional outage and this is more so I can learn first before going all in on a solution such as a netgate, I appreciate the suggestion there too. I’m not dead set on OPNsense I just figured a gui would be easier to navigate and it looked nice. I haven’t heard of suricata and mirroring WAN connection to pfsense, that definitely makes sense.

    As for the VLANs I’m not dead set on that in particular either, the switch I have supported it and it made the most sense as to how to segment my network in that way. So you are saying you can also segment a LAN connection with just a firewall? It would make sense as you can set rules as to how a device can communicate with other devices on the network, is it rather cumbersome to set it up in that way? And on VLAN performance I would assume that would not be a problem as I am the only user who would be connecting to my media server, unless I had a bunch of services sending and receiving shitloads of data essentially?

    I really appreciate all your help! You definitely sound like you’ve been doing this for a decade haha, very useful stuff. I might pop back and ask more questions later if you don’t mind


  • So you’re saying your services run on a separate subnet? 255.255.0.0? How would you connect from your home pc connected to your home WiFi? I assume have the vpn running on the machine on a different subnet and also have it running in front of the service, the vpn would give your home computer an IP on the /16 subnet range? Am I correct in that assumption?

    I suppose I need to get OPNsense actually working and providing a different subnet in the first place before worrying about all this, I appreciate your input! I understand about exposing the WAN IP, I’m assuming VPN tunnel for those specific services would protect my WAN IP as it would just send all my traffic to the VPN provider and then out to the actual destination, again correct me if I’m wrong. I don’t think I understand how the actual routing would work, how to hook the services into nginx proxy manager and how to know which ports to close and what not, but I suppose I’m not at that step quite yet