home.social

#vlans — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #vlans, aggregated by home.social.

  1. Isolate tenants with Private VLANs on Cisco IOS/NX-OS. This config creates a PVLAN domain (primary VLAN 200, isolated VLANs 201/202), using promiscuous uplink and isolated/community host ports to restrict inter-tenant traffic. #vlans #snippet #private-vlan #tenant-isolation #ValtersIT

    valtersit.com/vault/vlan-acces

  2. 🚧 Ah, FreeBSD 15's new "bridging" act—brought to you by the same innovators who think deprecating features without a plan is a cool party trick. 🎩 VLAN support? Check. Confusing sysctls? Check. Of course, they graciously leave future headaches to sort out the whole router-on-a-stick mess. 🎉✨
    blog.feld.me/posts/2026/02/usi #FreeBSD15 #Bridging #VLANs #Sysctls #Innovation #Networking #HackerNews #ngated

  3. 🚧 Ah, FreeBSD 15's new "bridging" act—brought to you by the same innovators who think deprecating features without a plan is a cool party trick. 🎩 VLAN support? Check. Confusing sysctls? Check. Of course, they graciously leave future headaches to sort out the whole router-on-a-stick mess. 🎉✨
    blog.feld.me/posts/2026/02/usi #FreeBSD15 #Bridging #VLANs #Sysctls #Innovation #Networking #HackerNews #ngated

  4. Managing #OpenWRT via #Ansible is a breeze. I just love the fact that all the settings, all the #firewall rules, all the good stuff is configured with config files.

    I've created 6 #VLANs, all of them completely #isolated, with a few allowed traffic rules. I've even isolated the #Windows #PC of my roommate inside of the #trusted #network.

    Now his #XiaomiTVBox can't scan the network anymore (yes it actually does that. I've noticed it while working on my packet monitoring project).

    #networking #subnetting #subnet #homelab #selfhosting #openwrt #privacy #security #vlan #isolation #dmz

  5. Managing #OpenWRT via #Ansible is a breeze. I just love the fact that all the settings, all the #firewall rules, all the good stuff is configured with config files.

    I've created 6 #VLANs, all of them completely #isolated, with a few allowed traffic rules. I've even isolated the #Windows #PC of my roommate inside of the #trusted #network.

    Now his #XiaomiTVBox can't scan the network anymore (yes it actually does that. I've noticed it while working on my packet monitoring project).

    #networking #subnetting #subnet #homelab #selfhosting #openwrt #privacy #security #vlan #isolation #dmz

  6. #OPNsense users, it is time to migrate your legacy #IPSEC VPN tunnels to the new connection setup. The Legacy IPSEC feature will be deprecated in 26.1.

    I have updated my IPSEC post [1] with the new connection settings. The migration was not straightforward and required some changes, but it is not complicated either.

    A little gem here is the #CIDR subnet mask notation used for Policy Based Routing, which allows multiple subnets (#VLANs) on both sides to be automatically routed, without the need for ongoing changes to tunnel settings.

    [1]: du.nkel.dev/blog/2021-11-19_pf

  7. My IT career was in desktop hardware and operating systems, so setting up my 2 Omada WAPs and networks has been a hair-pulling affair.

    Can someone point me to a SIMPLE guide to setting up a home network, a local-only IoT network, and a guest network across two WAPs with an Omada gateway? I think I’m getting screwed up with VLANs and PVIDs and ports (Oh, my!), but every guide I’ve seen is over the top with info.

    EDIT: I FIGURED IT OUT! 😎

  8. My IT career was in desktop hardware and operating systems, so setting up my 2 Omada WAPs and networks has been a hair-pulling affair.

    Can someone point me to a SIMPLE guide to setting up a home network, a local-only IoT network, and a guest network across two WAPs with an Omada gateway? I think I’m getting screwed up with VLANs and PVIDs and ports (Oh, my!), but every guide I’ve seen is over the top with info.

