• 0 Posts
  • 29 Comments
Joined 2 years ago
cake
Cake day: April 16th, 2024

help-circle
  • Take a look at OPNsense which is open source or pfSense which is more commercial but still has a community version. Good documentation and will run on really old hardware as long as you have two Ethernet ports in the computer. Until last year my router was a 2007 dual core dell PC. I upgraded to a fifth generation I5.

    I run the licensed version of pfSense on all the routers in my org. I have full tunnels between each location along with full blocking of malicious sites including all adult content. It may look complicated but if you want to learn how netowrking works you can do a lot worse.















  • Nope. I looked at it and couldn’t come up with a way to do it. Please ignore that though. I would love to eliminate their device but so far I haven’t been able. If you figure it out I would be happy to give it a try. I’m using the passthrough method on my att router. My router does have a public IP on the wan and I shut IPV6 down completely.

    I have quite a bit of experience with the tech. I’ve worked for several ISPs over the years. My last gig was sysadmin for a small four town ISP.



  • MehBlah@lemmy.worldtoSelfhosted@lemmy.world•DNS server
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 year ago

    I use pfsense as my router os and run pfblockerng for my filter. Anytime I have some problem I can log in to the router and look at what is being blocked and if necessary whitelist the entry that is being blocked.

    I also redirect all dns to my router at the firewall and block dns over https. This means that all dns no matter the settings on the client machine are redirected to the router. Its not fool proof but so far so good.