home.social

#firewall — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #firewall, aggregated by home.social.

  1. Por si alguien se ha instalado @forgejo y utiliza #Pangolin para acceder al servicio, si además quieres hacer un “git push” por #SSH en vez de #HTTPS, aquí hay un artículo que explica muy bien cómo crear un recurso #TCP: digitalquint.click/posts/acces. Pero es importante, que si en vuestro #Hosting tenéis un #Firewall (cortafuegos), abráis el puerto asignado al acceso SSH. (1/2)

  2. Por si alguien se ha instalado @forgejo y utiliza #Pangolin para acceder al servicio, si además quieres hacer un “git push” por #SSH en vez de #HTTPS, aquí hay un artículo que explica muy bien cómo crear un recurso #TCP: digitalquint.click/posts/acces. Pero es importante, que si en vuestro #Hosting tenéis un #Firewall (cortafuegos), abráis el puerto asignado al acceso SSH. (1/2)

  3. Por si alguien se ha instalado @forgejo y utiliza #Pangolin para acceder al servicio, si además quieres hacer un “git push” por #SSH en vez de #HTTPS, aquí hay un artículo que explica muy bien cómo crear un recurso #TCP: digitalquint.click/posts/acces. Pero es importante, que si en vuestro #Hosting tenéis un #Firewall (cortafuegos), abráis el puerto asignado al acceso SSH. (1/2)

  4. Por si alguien se ha instalado @forgejo y utiliza #Pangolin para acceder al servicio, si además quieres hacer un “git push” por #SSH en vez de #HTTPS, aquí hay un artículo que explica muy bien cómo crear un recurso #TCP: digitalquint.click/posts/acces. Pero es importante, que si en vuestro #Hosting tenéis un #Firewall (cortafuegos), abráis el puerto asignado al acceso SSH. (1/2)

  5. Por si alguien se ha instalado @forgejo y utiliza #Pangolin para acceder al servicio, si además quieres hacer un “git push” por #SSH en vez de #HTTPS, aquí hay un artículo que explica muy bien cómo crear un recurso #TCP: digitalquint.click/posts/acces. Pero es importante, que si en vuestro #Hosting tenéis un #Firewall (cortafuegos), abráis el puerto asignado al acceso SSH. (1/2)

  6. Cloud and on-prem don’t need separate solutions.
    IPFire runs in both, making hybrid deployments easier to manage. Available now on AWS: ipfire.org/downloads/cloud
    #HybridCloud #Firewall #AWS #OpenSource

  7. Wieder Zero-Day Angriffe gegen Palo Alto Firewall

    Und täglich grüßt das Murmeltier. Wieder ein amerikanischer Hersteller von proprietärer Netzwerktechnik, dessen Zero-Day "Sicherheitslücke" (Hintertür) von wahrscheinlich staatlich unterstützten Hackern angegriffen wird. Der Netzwerk-Ausrüster Palo Alto ist und ja schon öfter begegnet. Die CISA hat die Lücke CVE-2026-0300 bereits in den KEV Katalog aufgenommen. Normalerweise bedeutet das eine Anweisung an die Behörden, Updates gegen die betreffende Lücke innerhalb kürzester Frist einzuspielen. Nur dass im vorliegenden

    pc-fluesterer.info/wordpress/2

    #Allgemein #Empfehlung #Hintergrund #Warnung #0day #closedsource #cybercrime #exploits #firewall #foss #hersteller #hintertr #opensource #router #sicherheit #spionage #UnplugTrump #usa #vorbeugen

