Viclan

joined 1 year ago
[–] Viclan@beehaw.org 1 points 1 year ago

Literally what are you talking about??? Why would a company not enforce artificial scarcity, it means they have to produce less and their product is more valuable per item. It costs companies to produce more product, they’re not interested in selling a good product just anything that will keep profit margins high. If anything they’d lay off the actual laborers to keep their executives nice and comfy while “cutting costs” across the board. Why do we subsidize farmers to overproduce and we still have people suffering food insecurity?

[–] Viclan@beehaw.org 2 points 1 year ago

I'd like this but I'd hate it if it became like a orphan-crushing machine scenario where it sounds nice that a child sold lemonade over the summer and saved money to pay for kids lunches, but like all kids should have basic nutrition guaranteed at school and options to allow less fortunate students to eat breakfast and/or take home meals. So like genuinely good news about good policy or positive news about anything that isn't tainted by the typical capitalist bullshit or ulterior motive or quasi-nationalism if you can understand what I'm trying to express.

[–] Viclan@beehaw.org 2 points 1 year ago

Wow that doesn’t look like Xqc at all, terrible job

[–] Viclan@beehaw.org 4 points 1 year ago

For real! They’re coming for our kids!! Trying to teach them sexual health, and idk about you but nothing with the word “sex” in it is appropriate for my child! Oh the humanity, why can’t we go back to the good ole days when Catholic priests were given free reign to abuse children

[–] Viclan@beehaw.org 2 points 1 year ago

I agree with you, companies only care as far as their bottom line goes. But that doesn’t necessarily mean that doing pride displays and showing support, even in superficial support, is a bad thing. And there is no such thing as moral consumption under capitalism, and the only solution is to move towards a more worker centric society and eliminate exploitation from these industries. It starts with how you use your vote and your voice, we should advocate for more people to get involved and active.

[–] Viclan@beehaw.org 6 points 1 year ago

Definitely agree, the people overall over there seemed like fine folks who understood once they saw both mod teams communications on the defederation. There were a few people who took the worst possible interpretation and were trying to run with it, but a lot of the users there were shutting them down and explaining where they might be drawing conclusions. Overall really happy with the interactions on lemmy, lots of nuanced discussion and really just feels more laid back and good faith for a majority of the userbase

[–] Viclan@beehaw.org 10 points 1 year ago

Appreciate your input, some of the comments on the shitjustworks thread were kinda wild, people absolutely have been assuming the worst when the mods here have been wholly open and transparent which is absolutely what I look for in a lemmy instance. Make sure your values are in line with the moderators running the instance. Because in the end that's what will affect your user experience the most and if you don't like that there's always the option to run your own instance so you can see all the federated networks you want and none that you don't. Ideally everyone would be running their own personalized instance where they can see everything and then go to a couple different silo instances where people go to post their content.

[–] Viclan@beehaw.org 16 points 1 year ago

Yeah the transparency of the mod team is the number one reason I love this instance so. Completely understood all of their decisions and how they came to them and I don't think anyone can get mad about it, its a passion project for the fine folk that admin this instance its understandable you would take precautions. I mean if a certain instance is not moderating at all or only has a handful of people moderating that workload gets pushed off onto these guys when those instances interact here. And with them being open and transparent and willing to make changes as development unfolds, it makes me more confident in the whole project.

[–] Viclan@beehaw.org 1 points 1 year ago (1 children)

It’s really fucking sad you guys feel this way and for no good discernible reason other than hate and that you’re a small enough group that it’s easy to bully you with little to no recourse. It’s sad there are many people who can’t get their head out of their ass and look at and hear the actual people affected by this bullshit. Luckily there are many people who are absolutely disgusted by the state of the world and the hate campaign against trans people, hopefully we’re enough to protect you guys. I got a little brother I’m getting gray hairs worrying about with all this shit man, but I try to keep in mind that there are good people out there. Lots of support at rallies and protests I’ve been to

[–] Viclan@beehaw.org 16 points 1 year ago

Yeah I don’t know if it’s just the way text can be read, but that commenters comment is very uncalled for. I mean trans people didn’t ask to be made the forefront issue for all these political candidates and “news” stories. They were thrust into the spotlight by republicans and subsequently demonized as is the conservative way, I mean literally they use the same scare tactics as their gay scare culture war bullshit. Implying that people can be turned trans and that it doesn’t really exist but is a fad, just garden-variety bigotry that comes with their culture war bullshit. And your mad at this person pointing it out? Make it make sense

[–] Viclan@beehaw.org 2 points 1 year ago

bro your app is super stable as well! I was having a lot of crashes with Mlem, not to discredit their work they've got a cool multi profile feature that's really nice. Appreciate your work!

