I’m not sure anyone shares the same glee I feel when I view all the blocked IPs scrolling by in my pFsense firewall. Suricata does a lot of heavy lifting for sure.

What’s your selfhosting guilty pleasure or pleasures?

  • TCB13@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    1
    ·
    24 hours ago

    Sure, but why? If you’ve a simple router running OpenWrt or something with all WAN ports closed you basically have the same thing.

    • yaroto98@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      24 hours ago

      Maybe it’s a pretty graph/reports thing? I enjoy looking at the pihole dashboard and reviewing top blocked domains. I even look at the top allowed domains and add some to the blacklist.

      • nymnympseudonym@piefed.social
        link
        fedilink
        English
        arrow-up
        7
        arrow-down
        1
        ·
        24 hours ago

        I too use my PiHole for this pleasurable activity

        Look at all the bots and trolls that slammed against my Skynet OpenWRT module… and died.

    • irmadlad@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      23 hours ago

      Why do I like to watch them? Can’t explain that fully, but I also find watching the flows in ntopng to be fascinating. Maybe I’m just easily entertained. As far as why I would run pfsense over OpenWrt or similar, it’s mainly what I know and I can drive the pfsense bus well enough. Back in the day I experimented around with OpenWrt, and it may have improved over the years, but I found it kludgy.

      ETA: Also to do IDS/IPS you’ll have to install Suricata, Snort or SoftEther anyways so…

      • nymnympseudonym@piefed.social
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        21 hours ago

        Do check OpenWRT again. These days even a network-ignorant person like myself can point and click to set up guest networks, configure individual devices’ access, adblock, crazy good firewalls, …

        Very slick & professional