  8. Wieder Zero-Day Angriffe gegen Palo Alto Firewall

    Und täglich grüßt das Murmeltier. Wieder ein amerikanischer Hersteller von proprietärer Netzwerktechnik, dessen Zero-Day "Sicherheitslücke" (Hintertür) von wahrscheinlich staatlich unterstützten Hackern angegriffen wird. Der Netzwerk-Ausrüster Palo Alto ist und ja schon öfter begegnet. Die CISA hat die Lücke CVE-2026-0300 bereits in den KEV Katalog aufgenommen. Normalerweise bedeutet das eine Anweisung an die Behörden, Updates gegen die betreffende Lücke innerhalb kürzester Frist einzuspielen. Nur dass im vorliegenden

    pc-fluesterer.info/wordpress/2

    #Allgemein #Empfehlung #Hintergrund #Warnung #0day #closedsource #cybercrime #exploits #firewall #foss #hersteller #hintertr #opensource #router #sicherheit #spionage #UnplugTrump #usa #vorbeugen

  9. Wieder Zero-Day Angriffe gegen Palo Alto Firewall

    Und täglich grüßt das Murmeltier. Wieder ein amerikanischer Hersteller von proprietärer Netzwerktechnik, dessen Zero-Day "Sicherheitslücke" (Hintertür) von wahrscheinlich staatlich unterstützten Hackern angegriffen wird. Der Netzwerk-Ausrüster Palo Alto ist und ja schon öfter begegnet. Die CISA hat die Lücke CVE-2026-0300 bereits in den KEV Katalog aufgenommen. Normalerweise bedeutet das eine Anweisung an die Behörden, Updates gegen die betreffende Lücke innerhalb kürzester Frist einzuspielen. Nur dass im vorliegenden

    pc-fluesterer.info/wordpress/2

    #Allgemein #Empfehlung #Hintergrund #Warnung #0day #closedsource #cybercrime #exploits #firewall #foss #hersteller #hintertr #opensource #router #sicherheit #spionage #UnplugTrump #usa #vorbeugen

  10. Wieder Zero-Day Angriffe gegen Palo Alto Firewall

    Und täglich grüßt das Murmeltier. Wieder ein amerikanischer Hersteller von proprietärer Netzwerktechnik, dessen Zero-Day "Sicherheitslücke" (Hintertür) von wahrscheinlich staatlich unterstützten Hackern angegriffen wird. Der Netzwerk-Ausrüster Palo Alto ist und ja schon öfter begegnet. Die CISA hat die Lücke CVE-2026-0300 bereits in den KEV Katalog aufgenommen. Normalerweise bedeutet das eine Anweisung an die Behörden, Updates gegen die betreffende Lücke innerhalb kürzester Frist einzuspielen. Nur dass im vorliegenden

    pc-fluesterer.info/wordpress/2

    #Allgemein #Empfehlung #Hintergrund #Warnung #0day #closedsource #cybercrime #exploits #firewall #foss #hersteller #hintertr #opensource #router #sicherheit #spionage #UnplugTrump #usa #vorbeugen

  11. Wieder Zero-Day Angriffe gegen Palo Alto Firewall

    Und täglich grüßt das Murmeltier. Wieder ein amerikanischer Hersteller von proprietärer Netzwerktechnik, dessen Zero-Day "Sicherheitslücke" (Hintertür) von wahrscheinlich staatlich unterstützten Hackern angegriffen wird. Der Netzwerk-Ausrüster Palo Alto ist und ja schon öfter begegnet. Die CISA hat die Lücke CVE-2026-0300 bereits in den KEV Katalog aufgenommen. Normalerweise bedeutet das eine Anweisung an die Behörden, Updates gegen die betreffende Lücke innerhalb kürzester Frist einzuspielen. Nur dass im vorliegenden

    pc-fluesterer.info/wordpress/2

    #Allgemein #Empfehlung #Hintergrund #Warnung #0day #closedsource #cybercrime #exploits #firewall #foss #hersteller #hintertr #opensource #router #sicherheit #spionage #UnplugTrump #usa #vorbeugen

  12. If you're building a hybrid network, why learn two systems?
    With IPFire available as an AMI on AWS, your cloud firewall can be as familiar as your on-prem one.
    #HybridCloud #Firewall #AWS #OpenSource ipfire.org/downloads/cloud

