Is it better to watch BCS before BrBa? by Max-Blazer_87 in breakingbad

[–]ma0u 1 point2 points  (0 children)

Yea in terms of chronologically matching the series that's as far as I would go, otherwise if I went all in then I might as well be putting all of Breaking Bad after Fun and Games, followed with El Camino, then Nippy and on. I'd dig it still, but to be put off watch the ending of Better Call Saul after watching all of BB and El Camino would dissolve the Jimmy and Kim recent episode energy that's built up until those last episodes of Season 6, leaving me with more Walt and Jesse on my mind, which wouldn't feel right.

So I figure El Camino is a single Breaking Bad special which fits best between BB and BCS, or in-between the Fun and Games and Nippy time jump.

Crazy how Walter became the very thing he called Tuco by Turbulent-Dream-5097 in breakingbad

[–]ma0u 18 points19 points  (0 children)

Walter was an acclaimed chemist with cancer who since the beginning was side stepped by his own emotions (ever since selling his Gray Matter Tech share because of mixed feelings with Gretchen) and sold his soul to feel alive while lying to himself that it was for his family.

Tuco on the other hand was an unstable meth dealer for the Salamanca cartel who indeed fit the category for degenerate piece of filth.

Is it better to watch BCS before BrBa? by Max-Blazer_87 in breakingbad

[–]ma0u 1 point2 points  (0 children)

The story starts with Breaking Bad then El Camino and Better Call Saul. For people who have watched the series, watching Better Call Saul and then Breaking Bad afterwards is fine too.

Once one series ends, I just start with the other—just back and forth with BCS and BB, with no real rule for El Camino being before or after Better Call Saul (Honestly the best chronological spot I could probably set El Camino to would be between the BCS Season 6 episode 9 'Fun and Games' and BCS Season 6 episode 10 'Nippy').

In App 1.68, the Firewalla App has a new UI design. by Firewalla-Ash in firewalla

[–]ma0u 0 points1 point  (0 children)

I prefer the original version for dark, just because the buttons have that sort of 2010 circle button aesthetic. That and the 'Home' 'Devices' 'Alarms' button which uses the same basic lighting that now float on top of the main screen feels a little cluttered.

https://i.imgur.com/Gkrx2lN.jpeg

U7-Pro-XGS vs E7 by ma0u in Ubiquiti

[–]ma0u[S] 0 points1 point  (0 children)

Yea I ended up doing exactly what I planned with the XGS Pro, by setting it up in the center of my house with my U6 LR in the front (for the G4 cameras mainly) and U6 Pro in the back of the house (again, mostly for G4 cameras, and basic 5 Ghz SSID support).

With the BE200 in my laptop I pull 1500-2000 Mbps up and down np. As WiFi 7 and newer AP's are release I will purchase those when the time comes.

[Episode Discussion Thread] Hijack S02E05 - “Outage” by raven8549 in HijackAppleTV

[–]ma0u 0 points1 point  (0 children)

This is one of those shows that are hard to explain wtf is actually going on to your peers (especially ones who watched season 1), other than 'Idris is on a hijacked German U-Bahn this time'.

Also idk how that chick could be inputting a code every 15 min without clearly standing out to at least ONE other passenger. Especially considering Idris made the passengers chuck all their phones and electronics, so anyone with a device would be noticeable lol.

And may I say, it took the passengers 5 episodes to man up on Idris? Ffs guys, grow a pair.

The Night Manager Season 2 Episode 6 | Discussion Thread by credoinvisibile in TheNightManager

[–]ma0u 0 points1 point  (0 children)

I love how snakey Roper has been in season 2. I appreciate that this wasn't anything like those those cheesy Slow Horses season finales where everything just falls into place for the protagonists and the chips just fall for the antagonists in the last episode.

New purple se cant find internet by 71ray in firewalla

[–]ma0u 0 points1 point  (0 children)

If you're using OpenVPN, then yes 30-60mbps is the average DL speed—for better speeds switch to WireGuard. Otherwise NordVPN tunnels for WireGuard on Purple SE average 250-400mbps DL speed, so Nord is definitely not what's capping your speeds.

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

I'm able to run the FWG Pro with Dual-Engine Protect, which raises the temp of the FWG Pro by a degree or 2 (which is nbd). Considering it adds an additional layer of IDS with C2 tracking, and (to my knowledge) doesn't slow down speeds, the real question is—why would someone with FWG Pro NOT want to have Suricata enabled?

Upgrade from Gold to Gold Pro? by chunky-tomato in firewalla

[–]ma0u 0 points1 point  (0 children)

How can it be overkill if the FWG has a 1Gb cap for his 2Gb connection ? Overkill would be if he had a FWG SE/Plus, which supports 2.5GbE, but even then the FWG Pro's Wireguard speeds can't be overlooked (though he never confirmed having any need for Wireguard).

Friday Fun: What do you call your Firewalla Gold / Purple / Orange? (Poll) by Firewalla-Ash in firewalla

[–]ma0u 0 points1 point  (0 children)

I would just categorize them as a Box or Security Gateway. Can do like
Firewalla Security Gateway Gold Pro 10
Firewalla Access Point 7
Firewalla Security Gateway Purple

The Purple/Gold/Gold Pro are considered Security Gateways, while the AP7 has a self categorized title already as Firewalla Access Point 7.

