That's OK, you could always try following the guide, if you have the spare hardware around, if not, there are other options that are less likely to be prone to compromise.Huh. Way over my head on how that's all done.
I barely figured out the wifi!
That's OK, you could always try following the guide, if you have the spare hardware around, if not, there are other options that are less likely to be prone to compromise.Huh. Way over my head on how that's all done.
I barely figured out the wifi!
I have a wifi maker (rotter?) that's it I think. I forget the brand though.That's OK, you could always try following the guide, if you have the spare hardware around, if not, there are other options that are less likely to be prone to compromise.
Well, that's a good place to start. The brand and model and whether it has ever been updated.I have a wifi maker (rotter?) that's it I think. I forget the brand though
Revyee wifi 6 ax3200 (i looked up the Amazon order). Got it Aug 2022Well, that's a good place to start. The brand and model and whether it has ever been updated.
OK, so, like TP-Link, that's a Chinese brand, headquartered in China. The parent company is Ruijie, headquartered in Beijing.Revyee wifi 6 ax3200 (i looked up the Amazon order). Got it Aug 2022
Quite well, they are not resource intensive.How well do you think this would run as a virtual machine ? I've got a lot of spare horsepower on my home media/nas server. (and spare NICs)
Do dogs count?Do you have any friends?
I don’t know enough about this stuff. So is this for anyone that wants to have a firewall between their isp and their connected stuff? Would one change router settings? Turn off the built in router security stuff and rely on this device? Let both run in serial connection?For you, I'd recommend the new Unifi Cloud Gateway, if you didn't feel like giving IPFire a spin:
Compact UniFi Cloud Gateways - Ubiquiti
If you've got an existing wireless router (which most people do) you'd turn it into a glorified access point and let this device handle NAT/PAT, traffic filtering, DHCP...etc.I don’t know enough about this stuff. So is this for anyone that wants to have a firewall between their isp and their connected stuff? Would one change router settings? Turn off the built in router security stuff and rely on this device? Let both run in serial connection?
Ok sorry for being dense. Why??If you've got an existing wireless router (which most people do) you'd turn it into a glorified access point and let this device handle NAT/PAT, traffic filtering, DHCP...etc.
Yes, this exactly @JHZR2To keep it simple you dont want 2 routers in series with NAT DHCP etc.
since the unifi gear has IDS/IPS and actually gets security patches in a timely manner you want that facing the internet.
all that is left is to have a device that provides wifi signal (wireless access point) so you either buy a WAP or turn your current wifi router into a wap.. most have that mode. Since its not connected directly to the internet its security flaws are mitigated.
In terms of performance, you'd be fine. It's not a recommended configuration, though. You would effectively have a single physical machine both inside and outside the firewall at the same time.How well do you think this would run as a virtual machine ? I've got a lot of spare horsepower on my home media/nas server. (and spare NICs)
Whats to say that an ASUS router with MerlinWRT has more security flaws than the ubiquiti? Purely objective question as I don’t know.To keep it simple you dont want 2 routers in series with NAT DHCP etc.
since the unifi gear has IDS/IPS and actually gets security patches in a timely manner you want that facing the internet.
all that is left is to have a device that provides wifi signal (wireless access point) so you either buy a WAP or turn your current wifi router into a wap.. most have that mode. Since its not connected directly to the internet its security flaws are mitigated.
Note: unifi express does not have ids/ips.. but it still a better option than most.. and includes a wifi 6 wap.
Also the cloud ultra is currently OOS but available from resellers.... such as B&H with no markup (many resellers have markup)
Looks like the oldest CVE is from 2022:Whats to say that an ASUS router with MerlinWRT has more security flaws than the ubiquiti? Purely objective question as I don’t know.
Looks like the oldest CVE is from 2022:
CVE - Search Results (mitre.org)
And it's not that severe.
What firmware, and the date, are you running?
| 3004.388.6_2 |
I ordered one from B&H. Should arrive Tuesday.For you, I'd recommend the new Unifi Cloud Gateway, if you didn't feel like giving IPFire a spin:
Compact UniFi Cloud Gateways - Ubiquiti