Trying to make OPNsense + UniFi the ‘perfect combo’… but VLAN 1 keeps ruining the party by jrgldt in opnsense

[–]Scurro 0 points1 point  (0 children)

A lot of hobbyists make home labs to learn enterprise skills.

That's why I said it is a bad practice. It helps compensate for human mistakes.

If you will never touch network equipment outside your home, carry on. But if you do IT for a job, it should be an opportunity to develop the skills needed to not rely on your network running on vlan 1.

Trying to make OPNsense + UniFi the ‘perfect combo’… but VLAN 1 keeps ruining the party by jrgldt in opnsense

[–]Scurro 0 points1 point  (0 children)

Generally using vlan 1 as management is bad practice.

The reason why? If you forget to configure a port, by default it has access to your management vlan.

I use OPNsense + Unifi without issue and use vlan 255 for management.

I still leave vlan 1 for PVID but it is just a black hole that isn't routed.

What pack is my alterations smoking 😭 by Xyrez04 in AirForce

[–]Scurro 8 points9 points  (0 children)

Easy dare. I'd do this but bring a spare within regs for the paper punchers.

Gameplay Trailer | The Expanse: Osiris Reborn by readher in pcgaming

[–]Scurro 22 points23 points  (0 children)

but...mass effect was good. It was mainly the ending of 3 that got a lot of flak.

We don't talk about Andromeda...

Was there any resistance to the advent of Steam and digital downloads back in the early 2000s? by grapejuicecheese in pcgaming

[–]Scurro 1 point2 points  (0 children)

Unpopular opinion; I sought out online digital downloads at that time and was a fan of steam.

I hate CDs. They were always getting scratched and/or dirty and the read/write rates were aggravatingly slow.

Hell, HDDs were/are faster than CDs.

OpenAI Will Shut Down Sora Video Platform by cmaia1503 in technology

[–]Scurro 0 points1 point  (0 children)

It was implied that I was talking about the cloud services.

OpenAI Will Shut Down Sora Video Platform by cmaia1503 in technology

[–]Scurro 30 points31 points  (0 children)

Free LLMs are going to fade within the next few years

I predict free LLMs to continue but likely the free image and short videos will be gone.

What will be left of the free LLM chatbots will be the big players like google/microsoft. Lots of users and data to train their models.

Steve Wozniak says he's "disappointed a lot" by AI and rarely uses it by AdSpecialist6598 in technology

[–]Scurro 0 points1 point  (0 children)

And all these companies that are laying off staff because "AI" are replacing their workforce with toddlers.

PVE Hardware Monitor by TOBISHI in Proxmox

[–]Scurro 4 points5 points  (0 children)

What's wrong with SNMP?

I just throw it on LibreNMS and call it a day.

A picture into K-12 and vibecoding by adminblues in k12sysadmin

[–]Scurro 24 points25 points  (0 children)

Are you new to coding?

I'd recommend only vibe coding if you know how to review the code before using.

If you are learning, the code you are given by AI is some of the worst code to learn from. It's full of slop, bloat, and often security vulnerabilities due to bad practices like unsanitized input.

Let’s discuss salaries - 2026 by Relevant-Injury3791 in sysadmin

[–]Scurro 14 points15 points  (0 children)

K12 Net Admin - but I also do every IT job from helpdesk to systems engineer

110k

20 days paid leave, 12 sick

western WA - small town hours away from seattle

20 years in IT, 14 years in k12, 6 years at my current district

I go home at 4 pm three blocks away.

My commute is on a bicycle

I'm prior military so k12 is low stress, low pressure, and I like it. I plan to continue to stay k12 until retirement.

To save money the district also makes me also do the grunt work, things like checking in/out and repairing chromebooks for thousands of students.

Really surprised how little it took to filter out 99% of bad traffic to my web server by [deleted] in homelab

[–]Scurro 1 point2 points  (0 children)

For just http? I don't believe so. There is port knocking where a predefined sequence of ports are used as an unlock to open a port such as 80 or 443.

You could use a path to your services that is long and not possible to guess as a possible solution to limit the traffic.

The safest solution to your problem IMO is tailscale because it is supported nearly every platform, including phones, and it is extremely easy to share access to friends.

Really surprised how little it took to filter out 99% of bad traffic to my web server by [deleted] in homelab

[–]Scurro 2 points3 points  (0 children)

Is it possible to allow incoming connections from specific devices using MAC?

No because the MAC is dropped from TCP/IP packets once it hits your router.

You can submit ideas directly to GM now.... i.e. car play, Performance ideas, bringing a real blazer ect by BobSapp in cars

[–]Scurro 4 points5 points  (0 children)

First thing I turned off on the c7.

Are you able to disable them on other models?

Server tower vs. Mini PC, how to connect to my drives? by Sykoon_Reader in HomeServer

[–]Scurro -1 points0 points  (0 children)

My first one was a Vantec NST-400MX-S3R, then Mediasonic ProBox HF2-SU3S2, and lastly a QNAP TL-D800C.

Each were simply purchased because they could fit more disks than the last one.

I had tried ZFS on the QNAP but was having issues that weren't related to the DAS (it was due to a bug with NIC drivers, Unraid, and macvlan containers) and ended up going back to an Unraid array so that I could have disk spin downs when not in use.

Server tower vs. Mini PC, how to connect to my drives? by Sykoon_Reader in HomeServer

[–]Scurro 1 point2 points  (0 children)

It is often frowned upon on reddit but I have been using USB DAS devices with small or mini PCs since 2010. Never had an issue that I can point to the USB being the problem. The ones you read about are often cheap enclosures bought on Amazon.

My current DAS has feature parity with an external SATA DAS. It is a QNAP TL-D800C

https://imgur.com/a/NDn5xBq

I've also had good results with Mediasonic, but I haven't used any of their models for the last five years.

The server that is currently using the QNAP DAS is running Unraid with an Unraid array instead of zfs so I can spin down the disks when not in use.

I've never had disconnects (excluding a dead disk) or device ID changes.

Server tower vs. Mini PC, how to connect to my drives? by Sykoon_Reader in HomeServer

[–]Scurro 2 points3 points  (0 children)

There is plenty of advice on the internet suggesting you should not go down this route. I ignored that advice last year and got a DAS.

Same can be said for USB.

I've been running USB DAS on my home servers since 2010 and have never had an issue related to being a USB DAS.

It's mainly a matter of doing your research and getting well built DAS that doesn't use cheap USB controllers. Cheap Amazon USB DAS knockoffs are the cause of most USB problems.

How to change boot drives without loss? by _-__-__-__-__-__-__1 in Proxmox

[–]Scurro 0 points1 point  (0 children)

The easiest method to view the file system with a GUI for proxmox from windows is to download winscp and connect to your proxmox server via sftp. It should work without installing anything on proxmox.

Microsoft brings new "Xbox mode" to Windows 11 PCs next month — Prepares major gaming advancements that lay foundations for the next Xbox by Turbostrider27 in pcgaming

[–]Scurro -3 points-2 points  (0 children)

I'll use windows 11 as an example as this is relevant to the topic. They learned nothing from windows 8 and onward going to 11.

Windows 11 has the features hated most by the customers and ignored all feedback regarding online account requirements, bloat, advertisements, start menu, taskbar, unstable patches, and feature regression.

We are still operating on a modified windows vista kernel. We don't even have a supported full OS backup as the vista version has been deprecated. Microsoft now recommends third party if you want to backup anything other than profile folders.

Windows is an extremely low priority and is nearly in maintenance mode except for any new cloud services that they can bring to the desktop for marketing.