  13. El test de buffer bloat da super bien, categoria A, lo que dice que la latencia no aumenta tanto bajo demanda. El pfSense rutea bien y mantiene la QoS razonablemente bien, ademas pasamos todas las listas de bloqueo a Quick Tables flotantes que con el doble de cache en el CPU se nota #undernet #pfsense #firewall #seguridad #mejoras #mantenimiento

  14. El test de buffer bloat da super bien, categoria A, lo que dice que la latencia no aumenta tanto bajo demanda. El pfSense rutea bien y mantiene la QoS razonablemente bien, ademas pasamos todas las listas de bloqueo a Quick Tables flotantes que con el doble de cache en el CPU se nota #undernet #pfsense #firewall #seguridad #mejoras #mantenimiento

  15. El test de buffer bloat da super bien, categoria A, lo que dice que la latencia no aumenta tanto bajo demanda. El pfSense rutea bien y mantiene la QoS razonablemente bien, ademas pasamos todas las listas de bloqueo a Quick Tables flotantes que con el doble de cache en el CPU se nota #undernet #pfsense #firewall #seguridad #mejoras #mantenimiento

  16. El test de buffer bloat da super bien, categoria A, lo que dice que la latencia no aumenta tanto bajo demanda. El pfSense rutea bien y mantiene la QoS razonablemente bien, ademas pasamos todas las listas de bloqueo a Quick Tables flotantes que con el doble de cache en el CPU se nota #undernet #pfsense #firewall #seguridad #mejoras #mantenimiento

  17. El test de buffer bloat da super bien, categoria A, lo que dice que la latencia no aumenta tanto bajo demanda. El pfSense rutea bien y mantiene la QoS razonablemente bien, ademas pasamos todas las listas de bloqueo a Quick Tables flotantes que con el doble de cache en el CPU se nota #undernet #pfsense #firewall #seguridad #mejoras #mantenimiento

  18. How to Configure Additional #Firewall Rules on Rocky Linux VPS (5 Minute Guide)

    This article provides a guide for how to configure additional firewall rules on Rocky Linux VPS for improved #security of your system.
    How to Configure Additional Firewall Rules on Rocky Linux VPS
    This tutorial will guide you through the process of configuring additional firewall rules on a Rocky Linux VPS using ...
    Continued 👉 blog.radwebhosting.com/how-to- #sshcommands #rockylinux #serverhardening #vpsguide

  19. How to Configure Additional #Firewall Rules on Rocky Linux VPS (5 Minute Guide)

    This article provides a guide for how to configure additional firewall rules on Rocky Linux VPS for improved #security of your system.
    How to Configure Additional Firewall Rules on Rocky Linux VPS
    This tutorial will guide you through the process of configuring additional firewall rules on a Rocky Linux VPS using ...
    Continued 👉 blog.radwebhosting.com/how-to- #sshcommands #rockylinux #serverhardening #vpsguide

  20. How to Configure Additional #Firewall Rules on Rocky Linux VPS (5 Minute Guide)

    This article provides a guide for how to configure additional firewall rules on Rocky Linux VPS for improved #security of your system.
    How to Configure Additional Firewall Rules on Rocky Linux VPS
    This tutorial will guide you through the process of configuring additional firewall rules on a Rocky Linux VPS using ...
    Continued 👉 blog.radwebhosting.com/how-to- #sshcommands #rockylinux #serverhardening #vpsguide

  21. How to Configure Additional #Firewall Rules on Rocky Linux VPS (5 Minute Guide)

    This article provides a guide for how to configure additional firewall rules on Rocky Linux VPS for improved #security of your system.
    How to Configure Additional Firewall Rules on Rocky Linux VPS
    This tutorial will guide you through the process of configuring additional firewall rules on a Rocky Linux VPS using ...
    Continued 👉 blog.radwebhosting.com/how-to- #sshcommands #rockylinux #serverhardening #vpsguide

  22. I have a firewall rule which bans IPs sending UDP packets for a standard Wireguard port (51820), this activity is deemed port scanning.

