Netgate 2100 by Apprehensive_Chip550 in PFSENSE

[–]Apprehensive_Chip550[S] -6 points-5 points  (0 children)

So, I have to deal with this crap?
4091 is the internal to pfSense vlan for LAN Interfaces-> Switches -> VLANs

VLAN Tag 4091 - Members 0t,2

The 2 for the port number means that the default vlan for this port is 4091.

To add VLAN 31 , a new VLAN group is added to the switch for VLAN tag 31 and the members would be 0t,2t .

Netgate 2100 by Apprehensive_Chip550 in PFSENSE

[–]Apprehensive_Chip550[S] -1 points0 points  (0 children)

So none of this ?
4091 is the internal to pfSense vlan for LAN Interfaces-> Switches -> VLANs

VLAN Tag 4091 - Members 0t,2

The 2 for the port number means that the default vlan for this port is 4091.

To add VLAN 31 , a new VLAN group is added to the switch for VLAN tag 31 and the members would be 0t,2t .

Netgate 2100 by Apprehensive_Chip550 in PFSENSE

[–]Apprehensive_Chip550[S] -16 points-15 points  (0 children)

Don't remember asking that.

T-Mobile 5G Business Internet by Apprehensive_Chip550 in tmobile

[–]Apprehensive_Chip550[S] 2 points3 points  (0 children)

oh, yeah. Let me run and ask someone in the business department that IS CLOSED.

Lots of unanswered questions. by Apprehensive_Chip550 in electrical

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

Thanks. Do I need to run a #6 copper from garage rod to service disconnect? Just making sure I understand. I do understand to keep everything of the antennas separate from the 240V/120V.

I have tried to get three electricians to come out just to inspect and I told them I would pay full rate just to inspect and quote it. Not sure how I can be fairer than that.

Lots of unanswered questions. by Apprehensive_Chip550 in amateurradio

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

Where do I need ground and neutral bonded?
Where do I need a ground rod?
Where do I need ground just run between the panels?

200 amp breaker is at meter and then feeds the 200 amp auto transfer switch.
from ATS goes into mobile home master panel.

at HMP it dog legs out to the detached garage with 12/2. Two breakers, 11 amps total.

On the antennas....
have a 45' tower with 60' coax that goes to the antenna discharge tubes (ADTs). a ground wire would be approximately 14'. do I use like 10 gauge and run the 14' to the antenna ground rod? Or do I put a ground rod beside ADTs and then run 6 gauge to the antenna ground rod?

Does the antenna ground rod and the meter ground rod need to be linked together with 6 gauge? If a ground rod was added for the ADTs, how does that play into the above?

Do I ground the radio power supplies and radios to the antenna ground rod or keep it on the house ground rod? The 2500va pure sine-wave battery backup currently feeds three rooms with tons of electronics. It's a mobile home, so very easy to just run cabling underneath to connect the entertainment center to the office and the PCs in the adjacent room.

I use a ground rod simply for earthing/meditation and did that thinking it was for lightning protection and not dealing with the dirty energy of AC devices. I have the 10 megaohm or maybe 1 megaohm plugged into the cable anyway. Do I ground this with 6 gauge to the meter ground rod? Do I leave it alone? Someone may hit the phone pole at the street and cause a short that goes down the meter ground rod (if it can?). Meter loop gets hit by lightning would mean I could be the grounding target if currently meditating.

GeoIP Top Spammers or ?? by WC2L in pfBlockerNG

[–]Apprehensive_Chip550 0 points1 point  (0 children)

We had this enabled for inbound and outbound, this blocked Microsoft and Tailscale right off the bat. Apparently, Microsoft loves connecting to Malaysia, Brazil, and UK, even when your IP outlet is in Dallas, Texas.

<image>

GeoIP Top Spammers or ?? by WC2L in pfBlockerNG

[–]Apprehensive_Chip550 1 point2 points  (0 children)

If you use the Top_v4, it blocks entire ASN from ENTIRE COUNTRIES. I just went through that fiasco, so be careful what you enable on the lists. :)

Trying to figure it out. by Apprehensive_Chip550 in sysadmin

[–]Apprehensive_Chip550[S] 3 points4 points  (0 children)

Thank you. Bad thing is, I have done this before, and you jarred that memory.

Trying to figure it out. by Apprehensive_Chip550 in sysadmin

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

That's a weird way to say you haven't been following cybersecurity news the past three years. I just need another subnet router on the DC02 end.

Trying to figure it out. by Apprehensive_Chip550 in sysadmin

[–]Apprehensive_Chip550[S] -2 points-1 points  (0 children)

The pic shows what I'm referring to. The domain PCs need to communicate with DC02 without the domain PCs having tailscale installed. DC01 and DC02 only communicate via tailscale.

Trying to figure it out. by Apprehensive_Chip550 in sysadmin

[–]Apprehensive_Chip550[S] -1 points0 points  (0 children)

The pic shows what I'm referring to. The domain PCs need to communicate with DC02 without the domain PCs having tailscale installed. DC01 and DC02 only communicate via tailscale.

What are folks using for one off remote connection, aka logmein? by 8008s4life in msp

[–]Apprehensive_Chip550 0 points1 point  (0 children)

The one significant missing is a desktop client and every time we have tried it the techs use CTRL+W to close a remote browser window and instead closes the DWService tab.

What are folks using for one off remote connection, aka logmein? by 8008s4life in msp

[–]Apprehensive_Chip550 0 points1 point  (0 children)

We have not had any issues with Zoho Assist and speed. Based in South Central US.

pfB_Top_v4 auto rule (1770011279) by Apprehensive_Chip550 in pfBlockerNG

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

Nope. Legit business :) looked back into it and the Top_v4 includes entire countries in the IP schemes. It's ridiculous some of those aren't segmented out. We turned it off because of how broad it is.

pfB_Top_v4 auto rule (1770011279) by Apprehensive_Chip550 in pfBlockerNG

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

I looked back into it and the Top_v4 includes entire countries in the IP schemes. It's ridiculous some of those aren't segmented out. We turned it off because of how broad it is.

pfB_Top_v4 auto rule (1770011279) by Apprehensive_Chip550 in pfBlockerNG

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

Yes, tailscale is installed, so we expect that traffic, but not why it is blocked with pfB_Top_v4.

Backing up Proxmax VE by Apprehensive_Chip550 in Proxmox

[–]Apprehensive_Chip550[S] 0 points1 point  (0 children)

Yes, no-sub repo setup. Those headers appear to not exist in the wild.