As the title says, I want to know the most paranoid security measures you’ve implemented in your homelab. I can think of SDN solutions with firewalls covering every interface, ACLs, locked-down/hardened OSes etc but not much beyond that. I’m wondering how deep this paranoia can go (and maybe even go down my own route too!).

Thanks!

  • MigratingtoLemmyOPEnglish
    arrow-up
    1
    arrow-down
    0
    ·
    8 months ago
    link
    fedilink

    This is the first time I’ve come across Elastiflow, thanks for mentioning it. Seems like an intriguing service to add.

    I was considering using Suricata/installing Security Onion to do IDS from the certificate from a private CA. Sophos firewall seems pretty good too.