What's the problem with Blowfish?
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts MenuQuote from: micneu on March 05, 2021, 08:04:46 PMCypher mit HW Crypto? Wundert mich etwas, 100 Mbit/s sollten die Kistchen doch schaffen.Quote from: pmhausen on March 05, 2021, 03:19:52 PMOpenVPN
Welches VPN? ;)
Quote from: Ricardo on March 03, 2021, 08:34:26 PMhttps://bugs.freebsd.org/bugzilla/show_bug.cgi?id=242744
Hmm, is this documented somewhere?
Quote from: DerAndyK on February 27, 2021, 02:46:45 PMDas sieht so aus als hast Du die serielle Konsole aktiviert. D.h. Du siehst die Boot-Meldungen des Kernels noch auf der VGA/IPMI, das Login kommt dann aber auf der seriellen.
Bisher hab ich sonst keine Probleme. Mit Enter oder CTL-C kommt man leider auch nicht weiter. Wenn ich herunterfahre oder einen USB Stick einstecke oder so dann seh ich das alles in der Konsole. Die WebUI und und alle Firewall Dienste laufen normal. Seltsam oder?
Quote from: steppi on March 03, 2021, 10:02:10 AMSpectre and Meltdown are side channel attacks in a multi-tenant environment. They are hardly relevant on a dedicated appliance without any remote user access. Unless you already have a remote code execution vulnerability in which case you have larger problems, IMHO.
Couldn't find it yesterday, are these Intels aware of spectre and meltdown?
Quote from: toxic on March 02, 2021, 11:06:29 PMVLANs and separate wireless SSIDs on access points that support VLANs are the way to create multiple separate networks at the infrastructure level to separate untrusted devices that do not support VLANs, of course.
Seems VLAn is the way to go but with most devices not supporting it natively I need to have the switch do these things, plus separate wireless SSIDs, and very fast the number of networks grow and the maintenance work grows with it...
Quote from: toxic on March 02, 2021, 11:06:29 PMDon't think in terms of function but in terms of trust. Put all devices you trust equally well (or not ;)) into the same VLAN. Essentially only your infrastructure needs to support VLANs. The switch, the access points, and OPNsense. These are connected by ports that carry tagged frames, so called "trunk" ports.
In short, it all centers in applying different fw policies by "class" of devices, for me they are my networking stuff, servers, PCs, media/gaming, smart home devices and finally CCTV. That's already 6 VLANs and at least 3 of them have devices both wired and others wireless, so 3 SSIDs... That's getting quite complex for me, especially since I don't mind them contacting each other most of the time...