h_ramus

joined 9 months ago
[–] h_ramus@piefed.social 92 points 5 days ago (1 children)
[–] h_ramus@piefed.social 1 points 5 days ago

What are the upsides compared to Netbird which is based on Wireguard? Seems a bit overkill for my needs, can connect fine without a VPS.

[–] h_ramus@piefed.social 1 points 6 days ago (2 children)

I'm behind CGNAT and wouldn't want to expose devices to the internet.

[–] h_ramus@piefed.social 2 points 6 days ago

After everything is setup, create a network route to distribute an ip to machines connected to you lan. I can't recall exactly but setting up Netbird was pretty straightforward when following the documentation. They also have their own for Opnsense - (https://docs.netbird.io/get-started/install/opnsense)

Managed Networks documentation

[–] h_ramus@piefed.social 9 points 6 days ago

Radiohead OK Computer

[–] h_ramus@piefed.social 3 points 6 days ago (2 children)

I'm behind CGNAT. My OpenWrt router is a Netbird server that can be connected externally. Having the Netbird server in the router allows me to ssh devices or use services as if I was connected via WiFi.

There's documentation for Opnsense as well -(https://docs.opnsense.org/manual/how-tos/netbird.html)

[–] h_ramus@piefed.social 7 points 1 week ago (4 children)

For redundancy. In case one has issues or changes the terms and I'm kicked out. The netbird android app also seems to consume a lot of battery so I'm trialling which one is more battery efficient.

[–] h_ramus@piefed.social 39 points 1 week ago (6 children)

Awesome stuff. I'm currently reusing my router and media device to host a file sever, radicale (contacts, calendar and tasks) and immich. All this stuff on old HDDs taken from old laptops with a usb enclosure. Get redundancy with rsyncing between drives and everything was essentially low cost. It's not pretty or the fastest but good enough for my needs.

Netbird and zerotier servers in my router to connect my devices as I'm behind CGNAT. Essentially have contacts, calendar, tasks, files and photos all under my control. No fancy media player but don't have time to watch films or series outside. Immich was the last step to get rid of google stored files. Good riddance.

[–] h_ramus@piefed.social 14 points 1 week ago (1 children)

No reason not to use Endeavours these days, lazy man's Arch. Manjaro had a few issues and the opinionated approach regarding video codecs sealed it for me.

[–] h_ramus@piefed.social -1 points 3 weeks ago (1 children)

I can't take any Microsoft attempt at security seriously. One of the most important elements to improve security is to delete windows. Secure boot is lots of things but not secure.

[–] h_ramus@piefed.social 1 points 3 weeks ago (4 children)

Gives the illusion of security without being secure. Get the drive in a separate machine and, unless encrypted, secure boot is security theatre. Windows login password is similarly useless when the drive can be accessed when attached elsewhere.

Get rid of secure boot, install a granny-safe Linux distribution like Mint and get your drive LUKS encrypted.

view more: next ›