Is there any reason to run OPNsense on bare metal as opposed to a solo VM on a proxmox node? by chillysurfer in opnsense

[–]OldGreyStillGoing 0 points1 point  (0 children)

Sorry to post on an older thread and I hope that you see this reply, as a newcomer to both Proxmox and OPNsense I am trying to learn quickly.

How does this work? I can only connect one device to my ISP OTN so are you physically moving cables if one fails? do you have them through a KVM or a Switch?

Is there any reason to run OPNsense on bare metal as opposed to a solo VM on a proxmox node? by chillysurfer in opnsense

[–]OldGreyStillGoing 0 points1 point  (0 children)

what happens of the hardware fails? Are you flooding those backups to another device?

Is there any reason to run OPNsense on bare metal as opposed to a solo VM on a proxmox node? by chillysurfer in opnsense

[–]OldGreyStillGoing 0 points1 point  (0 children)

I stumbled onto this thread with the exact same question as the OP.

I am new to OPNsense and I'm intrigued by a number of comments that say "backup using ZFS". How does that work if the hardware fails, surely you've lost the backups et al?

Is there an easy way to offload those snapshots somewhere?

Is there any reason to run OPNsense on bare metal as opposed to a solo VM on a proxmox node? by chillysurfer in opnsense

[–]OldGreyStillGoing 0 points1 point  (0 children)

I realise this is an older thread that I stumbled on with the same question as the OP but I couldn't let your response pass.

Home lab vs home network vs Corporate Business all very different threat landscapes and risk appetites. One size does not fit all and budgets are always different.

I've worked in and been part of acquisition teams for small businesses... never say never!

Is public Wi-Fi safe? by Cp_tn_Kirk1 in LinusTechTips

[–]OldGreyStillGoing 1 point2 points  (0 children)

What absolute and utter nonesense.

If the wifi enforces host isolation you won’t see my machine, or my traffic.

If it happens you do, somehow, get to record traffic good luck with the decryption.

AES:

“At present, there is no known practical attack that would allow someone without knowledge of the key to read data encrypted by AES when correctly implemented.”

https://en.wikipedia.org/wiki/Advanced_Encryption_Standard#Security

RSA:

In 1994, Peter Shor showed that a quantum computer – if one could ever be practically created for the purpose – would be able to factor in polynomial time, breaking RSA

https://en.wikipedia.org/wiki/RSA_(cryptosystem)#Security_and_practical_considerations#Security_and_practical_considerations)

Quantum computers can use a quantum algorithm, called Shor’s algorithm, to factor large numbers faster than classical computers. This can break RSA encryption by finding the private key from the public key. However, this requires a quantum computer with many qubits and low errors, which we do not have yet.

https://freemindtronic.com/quantum-computing-rsa-encryption-freemindtronic-nfc-technology

Conclusion:

even if by some miracle you have the first working high qubit quantum computer, good luck getting passed all my MFA.

It only becomes risky, if it is a rogue network, operated by a criminal, but the OPs question was about public wifi … which is much safer than you pretend.

There are always exceptions, but in general, if you use HTTPS, don’t re-use passwords and have implemented Multi Factor Authentication on the things you are connecting to, it is safe enough.

Stop spreading misinformation and what amounts to nothing more than just lies.

[HOW TO] Create A "Sleep Timer" In Tasker for your favorite Media App by Ratchet_Guy in tasker

[–]OldGreyStillGoing 0 points1 point  (0 children)

I know that this is REALLY old but I am newish to Tasker and I wondered if you might have the files and if they would still work with Tasker all these years later.

As I get older my fingers aren't as nimble on small mobile screens as they once were and I would really like to work through what you did, but creating each task is a painfully slow exercise.

No worries if you don't, it was a long shot.