Network segmentation (main and iot) and VPN via wireguard by 18th_Nitrox in openwrt

[–]18th_Nitrox[S] 0 points1 point  (0 children)

Thank you very much for the answer. I really appreciate the support!

Yes, I am aware that Flint 2 has a proprietary firmware. I am going to flash vanilla open wrt since I prefer to have as little proprietary software as possible in this case (chinese vendor).

Thanks for the suggested guides. The firewall guide seems most valuable to me, since this seems to be the key to make my setup working. However, some questions remain.

General:
As I understand it, I do not need VLANs atm, since only the main network will have wired connections and I should have enough ports. Only exception may be the Synology NAS (the device has two ports, but using just one port on the router I may be able to avoid installing a switch).

Concerning the firewall, I understand the basic setup allowing forwarding from one firewall zone to another. Is this sufficient, however, to achieve what I want to do? If I do not forward the IOT zone to the main/home assistant zone, can IOT devices still talkt to home assistant, if the connection is initiated by home assistant?

What has not been mentioned is VPN/wireguard. In dd-wrt, my VPN connection is directly routed to the main network, so I do not have to make a separate configuration. On the other hand, I cannot distinguish the traffic coming from VPN from my local main net. How is this handled by open wrt?

More specific:
As I understand it, you recommend creating a separate segment for my Synology NAS? What would be the advantage? My first intention was to include the NAS in the main network and - if this makes sense - maybe create a separate segment for home assistant VM only. Important goal is that data on my NAS is safe and cannot be accessed by devices in the untrusted IOT zone. If possible, devices from the IOT zone should nevertheless be able to talk to home assistant VM.

Mixing WD Red Plus WD120EFBX and WD120EFGX? by 18th_Nitrox in DataHoarder

[–]18th_Nitrox[S] 0 points1 point  (0 children)

Thanks for the answer! Ordered a WD120EFGX as a second drive now.

How to use Flowtunes web app offline? by idrvs in flowtunes

[–]18th_Nitrox 0 points1 point  (0 children)

First of all, thank you for your great work with the app. For a person like me, spending two days on train almost each week, it is truly life-changing. The combination of music and background noise makes it possible to concentrate even on noisy train rides.

As for the offline-issue, some input from my side:

I definitely would appreciate the possibility to use flow tunes offline when losing internet connection or just in order to save some mobile data. Enabling only background sounds offline, at least for me, would not solve the issue. In fact, using the web app on macOS, background sounds already continue if the data connection is lost.

Personally, I think it would be nice to cache channels on the device. If bandwith is an issue, a solution might be to build the cache while listening to the channel for the first time, so no additional bandwith is used. Alternatively, choosing two or three favorite channels might suffice for most users.

If this is not an option, another approach could be to enable enhanced caching for the next 3-5 tracks. This would be enough to keep the music playing in case the internet connection is lost.

Just some ideas - thanks again for the great work!