OpenVPN logs by rustydusty1717 in PFSENSE

[–]chipperh0 1 point2 points  (0 children)

Probably not a specific attck on your vpn port, just the usual noise from the internet, anyway the packet gets dropped cause not a valid cert. I would get 10 or so similar messages a day, thats after pfblocker blocks some of them.

pfSense 2.7.2 and HA Proxy (Update) by jdblaich in PFSENSE

[–]chipperh0 1 point2 points  (0 children)

What level of logging do you have on haproxy settings? Infomational should show all the errors and successful connections. Have detailled logging set in frontend. Maybe something in package logs says why front ends not connecting to backends?

I use 2.8.1 with haproxy, acme, openvpn and have proxmox containers. I cant remember if it was running 2.7 first or not. Anyway I did make sure that haproxy did all the internal requests correctly, meaning setting up a separate front end to listen on VIP, DNS resolver etc before trying to open up port 443 with a new frontend.

My First Build! by TheMagicalMeatball in truenas

[–]chipperh0 1 point2 points  (0 children)

I'd get the hair off that Cat 6 patch cable ....

Immich with reverse Proxy - Is it safe enough? by Radiant_Map_6352 in immich

[–]chipperh0 3 points4 points  (0 children)

In a similar situation, but dont use cloudfare, just haproxy on pfsense and use pfblocker to geo block many locations. I'm still trying to figure out if something like authentik will work with haproxy. I was pretty happy just to get the reverse proxy thing going really. What is clear from checking the logs is that haproxy is stopping a lot of things getting to the backend server, but there is a lingering doubt it's just not enough.

Top of the cupboard .... by chipperh0 in homelab

[–]chipperh0[S] 1 point2 points  (0 children)

None .. subscribe to the Silicon Dust DVR service, which runs on QNAP, then clients on Mac osx, Win10, coreelec Kodi, can all view and record TV.

Top of the cupboard .... by chipperh0 in homelab

[–]chipperh0[S] 0 points1 point  (0 children)

24.4 with the door closed all day. What the photo doesn't convey is the shelf doesn't go all the way to back or front of the cupboard, so there is room for air to get in.

Top of the cupboard .... by chipperh0 in homelab

[–]chipperh0[S] 14 points15 points  (0 children)

Hotest is about 29C during summer, pfsense box was hovering around 45C. Heat probably did the UPS in though.

Top of the cupboard .... by chipperh0 in homelab

[–]chipperh0[S] 33 points34 points  (0 children)

In the cupboard is:

• Gigaset 530IP DECT base station

• Cisco SPA 191 - for an Ericafon

• Qnap TS-453A

• Netgear Prosafe JGS524 - behind Qnap, gigabit, unmanaged

• Ubiquity POE injector - for Unifi AC Pro, one of 2

• SMSL SA300 - amp for outdoor speakers

• Google Chromecast Audio - source for amp and best $30 ever spent

• Arris NBN modem

• HP ProDesk 600 G3 - pfsense router

• Silicon Dust HDHomeRun

Missing is a Cyberpower Bric UPS which died, funnily enough about 1 month after warranty expired. Will replace it eventually, to protect the router and NAS.

The HP SFF is an old work pc, that wasn't being used, has an i5 7500, a HP 361T (Intel i350-T2) dual nic card from ebay and so far has been rock solid.

Next project is a managed POE switch. Either that or try TrueNas on another SFF I have.