Another successful OpenBSD setup

I’ve been buying these little boxes from AliExpress for years to use as firewalls and routers. My oldest one is almost 9 years old now! OpenBSD installs just fine. Just a BIOS tweak to always boot up after power is restored.

@selfhosted #selfhosting #selfhosted #openbsd #runbsd

So these noname boxes are good for making a hardware firewall/network?

@floofloof@lemmy.ca
link
fedilink
English
8
edit-2
7M

I use one with 6 LAN ports and a 10th gen i5 running OPNsense, and it has worked well for years. It runs many services including Unbound DNS and Suricata with capacity to spare. It’s much better than any consumer router, though I run WiFi separately with an Asus AI Mesh set to AP mode.

The only concerns are that you don’t get BIOS updates, and you don’t know for sure that there’s nothing nasty in the firmware. But then you don’t really know that on consumer routers either.

Mine died after 2 years after a power cut.
I havent tried to debug it yet. At the time, it would power on but a monitor didnt see anything from the video port, and it didnt seem to actually boot.
I presume it is toast.

If you dont need compact, a rebfurbed SFF with a 4 port network card is gonna be cheaper

I’ve been running one for the past 6+ months with no issues.

@const_void@lemmy.ml
link
fedilink
English
27M

Sure as long as security isn’t a concern

@emptiestplace@lemmy.ml
link
fedilink
English
17M

Ok, cool - do we have astroturfing on lemmy now?

pfSense has a very good record, but OpenBSD’s record and code quality are literally unparalleled.

Conversely, I spend a fair bit of time working on devices made by SonicWall, Fortinet, etc. and it’s all fucking garbage.

Are you concerned about it being designed in China in addition to the conventional and thoroughly ubiquitous “manufactured in China”? Please explain your concerns in detail.

@const_void@lemmy.ml
link
fedilink
English
27M

As @floofloof@lemmy.ca stated:

The only concerns are that you don’t get BIOS updates, and you don’t know for sure that there’s nothing nasty in the firmware.

Yeah, as long as it it’s one with 2+ network ports. I use a little 4 port with pfsense loaded on it for my home network.

Create a post

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

  • 1 user online
  • 279 users / day
  • 589 users / week
  • 1.34K users / month
  • 4.55K users / 6 months
  • 1 subscriber
  • 3.49K Posts
  • 69.8K Comments
  • Modlog