370
submitted 6 months ago by otl@hachyderm.io to c/selfhosted@lemmy.world

Another successful OpenBSD setup

I've been buying these little boxes from AliExpress for years to use as firewalls and routers. My oldest one is almost 9 years old now! OpenBSD installs just fine. Just a BIOS tweak to always boot up after power is restored.

@selfhosted #selfhosting #selfhosted #openbsd #runbsd

you are viewing a single comment's thread
view the rest of the comments
[-] SuperSynthia@lemmy.world 17 points 6 months ago

So these noname boxes are good for making a hardware firewall/network?

[-] Cornelius_Wangenheim@lemmy.world 12 points 6 months ago

Yeah, as long as it it's one with 2+ network ports. I use a little 4 port with pfsense loaded on it for my home network.

[-] floofloof@lemmy.ca 9 points 6 months ago* (last edited 6 months ago)

I use one with 6 LAN ports and a fanless 10th gen i5 running OPNsense, and it has worked well for years. It runs many services including Unbound DNS and Suricata with capacity to spare. It's much better than any consumer router, though I run WiFi separately with an Asus AI Mesh set to AP mode.

The only concerns are that you don't get BIOS updates, and you don't know for sure that there's nothing nasty in the firmware. But then you don't really know that on consumer routers either.

[-] fuckwit_mcbumcrumble@lemmy.world 7 points 6 months ago

I've been running one for the past 6+ months with no issues.

[-] towerful@programming.dev 4 points 6 months ago

Mine died after 2 years after a power cut.
I havent tried to debug it yet. At the time, it would power on but a monitor didnt see anything from the video port, and it didnt seem to actually boot.
I presume it is toast.

If you dont need compact, a rebfurbed SFF with a 4 port network card is gonna be cheaper

[-] const_void@lemmy.ml 2 points 6 months ago

Sure as long as security isn't a concern

[-] emptiestplace@lemmy.ml 3 points 6 months ago

Ok, cool - do we have astroturfing on lemmy now?

pfSense has a very good record, but OpenBSD's record and code quality are literally unparalleled.

Conversely, I spend a fair bit of time working on devices made by SonicWall, Fortinet, etc. and it's all fucking garbage.

Are you concerned about it being designed in China in addition to the conventional and thoroughly ubiquitous "manufactured in China"? Please explain your concerns in detail.

[-] const_void@lemmy.ml 3 points 6 months ago

As @floofloof@lemmy.ca stated:

The only concerns are that you don’t get BIOS updates, and you don’t know for sure that there’s nothing nasty in the firmware.

this post was submitted on 25 Feb 2024
370 points (97.2% liked)

Selfhosted

39253 readers
438 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 1 year ago
MODERATORS