• 1 Post
  • 2 Comments
Joined 4 years ago
cake
Cake day: May 30th, 2021

help-circle

  • Thank you for all the questions to help me clarify my use case 🙂

    At the very basic, I’d like to:

    1. achieve better security through segmentation by isolating cloud-connected devices, guest devices from trusted devices.
    2. Being able to “pin” a Mac address to an IP, and being able to use internal network name resolution to reach those devices.
    3. a blocklist for known ad-domains / malicious domains.

    Once the basics are in place, I’d like to elevate my netsec game and implement:

    • a high level monitoring capability to seen what devices are communicating with what domains / IPs
    • An IDS capability of some sort to be able to detect anomalies in my LAN.

    The NAS part is just for convince, it would be nice to have a samba / NFS with my files available when I need them.