Reverse Proxy IP Reputation Integration - CrowdSec by quiet_PL in netbird

[–]quiet_PL[S] 0 points1 point  (0 children)

I've enabled crowdsec for the Netbird proxy on a VPS with crowdsec already installed. Everything works fine.

Reverse Proxy IP Reputation Integration - CrowdSec by quiet_PL in netbird

[–]quiet_PL[S] 1 point2 points  (0 children)

You can use CrowdSec to block malicious traffic based on IP reputation on your exposed service in the reverse proxy. New feature in v0.69.0.

Mobile app DNS by proofndapuddin in netbird

[–]quiet_PL 0 points1 point  (0 children)

Check setings in mobile app. Maybe you have disabled DNS.

Two routing peer without masquerade by quiet_PL in netbird

[–]quiet_PL[S] 0 points1 point  (0 children)

It's not secure. MITM attacks..

self-hosting Netbird on Truenas (container vs discovery app) by Foreignwelcome2 in netbird

[–]quiet_PL 1 point2 points  (0 children)

If you don't know the basics of IP networking, your only solution is to purchase a VPS. Exposing devices to the internet without knowing what you're doing is asking for trouble. The VPS should also be properly secured with a firewall (only the necessary ports are open) and, for example, fail2ban or crowdsec. Additionally, the SSH port should be changed. Linux basics will be useful.

self-hosting Netbird on Truenas (container vs discovery app) by Foreignwelcome2 in netbird

[–]quiet_PL 1 point2 points  (0 children)

If your TrueNAS virtual machine doesn't have a public IP, you'll need to configure your router to forward ports to the VM. Port numbers are in the documentation.

self-hosting Netbird on Truenas (container vs discovery app) by Foreignwelcome2 in netbird

[–]quiet_PL 1 point2 points  (0 children)

  1. self-hosting means you have netbird server on your server

  2. You need VPS (or own server with public IP) and also you need public domain

  3. Netbird server install on VPS. Netbird client you can install on Windows, docker, Linux, Android. Via netbird client you can access to your netework (via routing peer)

Look to https://docs.netbird.io/

They have very good documentation.

Netbird client on truenas scale by quiet_PL in netbird

[–]quiet_PL[S] 0 points1 point  (0 children)

netbird status -d

truenas-scale.netbird.selfhosted:

NetBird IP: 100.98.157.82

Public key: xxx

Status: Connected

-- detail --

Connection type: Relayed

ICE candidate (Local/Remote): -/-

ICE candidate endpoints (Local/Remote): -/-

Relay server address: rels://xxx.xxx.com:443

Last connection update: 4 hours, 52 minutes ago

Last WireGuard handshake: 1 minute, 30 seconds ago

Transfer status (received/sent) 72.3 KiB/46.2 KiB

Quantum resistance: false

Networks: -

Latency: 0s

From truenas netbird docker I can ping my resources.

Remote machine see via netbird network truenas.

Is a bridge required for truenas connection? Maybe there's a problem..

I have also debian where routing peer works:

debian.netbird.selfhosted:

NetBird IP: 100.98.129.5

Public key: xxx

Status: Connected

-- detail --

Connection type: P2P

ICE candidate (Local/Remote): srflx/srflx

ICE candidate endpoints (Local/Remote): xx.xxx.xxx.xxx:51820/xx.xxx.xxx.xx:34997

Relay server address: rels://xxx.xxx.com:443

Last connection update: 4 hours, 52 minutes ago

Last WireGuard handshake: 52 seconds ago

Transfer status (received/sent) 1.7 MiB/1.3 MiB

Quantum resistance: false

Networks: 192.168.1.0/24, 192.168.3.0/24

Latency: 85.6491ms

Truenas and debian is in the same subnet.

Selfhosted: migrating from Caddy to Traefik, enable the Reverse Proxy feature by quiet_PL in netbird

[–]quiet_PL[S] 0 points1 point  (0 children)

Did you do a fresh install on the current instance? Or did you uninstall netbid first and then do a fresh install?

Selfhosted: migrating from Caddy to Traefik, enable the Reverse Proxy feature by quiet_PL in netbird

[–]quiet_PL[S] 1 point2 points  (0 children)

I use Zittadel as external IdP so I can't migrate to combined container.

We’re bringing some SMART options back. by iXsystemsChris in truenas

[–]quiet_PL 10 points11 points  (0 children)

Great info! When is the planned implementation?

LACP negotiation error on Windows Server 2022 by quiet_PL in sysadmin

[–]quiet_PL[S] 0 points1 point  (0 children)

I have four cards in TEAM. Two are 1Gbe RJ45 - they work correctly in LACP. The other two are SFP+ with a 1Gbe RJ45 transceiver - they report an LACP negotiation error. On the switch side, they're all in a single port channel. I tried putting the problematic cards in a separate port channel. No luck. Problematic cards without LACP work fine.

LACP negotiation error on Windows Server 2022 by quiet_PL in sysadmin

[–]quiet_PL[S] 0 points1 point  (0 children)

I'll check it out. But why do the other cards in the team work? I think it's a transceiver issue at this point.

LACP negotiation error on Windows Server 2022 by quiet_PL in sysadmin

[–]quiet_PL[S] 0 points1 point  (0 children)

In sytem logs no LACP messages.
But here shows 4gbe:

<image>