Having SSL for all home network

Started by bookie56, Today at 10:38:10 AM

Previous topic - Next topic
Hi guys!
New guy on the block....and before I get shot down...I know that my question has been asked before...just that searching on the forum is not easy...

Here is the situation....
I have a home network consisting of many computer some Windows most Linux....
It would be nice to be able to access everything on my home network without getting ssl certificate is not safe...
Yes, I know how to add selfsigned ones....but it means adding the certificates on all devices in my network...bit time consuming.

Is there a kind sole here that can get me up and running with that....?
I have heard good things about duckdns...but am open to advice from those that can....

I have only recently made the switch from pfsense to opnsense.....when something is opensource it should be left open source....or still provide the same quality of service to home users....which sadly is not the case with pfsense any more...

Running a business I don't always have the time to research things and a family member was horrified that I was on pfsense using a closed source product...


I do not mind putting the work in to set all this up - if someone would help me.....

My router at the moment has a four port nic and instead of vlans I have a dedicated port for company...company wifi....private...and private wifi ...

With firewall rules stopping the company network being able to talk to the private network.....

I will stop waffling on now...

Thankyou!

bookie56

I use this
https://certifytheweb.com/

with powershell/ssh scripts etc to deploy to OPNSense, NAS's, nginx etc...all sorts.
Hardware:
DEC750v2

Quote from: bookie56 on Today at 10:38:10 AMI have a home network consisting of many computer some Windows most Linux....
It would be nice to be able to access everything on my home network without getting ssl certificate is not safe...
Yes, I know how to add selfsigned ones....but it means adding the certificates on all devices in my network...bit time consuming.

Is there a kind sole here that can get me up and running with that....?
I have heard good things about duckdns...but am open to advice from those that can....
Do you want to get rid of the warning just locally or do you want to access everything from the internet either via Reverse Proxy or perhaps WireGuard which would then still make it local ??

Self-Signed SSL Certificates are easy to work with when using Pale Moon as your browser : Just click two or three times and you have added the certificate as an exception and you are DONE! :)

All other browsers have made it a very unnecessary complicated process over the years which is a shame really...
Weird guy who likes everything Linux and *BSD on PC/Laptop/Tablet/Mobile and funny little ARM based boards :)