    EDIT: I FIGURED IT OUT! 😎

    #LAN #Omada #Networking #VLANs #WiFi

  9. new bike is bridge too fr and a luxury - am going to finish out the local lan boxes, get a vps and a couple monster drives, will try to get ids/ips and vital 24/7 pkt cap going plus maybe a ssl/tls proxy - combined with fog server and viln clients could make a fun exploit testing setup but moreover i just want the pkt cap most of all for audit trail and visibility #elk stack #malcolm #selks10 #sec onion #polar proxy #sslstrip #promisc #noarp #arkime
    #sftp server #accounts #dmz #segmented lans #vlans #spanning port #openwrt #port mirror #fog server #suricata #snort

  10. new bike is bridge too fr and a luxury - am going to finish out the local lan boxes, get a vps and a couple monster drives, will try to get ids/ips and vital 24/7 pkt cap going plus maybe a ssl/tls proxy - combined with fog server and viln clients could make a fun exploit testing setup but moreover i just want the pkt cap most of all for audit trail and visibility #elk stack #malcolm #selks10 #sec onion #polar proxy #sslstrip #promisc #noarp #arkime
    #sftp server #accounts #dmz #segmented lans #vlans #spanning port #openwrt #port mirror

  11. new bike is bridge too fr and a luxury - am going to finish out the local lan boxes, get a vps and a couple monster drives, will try to get ids/ips and vital 24/7 pkt cap going plus maybe a ssl/tls proxy - combined with fog server and viln clients could make a fun exploit testing setup but moreover i just want the pkt cap most of all for audit trail and visibility #elk stack #malcolm #selks10 #sec onion #polar proxy #sslstrip #promisc #noarp #arkime
    #sftp server #accounts #dmz #segmented lans #vlans #spanning port #openwrt #port mirror #fog server #suricata #snort

  12. Uff, ganz schöne Umstellung das #Mikrotik Zeug. Was bin ich froh, das die #Telekom so lahm ist, mirs Glasfaser zu legen, da hab ich wenigstens Zeit, das richtig zu basteln, was ich so plane.

    Task heute war #vlans hinkriegen.
    Nunja, zumindest hab ich wohl vlan-mgmt jetzt soweit, das ichs tagged auf allen Mikrotiks habe, und auf dem Port von meinem Laptop ebenfalls Tagged dazu, zu dem normalen Kram das da läuft.
    Morgen dann die anderen VLANs einbasteln.

    Der "Safe Mode" in der #winbox der Mikrotik ist echt hilfreich. Falsche Config und ausgesperrt? Kurz warten, und Configreset erfolgt.

  13. Uff, ganz schöne Umstellung das #Mikrotik Zeug. Was bin ich froh, das die #Telekom so lahm ist, mirs Glasfaser zu legen, da hab ich wenigstens Zeit, das richtig zu basteln, was ich so plane.

    Task heute war #vlans hinkriegen.
    Nunja, zumindest hab ich wohl vlan-mgmt jetzt soweit, das ichs tagged auf allen Mikrotiks habe, und auf dem Port von meinem Laptop ebenfalls Tagged dazu, zu dem normalen Kram das da läuft.
    Morgen dann die anderen VLANs einbasteln.

    Der "Safe Mode" in der #winbox der Mikrotik ist echt hilfreich. Falsche Config und ausgesperrt? Kurz warten, und Configreset erfolgt.

  14. I am going to take notes as I do it so that I can write up a little how to later. I'm not just doing a basic input output router. We're doing #Wireguard, #VLANs, #iPerf, #PiHole, #NFS, and #Awall (Alpine Firewall)

  15. Going to start using #VLANs (Ethernet tagging) very soon on my #Mikrotik #RouterBOARD along with my #SwitchOS ethernet switch (managed) that I have. Will make for a nice clean setup regarding some aspects of my network I would like to manage as such.

    I would like to physically seperate the home LAN traffic and the #CRXN. In my current setup it won't do that, however, I do know a future setup where it would make a lot of sense, it would be the case where the other switch on the other end of the trunk directly connects to the #CRXN network but then ALSO must provide IPv6 clearnet connectivity.