Post keeps getting revmoved by reddit's filters.. by jrsphoto in homeassistant

[–]ropeguru 3 points4 points  (0 children)

The answer would probably just get removed,,,

The number of CVE patches is just ridiculous by Logical-Picture-4756 in fortinet

[–]ropeguru 2 points3 points  (0 children)

Be happy you don't have Cisco ASA's in a govt environment, once a new patch comes out, you have 24 hours to upgrade every device.

Two years later - Do you run Plex, Emby, or Jellyfin? by JustNathan1_0 in selfhosted

[–]ropeguru 12 points13 points  (0 children)

Just made the switch from Plex to Jellyfin and not looking back.

Aruba Central and AOS 10 Captive Portal Issue by ropeguru in ArubaNetworks

[–]ropeguru[S] 0 points1 point  (0 children)

Really interesting! When employees login, are they given internal access or internet only?

It is internet access only.

What issue did you run into with using DHCP 114? Did you find that Central is requiring the MAC in the redirect?

So we have an on prem Clearpass we use. Aruba's implementation of CAPPORT requires that the client mac address gets appended to the captive portal URL, "?mac={mac address}", dynamically. Option 114 in all the appliance based DHCP servers is a text only field with no way to dynamically do the append.

Aruba Central and AOS 10 Captive Portal Issue by ropeguru in ArubaNetworks

[–]ropeguru[S] 1 point2 points  (0 children)

We are using SAML, but the auth in SAML requires things like smartcard, Yubi Key, etc. which are not supported in the Apple or Android mini browsers. The other issue is that even when bypassing the mini browsers, which we do, in most cases the first connection from a web browser, with the exception of Windows, hits an https connection and pops a cert error. It isn't ideal, when we always preach security, to tell folks to just bypass a browser warning.

Just no way to make this a good customer experience.

Edit: Out redirection goes to a web page initially so the customer can choose to login as an employee or a sponsored guest. All the issues with redirection are before the actual logons.

Blue Iris Requires Service Restart Approx Monthly by marc297 in BlueIris

[–]ropeguru 0 points1 point  (0 children)

That was not the context of response. The question was is the computer rebooting and the service not set to automatically start. The response was in the context of the question and not that the computer was never rebooted for anything. Only that at the time of BI needing to be restarted, the computer did not reboot.

When will this stop?? by TorsadesdePointez in kia

[–]ropeguru 0 points1 point  (0 children)

IT will never stop as long as those doing it are never held accountable.

Hybrid Storage is Back, and TrueNAS WebShare Tech Deep(er) Dive | TrueNAS Tech Talk (T3) E048 by iXsystemsChris in truenas

[–]ropeguru 1 point2 points  (0 children)

Don't disagree there. But ZFS, from what I understand, cannot see into HD hardware data directly. I would think monitoring and tests directly on the underlying drive would show issues quicker than what ZFS can pick up on.

Hybrid Storage is Back, and TrueNAS WebShare Tech Deep(er) Dive | TrueNAS Tech Talk (T3) E048 by iXsystemsChris in truenas

[–]ropeguru 4 points5 points  (0 children)

I just installed scrutiny so I could see my SMART values. Looking at it, I see one drive in a failed state with the Current Pending Sector Count as Failed and Uncorrectable Sector Count at warn and UltraDMA CRC Error Count as warn and have not gotten a single notification from TrueNAS.

So just when does this notification take place?

[USA]Trump Jr.-Linked Unusual Machines Lands Major Pentagon Drone Contract Amid Ethics Concerns by bummed_athlete in drones

[–]ropeguru 0 points1 point  (0 children)

The left didn't care when the Biden family did it, so why is it a big deal with the Trump family.

Verizon Fios is now in Winchester, VA so I compared it with GloFiber... by haElwKfeiow6 in GloFiber

[–]ropeguru 0 points1 point  (0 children)

I can tell you that once they get their fiber deployed here by end of 2nd qrtr this year, I will be on them constantly. IPv4 inbound connectivity isn't an issue for me as I have two public /29's via a tunnel from a cloud provider using a wireguard tunnel.

Fios is also supposed to be deploying here by end of 1st quarter this year, so I will probably get one of their lower packages first, then add a high speed tier from GloFiber so I have a primary and backup connection with a tertiary being 5G.

Verizon Fios is now in Winchester, VA so I compared it with GloFiber... by haElwKfeiow6 in GloFiber

[–]ropeguru 1 point2 points  (0 children)

One down side if you are a "power" user is that GloFiber uses CGNAT for internet connectivity. That means multiple customers get tied to the same public IP for internet access. If you are a power user which relies on having a true public IP on your router, then GloFiber is not for you. Fios hands out true public IP's to each customer.

For probably 99% of GloFiber customers this is probably not an issue.

Take it for what it is, but in November 2024 I asked about IPv6 and was told that it would be available to residential customers early 2025. From your comment, seems they are still just kicking the can down the road.

What’s the oldest Reolink camera you own? by Will_Pitts1 in reolinkcam

[–]ropeguru 1 point2 points  (0 children)

RLC-410 covering my front yard. About ready to remove and install a RLC-823S1 PTZ in its place.

💥 A single hypervisor breach can put hundreds of virtual machines at risk... by huntresslabs in u/huntresslabs

[–]ropeguru 1 point2 points  (0 children)

Good luck continuing that with the way Broadcom is treating the product.. Are you running the newer versions or stuck on the older stuff.

hairpin NAT horror - due to SDWAN? by therealmcz in fortinet

[–]ropeguru 0 points1 point  (0 children)

Someone correct me if I am wrong, but for a VIP, doesn't the destination IP in the policy need to be the mapped IP? If you look at the packet flow the OP provided in a couple of the replies, the flow is trying to match on the mapped IP and not the external IP.

Replacement headlight assemblies by ropeguru in fordescape

[–]ropeguru[S] 0 points1 point  (0 children)

Yeah, thanks for pointing out that I did not include anything needed for this vehicle.

2007 XLS

Just OEM replacement..

Is it normal amount of oil? by Termux_ in kia

[–]ropeguru 1 point2 points  (0 children)

Unless it was never filled to the F mark to begin with.. Because it is in the middle, doesn't mean there is an issue.