As the title says, I want to know the most paranoid security measures you’ve implemented in your homelab. I can think of SDN solutions with firewalls covering every interface, ACLs, locked-down/hardened OSes etc but not much beyond that. I’m wondering how deep this paranoia can go (and maybe even go down my own route too!).

Thanks!

  • Big PEnglish
    arrow-up
    5
    arrow-down
    0
    ·
    8 months ago
    link
    fedilink

    Linux only on the main network.

    Is that a security benefit?

    • SemperverusEnglish
      arrow-up
      8
      arrow-down
      0
      ·
      8 months ago
      link
      fedilink

      If big corporations hoovering your data should be on everyone’s threat list, then yea, i’d say its a huge benefit.

    • NOPperEnglish
      arrow-up
      5
      arrow-down
      0
      ·
      8 months ago
      link
      fedilink

      I guess it cuts the attack surface profile down a bit?

    • JoeKroganEnglish
      arrow-up
      5
      arrow-down
      0
      ·
      8 months ago
      edit-2
      8 months ago
      link
      fedilink

      Well I dont trust closed source software and do what I can to avoid it when I can. At least foss can be audited. Also all the linux devices on the main network are devices I admin.