[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
▼ Settings Mobile Home
/g/ - Technology


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


File: grouter.png (146 KB, 803x593)
146 KB PNG
I want to set up my home network to be ultra segmented and invulnerable to the incoming AI hackocaust

Will this be enough?
>>
>>109943840
>not nicgiga
>>
>>109943840
>I want to set up my home network to be ultra segmented and invulnerable to the incoming AI hackocaust
Anon, while I can see the goalpost you're aiming for, I'm not sure any old switch is going to magically do that for you without a proper open source router solution.
>>
>>109943858
so what do you use
do you have a dedicated pc running router software with a bunch of nics?
>>
I don't get what you're thinking that switch will do. Do you think an AI wouldn't understand your vlan layout?
>>
>>109943880
>so what do you use
You can use a dedicated PC, I'd suggest a low-power ARM solution with at least two ethernet ports, gigabit is always better. OpenWRT sells one called the "One" that's a bananapi board with their firmware on it. You can also build your own x64 one as well. I personally use the same bananapi OpenWRT uses with their software with an 8-way switch for getting everyone where they need to go. You can do all the vlan and host filtering hoopla you want on OpenWRT while keeping your privacy.
>>
>>109943925
It would separate my printers and local server from the internet, making it harder to access no?
>>
>>109943840
honest answer. NO
u need deep fucking layer.
>>
>>109943946
>Low power ARM solution with at least two Ethernet ports
I openwrt has some info on the compatible hardware. Anything from an off the shelf router you can flash their firmware on to a raspberry pi with a USB to Ethernet dongle to get a second port. Do some research, into what meets your networking needs, and see what you can find a good deal on. If you go with a raspberry pi or an old pc, you might need a separate wireless access point if you have a need for WiFi at all.
>>
>>109944066
I found some mini-PCs on Amazon for $300 with 4 ports, I'd likely go with those
do you run wireguard or some VPN through it? id be concerned about throttling on a pi
and you don't do wireless at all?
>>
>>109944095
>Do you run wireguard
I've been thinking of trying it out but not so far. It's mostly normie traffic, web browsing IPTV, and a few security cameras running to a local NVR, which I view remotely. I've got a NAS I occasionally access remotely, but usually not crazy amounts of transfers.
>You don't do wireless at all?
I do, I have an old router I use as a wireless access point. I originally tried flashing openwrt on it directly, but the firmware is locked down and wouldn't let me flash anything other than an update from the manufacturer.
>>
dunno why any of you are helping this fucking retard. clearly they need to just go talk to a fucking AI. kill yourself.
>>
>>109943840
You sound like a smelly 20 year old with no idea.
>>
File: 20260930-194628372.jpg (313 KB, 1080x1823)
313 KB JPG
>>109943840
>>
>>109943946
Fuck OpenWRT on x86, that shit gave me nothing but AIDS, like work fine for a day, then permanently freeze 30 seconds after boot. Ended up using RHEL and it's been solid as fuck.
>>
File: nig.jpg (5 KB, 250x171)
5 KB JPG
>>109943840
>get UART
>get multimeter
>flash it with openwrt
>use old laptop with OPNSense
w31c0m3 t0 7h3 d4rkw3b!!1
>>
File: 1785974434340813.png (717 KB, 589x725)
717 KB PNG
>>109943840
Just hijack a few IP ranges and assign those randomly to hosts and VMs. At the firewall level default to denying any traffic within network segments and especially between network segments. Only do targeted allowances for specific machines, ports and protocols.
UFW on machine. Assume everything is compromised and structure services and permissions accordingly. Contain blast radius, setup IDS and IPS, monitoring, hell buy a few Mac Minis while your at it and setup a counter swarm of abliterated models, pic related.
>>
>>109946108
>your
FUCK ME THIS WOULDN'T HAVE HAPPENED WITH A SWARM



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.