I want to set up my home network to be ultra segmented and invulnerable to the incoming AI hackocaustWill this be enough?
>>109943840>not nicgiga
>>109943840>I want to set up my home network to be ultra segmented and invulnerable to the incoming AI hackocaustAnon, while I can see the goalpost you're aiming for, I'm not sure any old switch is going to magically do that for you without a proper open source router solution.
>>109943858so what do you use do you have a dedicated pc running router software with a bunch of nics?
I don't get what you're thinking that switch will do. Do you think an AI wouldn't understand your vlan layout?
>>109943880>so what do you useYou can use a dedicated PC, I'd suggest a low-power ARM solution with at least two ethernet ports, gigabit is always better. OpenWRT sells one called the "One" that's a bananapi board with their firmware on it. You can also build your own x64 one as well. I personally use the same bananapi OpenWRT uses with their software with an 8-way switch for getting everyone where they need to go. You can do all the vlan and host filtering hoopla you want on OpenWRT while keeping your privacy.
>>109943925It would separate my printers and local server from the internet, making it harder to access no?
>>109943840honest answer. NOu need deep fucking layer.
>>109943946>Low power ARM solution with at least two Ethernet portsI openwrt has some info on the compatible hardware. Anything from an off the shelf router you can flash their firmware on to a raspberry pi with a USB to Ethernet dongle to get a second port. Do some research, into what meets your networking needs, and see what you can find a good deal on. If you go with a raspberry pi or an old pc, you might need a separate wireless access point if you have a need for WiFi at all.
>>109944066I found some mini-PCs on Amazon for $300 with 4 ports, I'd likely go with thosedo you run wireguard or some VPN through it? id be concerned about throttling on a piand you don't do wireless at all?
>>109944095>Do you run wireguardI've been thinking of trying it out but not so far. It's mostly normie traffic, web browsing IPTV, and a few security cameras running to a local NVR, which I view remotely. I've got a NAS I occasionally access remotely, but usually not crazy amounts of transfers.>You don't do wireless at all?I do, I have an old router I use as a wireless access point. I originally tried flashing openwrt on it directly, but the firmware is locked down and wouldn't let me flash anything other than an update from the manufacturer.
dunno why any of you are helping this fucking retard. clearly they need to just go talk to a fucking AI. kill yourself.
>>109943840You sound like a smelly 20 year old with no idea.
>>109943840
>>109943946Fuck OpenWRT on x86, that shit gave me nothing but AIDS, like work fine for a day, then permanently freeze 30 seconds after boot. Ended up using RHEL and it's been solid as fuck.
>>109943840>get UART >get multimeter>flash it with openwrt>use old laptop with OPNSensew31c0m3 t0 7h3 d4rkw3b!!1
>>109943840Just hijack a few IP ranges and assign those randomly to hosts and VMs. At the firewall level default to denying any traffic within network segments and especially between network segments. Only do targeted allowances for specific machines, ports and protocols.UFW on machine. Assume everything is compromised and structure services and permissions accordingly. Contain blast radius, setup IDS and IPS, monitoring, hell buy a few Mac Minis while your at it and setup a counter swarm of abliterated models, pic related.
>>109946108>yourFUCK ME THIS WOULDN'T HAVE HAPPENED WITH A SWARM