    When my server makes a DNS request from that UDP port (it just uses random port every time), upstream DNS was sending responses back to that port, triggering blocking :)

  23. cPanel Shared Hosting Server Specs This article provides an in-depth analysis of our #cPanel Shared Hosting server specs and features powering the 100%-SSD cPanel Hosting services.

    cPanel Shared Hosting Server Specs
    The following features are included with ...
    Continued 👉 blog.radwebhosting.com/cpanel- #cagefs #cloudlinux #csf #cardav #lscache #imagemagick #caldav #malwarescanner #mailman #imap #gitversioncontrol #cloudsitebuilder #imunify360 #memcached #firewall #malwareremoval #ddosprotection

  24. cPanel Shared Hosting Server Specs This article provides an in-depth analysis of our #cPanel Shared Hosting server specs and features powering the 100%-SSD cPanel Hosting services.

    cPanel Shared Hosting Server Specs
    The following features are included with ...
    Continued 👉 blog.radwebhosting.com/cpanel- #cagefs #cloudlinux #csf #cardav #lscache #imagemagick #caldav #malwarescanner #mailman #imap #gitversioncontrol #cloudsitebuilder #imunify360 #memcached #firewall #malwareremoval #ddosprotection

  25. cPanel Shared Hosting Server Specs This article provides an in-depth analysis of our #cPanel Shared Hosting server specs and features powering the 100%-SSD cPanel Hosting services.

    cPanel Shared Hosting Server Specs
    The following features are included with ...
    Continued 👉 blog.radwebhosting.com/cpanel- #cagefs #cloudlinux #csf #cardav #lscache #imagemagick #caldav #malwarescanner #mailman #imap #gitversioncontrol #cloudsitebuilder #imunify360 #memcached #firewall #malwareremoval #ddosprotection

  26. Mastodon Incident Report / Root cause analysis:

    Earlier today, users experienced timeouts with Search, Hashtags, and Autocomplete.

    Root Cause: Our setup separates the Mastodon frontend VPS (Hetzner) from backend services (for example Elasticsearch) via an OPNSense firewall. Suricata (our IPS) triggered a false-positive on internal traffic and aggressively blocked the VPS IP, severing the connection to the search database.

    Resolution: We identified the false-positive, added the frontend IP to the whitelist, and traffic immediately normalized. Everything is back to green!

    #mastodon #mastoadmin #burningboard #elasticsearch #firewall #opnsense #suricata #oopsie

  27. Mastodon Incident Report / Root cause analysis:

    Earlier today, users experienced timeouts with Search, Hashtags, and Autocomplete.

    Root Cause: Our setup separates the Mastodon frontend VPS (Hetzner) from backend services (for example Elasticsearch) via an OPNSense firewall. Suricata (our IPS) triggered a false-positive on internal traffic and aggressively blocked the VPS IP, severing the connection to the search database.

    Resolution: We identified the false-positive, added the frontend IP to the whitelist, and traffic immediately normalized. Everything is back to green!

    #mastodon #mastoadmin #burningboard #elasticsearch #firewall #opnsense #suricata #oopsie

  28. Mastodon Incident Report / Root cause analysis:

    Earlier today, users experienced timeouts with Search, Hashtags, and Autocomplete.

    Root Cause: Our setup separates the Mastodon frontend VPS (Hetzner) from backend services (for example Elasticsearch) via an OPNSense firewall. Suricata (our IPS) triggered a false-positive on internal traffic and aggressively blocked the VPS IP, severing the connection to the search database.

    Resolution: We identified the false-positive, added the frontend IP to the whitelist, and traffic immediately normalized. Everything is back to green!

    #mastodon #mastoadmin #burningboard #elasticsearch #firewall #opnsense #suricata #oopsie

  29. Mastodon Incident Report / Root cause analysis:

    Earlier today, users experienced timeouts with Search, Hashtags, and Autocomplete.

    Root Cause: Our setup separates the Mastodon frontend VPS (Hetzner) from backend services (for example Elasticsearch) via an OPNSense firewall. Suricata (our IPS) triggered a false-positive on internal traffic and aggressively blocked the VPS IP, severing the connection to the search database.

