Recent content by marsboer

  1. M

    8x 1TB 840 Evo? why not.

    Isn't the 840 EVO lacking the caps to survive sudden power loss without loosing the contents of the internal cache? This is one of the most important features on enterprise drives that are mostly lacking in consumer SSD drives.
  2. M

    While doing a routing lab for CCNA...

    Proxy Arp is, as you have found out, the cause of your issues. I still can't understand why this technology even exists and even worse, is enabled. It is just a horrible crutch for bad network designs, a bit like the APIPA-protocol. The more I read about it, the more this is confirmed...
  3. M

    Hardware VPN for Home

    Just a side note on PPTP/IPSEC. If you use a IKEv2-based IPSEC-solution there is no issues having dynamic addresses and NAT in both ends. The problem is that many hardware firewalls, including enterprise ones, do not support this properly. A good implementation that I have used for many years...
  4. M

    Hardware VPN for Home

    If you can do things according to professional best practice for free and without a significantly bigger time investment or configuration overhead, I do not see your argument for "home usage" vs "enterprise requirements".
  5. M

    Hardware VPN for Home

    Layer 2 is never the way to go when using VPN, unless as a point to point between routers to be able to use interior gateway routing protocols. GRE over IPsec is a commonly used alternative for this. Bridging whole networks into the same broadcastdomain over WAN is just bad network design and...
  6. M

    Hardware VPN for Home

    I normally would not do it this way if you want to deploy this as a VPN into your network. The smoothest networking experience will come from using VPN at the actual gateway in a small home setup. Unless you do some magic on the VPN server you will get the following scenario: 1. To reach the...
  7. M

    Hardware VPN for Home

    He has a 50 mbit/s downlink. Why limit yourself to anything but the full line potential in any direction? With that said there are some new routers that can actually manage 50 mbit/s in one direction that I have seen.
  8. M

    Hardware VPN for Home

    I do not know any embedded solution that costs less than a computer that allows me to run OpenVPN at 100/100 mbit/s. OpenVPN at full throughput is very important if you not only are using it for connecting to your home, but use it as a common VPN gateway for hosts in your network for sharing a...
  9. M

    What's the cheapest switch with 4x SFP+ ?

    I seems to me like the Zyxel is not a layer 3 switch. I don't know if this is important for OP, but the layer 3 support with OSPF and VRRP makes the 500X-series a lot more flexible as it can do duties both in the access and distribution layer (on paper that is, I only have experience with the...
  10. M

    What's the cheapest switch with 4x SFP+ ?

    Cisco SG500X-24 would be my choice. But perhaps a little too expensive?
  11. M

    Best router for 2-3 person heavy internet usage with traffic shaping

    You can use almost anything that can run linux as a router (or directly on your client if it runs linux). Use tc with HTB rate limiting, fq_codel queuing for keeping fairness and low latencies. Use iptables for extremely granular categorizing of traffic. fq_codel combined with HTB rate limiting...
  12. M

    Cisco SG200-08 is dropping IP fragments

    Same issue here. I commented in the issue thread as I actually have gotten one annoying subtle network breakage bug fixed that way for SB200-08 already.
  13. M

    Best way to secure SSH for public access?

    There are absolutely no issues with enabling SSH if you: 1. Use a decent password!! 2. Disable root 3. Use non-standard port 4. Use iptables to only allow 5 connection attempts per 10 minutes or something like that Example of the last: $ipt -A WAN_FORWARD -p tcp --syn --dport 22 -m...
  14. M

    HDD (or SSD) configuration for DVD/Blu-Ray ripping/encoding rig

    6TB is nothing if you are going to rip 500 movies, many of which are blu-rays, unless you are going to strip away everything and encode the movies to crap. I can't really see why someone would go through the pain of ripping their entire collection and not selecting at least lossless mkv-remuxes...
  15. M

    Fileserver Backup Suggestions?

    I use my own offsite backup fileserver with incremental rsync snapshots with checksum verification and mail reporting ( just a python script i have made). I do backup of 6 servers on two separate sites with this. I started with about 1tb over 0,35 mbit dsl, but now I have about 17 TiB data over...
Back
Top