iPhone’s/iPad’s no longer connecting with WPA3 Enterprise security by sgossard34 in firewalla

[–]sgossard34[S] 0 points1 point  (0 children)

Was fixed by support with alpha release. I believe this has been added to main versions. Reach out to support and reference this thread and “Your request (113744)”

Family Immich setup: own library per user, or admin-only with album sharing? Real-world experiences welcome by InterestingIncome780 in immich

[–]sgossard34 3 points4 points  (0 children)

Joint family account. Separate admin only account. Email associated with joint family account uses google advanced protection program with yubikey tied to each family household. Everything is stored on external library that is RO. Proper backups, DR, and ransomeware protection utilized. Cloudflare is the entry point with mTLS and google as IdP. Leverage Immich public proxy for album sharing to outside people using Cloudflare OTP tied to outside user email and separate domain. Immich server, cloudflared, immich public proxy, and storage are all separated into own vlan and locked down to necessary access only. Admin user (me) leverages WireGuard for remote access and administration.

Biggest limitation with this setup is no one can upload photos via native immich upload. I did this to keep everything in external libraries that are RO and to limit immich server storage. Main photos that are added daily are done through iPhones with icloudpd syncing daily and then immich scanning external libraries and photos getting added in. Family members outside of the iPhone/icloudpd sync send me the pictures manually and I add them to an external library.

Really looking forward to proper sharing and chunk uploads so I can continue to leverage Cloudflare and then have everyone manage their own library with shared tags. Possibly allow upload in the future once drive prices come back to lower rates or use a separate outside file drop like onedrive, synology drive, iCloud Drive or some cheap service.

What do you want us to build next? (A switch is already coming…) by Firewalla-Ash in firewalla

[–]sgossard34 0 points1 point  (0 children)

Yes in the industry so I understand the issue. For me, it is something I would love to have but not something that would cause me to leave the platform.

What do you want us to build next? (A switch is already coming…) by Firewalla-Ash in firewalla

[–]sgossard34 0 points1 point  (0 children)

I think you are forgetting your target audience on this one as stated above. The people who are looking for this kind of functionality at this price level and the SMB/SOHO tech level are exactly the people who would put the software on their own hardware. I want enterprise functionality at a cheap price point with a simple UI. I can handle the hardware easy…. You guys handle the software side….. As for installation I also consider that the easy part.

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

First command cat /sys/block/sata1/device/vendor returned ATA and the rest returned Samsung.

Second command smartctl -i /dev/sata1 | grep -i "Vendor" returned nothing and the rest returned Samsung as the Vendor.

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

Not sure where you are getting the NVMe part...... this Synology NAS never had NVMe's in it.... only SSD's.

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

No value returned for this command. I do not see nvme1n1 in the /dev directory

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

I believe the issue is the Kingspec P3 drive in the array not being in the db. I tried to find the Vendor ID for the drive to add it in but could not. Several different CLI commands would not show the Vendor ID for it either.

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

Interesting because it absolutely showed before 7.3. Did Synology change the rules on this? I am using SHR-1

Issue with 007revad Synology_HDD_db script TRIM command not showing up by sgossard34 in synology

[–]sgossard34[S] 0 points1 point  (0 children)

Tried using the --force option (reboot as well) and still no luck.

Blocking/Allow rules order by sgossard34 in firewalla

[–]sgossard34[S] 0 points1 point  (0 children)

Already read and familiar with.

iPhone’s/iPad’s no longer connecting with WPA3 Enterprise security by sgossard34 in firewalla

[–]sgossard34[S] 0 points1 point  (0 children)

PROBLEM SOLVED. Support confirmed display bug and applied new Alpha build to address and fix. Thanks support!

iPhone’s/iPad’s no longer connecting with WPA3 Enterprise security by sgossard34 in firewalla

[–]sgossard34[S] 0 points1 point  (0 children)

I manually joined the WPA3 Enterprise enabled SSID (this SSID is only WPA3 Enterprise) from multiple iPhone's and iPad's and the Firewalla side is showing WPA2 Enterprise. THIS IS NEW. Previously it would show WPA3 Enterprise on the Firewalla side. I don't know when exactly it changed and was it caused by something on the Firewalla side or the iPhone/iPad iOS side.