Yeah is guide is pretty useful! i went with setting up wireguard instead of openvpn. For a while now ive been self hosting alot of my stuff, SearXNG with gluetun tunneling, minecraft server for me and the boys and a Samba Share instead of paying for some dopey cloud storage. Ive gotten ZFS running in a 1tb z1 pool for my containers and plan to add a 10tb Z2 pool for long term storage and backups. i chose to do it in NixOS instead of debian or ubuntu, just because im a little bit of a nut for immutability.
its actually kinda funny i just left a post asking for help setting up wiregaurd server on c/selfhosted and referenced louis's guide!
Also i gotta add thats EPIC you got 10gbps internet, i went with a glinet flint 2 for my router. Because it runs openwrt under the hood, i personally like openwrt alot. there are people that swear by pfsense or opensense because of the bsd network stack, is very well maintained and secure as alot of commercial products like switches and firewalls run pfsense under the hood. for security and vlans pfsense would probably be better from what i heard. But openwrt works pretty well aswell, and i ended up just going with the flint 2 because it has 2.5gb wan in and 1 2.5gb lan. which was more than enough more my measly 1-2gb internet.
so for example, setting 192.168.8.170 on the clients as the only allowed IP aswell as the server would do what i need?
thanks for helping trying to navigate my labyrinth of networking :P
For client example
[Interface] Address = 10.0.0.3/24
ListenPort = 51820
PrivateKey = magic numbers
so if i understand this correctly, it runs a docker container to which runs the wireguard server and then you just specify hostname/ip adress for the services, then when sombody tunnels in they have acess to only the services specifide in config file?
if so looks pretty useful!, i just question what happens to the rest of the traffic? is it locally routed in my network or client side?
im not very familiar with proxys, i know what they are but have never really messed with one.
Thanks for sharing
ok ill try to explain to the best of my ability and simply it.
i no longer want to use tailscale, because of accounts.
i used to use tailscale for the minecraft server
i want my friends to be able to acess only 192.168.8.170 on my local network and all other traffic to not be routed through my vpn but my friends to have acess to there internet on there LAN. example, we can play minecraft on the server on my network and we can be in a group call in signal. meaning friend 1 and 2 are using there internet connection locally, and only 192.168.8.170 being routed.
We also had some connectivity issues with tailscale, where friend 1 would be on and friend 2 would lag out of the server randomly. when if we played a game through steam we wouldnt have any connection issues. my friend is also very forgetful and cant log into his tailscale account, which is another reason why i wanna ditch tailscale.
Stay with me here, you could just implement some public key signing with the printer and include it in the setup in the slicer.
Then set it on the printer to only except said public key commands.
Problem solved, no cloud. No malware talking to your printer. No EULA roofy, just utter bullshit another company wants to force users into there cloud account.
This just pisses me off!
Are they aware we can read?
Supposed lies people told
"Firmware updates will block your printer’s ability to print."
Which they then contradict themselfs and tried to cover it up.
"Please be aware with this new version of firmware, print jobs may be blocked when using LAN mode. this is for security"
"Partners can maintain or downgrade their firmware versions until technical updates are fully implemented."
There was never an option to downgrade, they changed the webiste to say it can be downgraded. When i know yesterday it said it wasnt eversible which was covered by many news outlets.
"All future Bambu Lab printer models will integrate authorization control technology as standard to ensure the highest levels of user security and printer protection moving forward. We acknowledge that these changes may introduce additional effort and workload. However, through our joint efforts and cooperation, we believe we can improve the security, quality, and user experience of Bambu Lab’s 3D printing products and services."
"This is beta testing, not a forced update. The choice is yours. You can participate in the beta program to help us refine these features, or continue using your current firmware."
Its optional in the same way of you dont need to eat today! You can just go without eating, its totally optional nobody is saying you half to eat! It OPTIONAL.
What the fuck are they smoking, it never says "beta channel"
Own up to your mistakes
I AM HERE TO REACH YOU ABOUT YOUR CARS EXTENDED WARRANTY