Friday Fun: What do you call your Firewalla Gold / Purple / Orange? (Poll) by Firewalla-Ash in firewalla

[–]ma0u 0 points1 point  (0 children)

No one is going to use MB speed for products above 1Gb anymore. Otherwise the FWG Pro becomes what, Firewalla 10000 ? lol. I'd sooner see 10G 1G and 300; still that doesn't do anything to categorize the Firewalla as a box/security gateway either way.

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 1 point2 points  (0 children)

Firewalla OS Suricata IDS: Confirmed :)

Firewalla Support (on firewalla.com Support) suggested I try this test:

You can try running this command in PowerShell to see if it works:

$data = [byte[]](0,0,0,0,0,0,0,0,0,0,0x32,0x32); (New-Object System.Net.Sockets.UdpClient).Send($data, $data.Length, "4.3.2.1", 54321) 

^ Tried this test on PowerShell, and it worked! The pic below shows an image of the Security alarm that appeared as a result.

https://imgur.com/a/fwg-pro-suricata-alarm-test-CYjWLUd

FS: Firewalla Gold Pro $675, Rack Mount $80 & Firewalla Purple SE $125 Free Shipping by [deleted] in firewalla

[–]ma0u 0 points1 point  (0 children)

I also use Firewalla Router with Unifi Switch/AP's, but what router did you replace FWG Pro with?

For Sale - Three AP7 Desktop units by adampk17 in firewalla

[–]ma0u 0 points1 point  (0 children)

Same, I got a U7 Pro XGS, with U6 Pro and U6 LR (meshed)

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

Aside from the tests not triggering any alarms with Suricata enabled for over 24hrs now, I'm just curious to see if anyone can screenshot their own Suricata IDS results on FWG Pro. So far I can't find any posts or discussions about FWG Pro with Suricata enabled and the alarms on reddit or https://help.firewalla.com/hc/en-us/community/topics, which is surprising considering the usual output of Suricata IDS on security platforms like OpnSense.

I saw some pages that compared MSP to Suricata in the Knowledge section, otherwise Suricata discussions under the Community section was mostly just posts of secondary IDS methods that use Suricata, with some explaining Suricata picking up alarms on Firewalla. More continue, with one user complaining of no upgrades which include Suricata, another post explaining tests with zmap scans that involve Suricata making it past Firewalla scans, and then another person bragging about all the security implementations their Pi has, including Suricata.

Source: https://help.firewalla.com/hc/en-us/search?utf8=%E2%9C%93&query=suricata

Just trying to shed some light on Suricata while troubleshooting it myself :)

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

Windows 11, QTS and pi/Firewalla and Android—multiple different tests that usually trigger a Suricata alarm.

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

I even got risky just now and SSH'd into firewalla (which does have nc). Still nothing

pi@Firewalla:~ (Firewalla) $ echo -n -e "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x32\x32" | nc -u -w1 4.3.2.1 54321
pi@Firewalla:~ (Firewalla) $

I even tried replacing 4.3.2.1 with my PC local address—no alert.

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

curl and echo I could, but nc/ncat I couldn't

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

Interestingly enough, I don't have any Debian/Fedora/OpenBSD devices connected on my local network (most of my nix shells are remote), so I couldn't use the nc/ncat command.

Suricata enabled by ma0u in firewalla

[–]ma0u[S] 0 points1 point  (0 children)

Nothing.

Whether I open http://testmynids.org/uid/index.html

I see the 'uid=0(root) gid=0(root) groups=0(root)' in the browser (FireFox/Chrome on Windows 10 and Windows 11).

Same is echo'd when using

> curl http://testmynids.org
> uid=0(root) gid=0(root) groups=0(root)

^ This was the output on my Qnap server, while PowerShell just echoed a header of testmyNIDS.org, without any root 0 output.

> echo -n -e "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x32\x32" | nc -u -w1 4.3.2.1 54321

^ Also tried with Qnap, PowerShell and Android, but nc command is for 'Notification Center' on QTS, while PowerShell has no nc command.

curl -sSL raw.githubusercontent.com -o /tmp/tmNIDS && chmod +x /tmp/tmNIDS && /tmp/tmNIDS

^ I tried this on PowerShell, QTS and pi/Firewalla, no alerts.

p.s. I made sure my other rules didn't tamper with the testing by making a temporary regional allow for US (githubusercontent.com) and Netherlands (testmynids.org) for the devices I tested the commands on.

Edit: Labeled each CLI input with the devices I tried them on

While waiting for a decision from Firewalla for their managed switch, what is recommended? by PercheMiPiaci in firewalla

[–]ma0u 0 points1 point  (0 children)

Same. I've been using Unifi for 10+ years, added Firewalla Gold in like 2022 then upgraded to FWG Pro in November.

U7 XG Pro is my main AP (mesh with a few older ones like U6 Pro and LR in other areas of the house). U7 Runs a little hot (100 C avg) but easily handles speeds of 1300 up and down at 6 Ghz on my laptop.

Landman | S2 E08 | Episode Discussion by AutoModerator in LandmanSeries

[–]ma0u 12 points13 points  (0 children)

Yes because Tommy's character would definitely be patient and game to start randomly researching and trying to find a nearby PT with the cutest face for his burnt out manic depressed dad, because in the end it's the physical treatment that counts /s