[–] Viclan@beehaw.org 1 points 1 year ago

I really appreciate all your input, its really helped me connect a few dots that needed connecting so I really do appreciate it my man. I'm aware of the OSI model and I was hoping my work with my homelab would help me understand better, but I've still got a ways to go. I really appreciate your explanations on Layer 2 and Layer 3, I understood the definitions but your explanation helps me connect the idea to real world examples. I also understood bridges somewhat but relating it to a switch makes it simple to understand and configure.

Thanks for the links as well, I will be messing around with this config tonight so I will be using your comments as a resource, so really, thank you! Can I ask for permission to PM you if I have any questions related to homelab/networking? You and I seem very similar in our scatterbrain-ness lol, so I figured it might make things easier if that makes sense. I will definitely be doing more reading and research, the first link you provided seems like an absolute blessing of a resource.

 

Hi All!

New to the Fediverse from the reddit exodus, I've gotten into Self-hosting around January this year and have been loving learning about Networks and how they are structured and communicate and I love the projects that come out of managing a home lab.

As I've built up my home lab, from a single node to 3, I've been trying to think of how to structure my network to segment it in such a way that my homelab is on its own segmented network, whether this be VLAN or separate LAN (though I've heard terrible things about double NAT), and have that whole segment of traffic be pushed through a VPN tunnel. Unless that is not necessary? Part of the reason I want to make this post is so that people who are around the same point in their home lab adventure who might have similar questions can come to this thread to discuss particulars about the manner at hand. I'll probably be structuring future questions in such a manner that allows people to discuss and nail down topics they may be struggling with wrapping their head around.

Back to my question, so let me give a better lay of the land. I am running Proxmox as my hypervisor on all these nodes, I have a generic ISP-provided router (ActionTek T3200 if interested in the model) that handles LAN routing and WiFi. Currently all my nodes are hard-lined to the router and I rely on proxmox default firewall atm, I haven't dug into how to properly configure any of that since I wanted a separate solution, not sure the security implications of just using proxmox's firewall so chime in if you know.

So all my nodes are hooked up to my router, but I have a Layer 2 switch I got for free (supports basic VLANs as well as some other basic features) and I want to configure my 3rd node to run OPNsense for my routing and VLAN tagging. The 3rd node will sit on the edge of the Router and the Switch, meaning Router connects to Ethernet port 1 on node 3 and Ethernet port 2 on node 3 connects to the switch and would be providing the LAN and internet access from my understanding. Node 3 will also be running a VPN tunnel to provide remote access as well as providing protection for my *Arr downloads. So the routing for my homelab should go from this:

Node 1, Node 2, Node 3 ------- ISP Router ------ Internet

to this:

Node 1, Node 2--Switch/Node3---ISP Router --Internet

Now my understanding is that structuring it in such a way means that if, for example, Node 1 which hosts my *Arr network were to pull a compromised download then its damage would only go as far as where the VLAN ends, ie would only affect my homelab network because its segmented in such a way that my devices connected to wifi would be unaffected.

I've just started to tinker around with configuring OPNsense when I got a sense for how to structure my network. I'm trying to virtualize it, which is a bit unconventional but not unheard of. I was able to spin up a VM running the installer and it gets through the install just fine but I am unable to reach the address provided. It's 192.168.1.1 which is off my IP range. This might be where I need a bit of help understanding, but shouldn't it give me an IP address that's in my Routers IP Range? Maybe not, maybe its a sort of DMZ type thing? I'm not all too familiar so give a shout if you know something. I am thinking that the WAN and LAN ports are just getting switched during install and I need to interrupt the install and manually delegate those ports and then I'll be able to connect? I haven't had some solid time to dig deep on this so I figured rambling on a forum with tech savvy individuals might at the very least provide me with some insight and more understanding.

So I suppose my question is what do you think of my thought process? Am I missing anything major in my understanding? How should you think about configuring your firewall and VPN? How do you setup VLANs to allow communication where necessary between VLANs and Wifi network? Apologies that this got so long, I was trying to keep it brief but also give enough info on my environment. Let me know if there's any questions. I'd also be interested in resources if my topics just point to needing a better understanding of networking generally. Thanks for your time

view more: next ›