• Sign in
  • Sign up
Elektrine
EN
  • EN English
  • 中 中文
Log in Register
Modes
Overview Search Chat Timeline Communities Gallery Lists Friends Email Vault DNS VPN
Back to Timeline
  • Open on mastodon.bsd.cafe

subnetspider

@subnetspider@mastodon.bsd.cafe
mastodon 4.5.7

My main interests are IPv6, FreeBSD, ZFS and jails.

I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security.

I fix computer networks for a living, each one more borked than the last.

0 Followers
0 Following
Joined April 25, 2024
Blog:
https://www.subnetspider.com/
DM (Signal):
subnetspider.01
Location:
🇪🇺

Posts

subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · 5d ago

Today I've set up two OPNsense 26.1 Firewalls in a HA configuration on a single DSL internet connection.

Failover is working, the backup OPNsense does connect the PPPoE session, and requests a IPv6 prefix via DHCPv6, but it doesn't disconnected the PPP session after the main OPNsense comes back online.

Not sure why, I've set up CARP on the igb0_vlan interface, but it's not working. I probably forgot something, needs more troubleshooting.

Still, pretty nice not needing a router in front of the OPNsense Firewalls. :)

View on mastodon.bsd.cafe
6
0
3
0
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · 6d ago

Just tried upgrading my OPNsense from 25.7 to 26.1 - but it failed (upgrade hang with the hostwatch plugin, then the UI died because of Zenarmor getting stuck).
Luckily, I created a ZFS snapshot just before that, so a simple "zfs rollback snapshot@timestamp && reboot" and I'm back. Nothing beats the ability to "Ctrl + Z" at a filesystem level.

View on mastodon.bsd.cafe
4
0
0
0
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · Mar 15, 2026

Today I shut down another one of my Proxmox VE VMs, after migrating the last of it's jails (NSD, Unbound, AdGuard Home, and the 2nd HAProxy carp instance) to my HP t620 thin client.

This little machine has been running my new Zabbix Server for the last 6 months.

I've also set up automated ZFS replication on my main FreeBSD server to back up all the data on it every night, so I don't have to worry about the single SSD dying anymore.

Now only NetBox (Ubuntu LXC) and the Minecraft Server (Windows Server 2022) remains on Proxmox, the former will be migrated to a VNET jail, the latter to a bhybe VM.

Let's see how long that'll take me... 🫠

View on mastodon.bsd.cafe
21
0
8
0
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · Mar 11, 2026

Just found out (after troubleshooting for 2+ hours) that the reason why one of our customers VoIP equipment can't reach their SIP registrar's servers IP, is because of peering issues.

Funnily enough, it works fine when I route the SIP traffic over the backup 4G connection, whose ISP has direct peering with the SIP registrar.

I fully expected the Sophos XGS Firewall to be the culprit, but of course, this time it worked perfectly. Times like these feel like Sophos is gaslighting me into believing it never has problems.

But alas, this problem is for someone else to solve. 🫠

/s

View on mastodon.bsd.cafe
2
0
0
0
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · Mar 07, 2026

Well then, the first of my 2-node DIY Sophos Firewall HA cluster nodes is now shut down...

Time to install OPNsense on it.

View on mastodon.bsd.cafe
3
0
0
0
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
subnetspider
subnetspider
@subnetspider@mastodon.bsd.cafe

My main interests are IPv6, FreeBSD, ZFS and jails. I also enjoy playing around with automation, networking, virtualization, lots of hardware, free software, and trying to learn more about IT security. I fix computer networks for a living, each one more borked than the last.

mastodon.bsd.cafe
@subnetspider@mastodon.bsd.cafe · Mar 06, 2026

@nuintari@mastodon.bsd.cafe AFAIK it should not matter if you use SwitchOS or RouterOS as long as the switch chip is capable of offloading everything. Some cheaper devices used to (?) have most interfaces connected to a switch chip, and some to the CPU, which may have been the cause of the low performance.

I've tried both the hAP ax LTE6 lite and the hEX refresh (E50UG) and I didn't notive anything, but alas they're routers, not switches. 🤷‍♂️

View on mastodon.bsd.cafe
1
0
0
0

Media

313k7r1n3

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • VPN Policy

Email Settings

IMAP: imap.elektrine.com:993

POP3: pop.elektrine.com:995

SMTP: smtp.elektrine.com:465

SSL/TLS required

Support

  • support@elektrine.com
  • Report Security Issue

Connect

Tor Hidden Service

khav7sdajxu6om3arvglevskg2vwuy7luyjcwfwg6xnkd7qtskr2vhad.onion
© 2026 Elektrine. All rights reserved. • Server: 16:52:32 UTC