    Resolution: We identified the false-positive, added the frontend IP to the whitelist, and traffic immediately normalized. Everything is back to green!

    #mastodon #mastoadmin #burningboard #elasticsearch #firewall #opnsense #suricata #oopsie

  30. Mastodon Incident Report / Root cause analysis:

    Earlier today, users experienced timeouts with Search, Hashtags, and Autocomplete.

    Root Cause: Our setup separates the Mastodon frontend VPS (Hetzner) from backend services (for example Elasticsearch) via an OPNSense firewall. Suricata (our IPS) triggered a false-positive on internal traffic and aggressively blocked the VPS IP, severing the connection to the search database.

    Resolution: We identified the false-positive, added the frontend IP to the whitelist, and traffic immediately normalized. Everything is back to green!

    #mastodon #mastoadmin #burningboard #elasticsearch #firewall #opnsense #suricata #oopsie

  31. Can someone tell me why a simple 5 port switch is in the top 5 of devices which communicates to home called Unifi?

    Blocked it... no clue why, except for updates but not in this frequency.

    Pi-hole makes you even more concerned about privacy. It's eye-opening to see how frequently my network makes calls to servers.

    #PiHole #Blocky #unifi #firewall

  32. Can someone tell me why a simple 5 port switch is in the top 5 of devices which communicates to home called Unifi?

    Blocked it... no clue why, except for updates but not in this frequency.

    Pi-hole makes you even more concerned about privacy. It's eye-opening to see how frequently my network makes calls to servers.

    #PiHole #Blocky #unifi #firewall

  33. Can someone tell me why a simple 5 port switch is in the top 5 of devices which communicates to home called Unifi?

    Blocked it... no clue why, except for updates but not in this frequency.

    Pi-hole makes you even more concerned about privacy. It's eye-opening to see how frequently my network makes calls to servers.

    #PiHole #Blocky #unifi #firewall

  34. Can someone tell me why a simple 5 port switch is in the top 5 of devices which communicates to home called Unifi?

    Blocked it... no clue why, except for updates but not in this frequency.

    Pi-hole makes you even more concerned about privacy. It's eye-opening to see how frequently my network makes calls to servers.

    #PiHole #Blocky #unifi #firewall

  35. Can someone tell me why a simple 5 port switch is in the top 5 of devices which communicates to home called Unifi?

    Blocked it... no clue why, except for updates but not in this frequency.

    Pi-hole makes you even more concerned about privacy. It's eye-opening to see how frequently my network makes calls to servers.

    #PiHole #Blocky #unifi #firewall

  36. IPFire in the cloud? Yes.
    It’s available as an AMI on AWS, giving you full control with none of the complexity of native cloud firewalls.
    #CloudSecurity #OpenSource #AWS #Firewall ipfire.org/downloads/cloud

  37. Enterprises need flexibility, not lock-in.
    IPFire offers an open-source firewall platform that works across environments — including AWS.
    #CloudSecurity #Firewall #OpenSource #AWS ipfire.org/downloads/cloud

  38. IPFire 2.29 Core Update 201 arriva con il DNS Firewall integrato

    IPFire 2.29 Core Update 201 introduce il DNS Firewall integrato, bloccando malware e phishing a livello di risoluzione DNS senza bisogno di soluzioni esterne come Pi-hole.

    yoota.it/ipfire-2-29-core-upda

  39. IPFire 2.29 Core Update 201 arriva con il DNS Firewall integrato

    IPFire 2.29 Core Update 201 introduce il DNS Firewall integrato, bloccando malware e phishing a livello di risoluzione DNS senza bisogno di soluzioni esterne come Pi-hole.

    yoota.it/ipfire-2-29-core-upda

  40. If your AWS networking setup feels overcomplicated, IPFire might be the alternative you’re looking for.
    It's open source and familiar — available now as an AMI.
    #AWS #Firewall #ITInfrastructure #OpenSource ipfire.org/downloads/cloud