Finally ditched my ISP’s router and installed my own opnsense firewall with my own Access Point. I have crowdsec running on opnsense to block attacks + adguard to block ads and malicious domains. My network is segmented between my homelab that is exposed and my AP.

Finally feels quite safe in my network 😅

  • peskypry@lemmy.ml
    link
    fedilink
    English
    arrow-up
    12
    ·
    16 hours ago

    Good for you. I use OpenWrt on a decent router yet it’s so flexible. I can create multiple VLANs with different firewall rules, multiple APs, Ad and IP blocking etc.

    Honestly I can’t imagine going back to a shitty ISP router ever.

    • orbitz@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 hours ago

      I always get my isp outers as pass through so network is controlled by my entry. I have never bothered doing much with it but it’s nice to have the option.

      I used to use a ddwrt firmware for years but eventually my hardware could never keep up with my net speeds and manufacture firmware was faster. Trying an Omada network now seems alright but haven’t added their wifi.

    • Buffy@libretechni.ca
      link
      fedilink
      English
      arrow-up
      6
      ·
      14 hours ago

      Even the wrong non-isp routers are ridiculous compared to OpenWrt capable ones. You’re telling me I’m paying a huge premium to get a cutting edge Nighthawk, and then they shove a subscription service in my face to use any of these features? Let alone the security implications of having all your traffic routed through proprietary software. No thank you.

      • Snot Flickerman@lemmy.blahaj.zone
        link
        fedilink
        English
        arrow-up
        4
        ·
        12 hours ago

        I don’t think we are the target audience for those, though, as weird as that sounds. More likely intended to be sold to less tech savvy people who are willing to pay for the convenience of some company handling their security.