<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>firewall — LowEndSpirit</title>
        <link>https://staging.lowendspirit.com/index.php?p=/</link>
        <pubDate>Fri, 10 Apr 2026 07:38:08 +0000</pubDate>
        <language>en</language>
            <description>firewall — LowEndSpirit</description>
    <atom:link href="https://staging.lowendspirit.com/index.php?p=/discussions/tagged/firewall/feed.rss" rel="self" type="application/rss+xml"/>
    <item>
        <title>OpenSense Hardening  &amp; sunnyvalley.cloud referral</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/5906/opensense-hardening-sunnyvalley-cloud-referral</link>
        <pubDate>Thu, 11 May 2023 19:10:54 +0000</pubDate>
        <category>Help</category>
        <dc:creator>hornet</dc:creator>
        <guid isPermaLink="false">5906@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>I have been reading about and watching pfSense and OpenSense videos for one year.  Time to pull the trigger.</p>

<p>Looking to have a rock-hard residential connection.  Which setup tweaks do you recommend?  Plug-ins?</p>

<p>Anyone have a sunnyvalley.cloud referral link?</p>
]]>
        </description>
    </item>
    <item>
        <title>LowEnd Segmented Wireless and Wired VLAN Networks</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/4603/lowend-segmented-wireless-and-wired-vlan-networks</link>
        <pubDate>Sat, 17 Sep 2022 17:44:33 +0000</pubDate>
        <category>Technical</category>
        <dc:creator>xleet</dc:creator>
        <guid isPermaLink="false">4603@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>I would like to segment my home network into separate VLANs. The goal is to prevent appliances like doorbell cameras and video streaming devices from accessing the LAN that residents use for their personal computers and phones.</p>

<p>That means several WiFi SSIDs that are on separate LAN segments. I have switches that support 802.1q VLAN tagging, but they are still operating as unmanaged switches.</p>

<p>Which firewall would you recommend that supports this kind of networking with VLAN tagging? <br />
Which access points would you recommend that support multiple SSIDs (say 8 different ones) with appropriate VLAN tagging?</p>
]]>
        </description>
    </item>
    <item>
        <title>New WAF by Cloudflare.. will you bite?</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/2736/new-waf-by-cloudflare-will-you-bite</link>
        <pubDate>Wed, 31 Mar 2021 12:44:23 +0000</pubDate>
        <category>Industry News</category>
        <dc:creator>vyas</dc:creator>
        <guid isPermaLink="false">2736@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Preference (of course ) for paid tier.</p>

<p><a href="https://blog.cloudflare.com/new-cloudflare-waf/" rel="nofollow">https://blog.cloudflare.com/new-cloudflare-waf/</a></p>

<p>Or will you go DIY route?</p>
]]>
        </description>
    </item>
    <item>
        <title>Linode Firewall (Beta)</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/1967/linode-firewall-beta</link>
        <pubDate>Sat, 24 Oct 2020 00:17:39 +0000</pubDate>
        <category>General</category>
        <dc:creator>vyas</dc:creator>
        <guid isPermaLink="false">1967@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>I came across a post talking about Linode Firewall that is in beta. One has to apply to the program to use but...</p>

<p>My question : is this different (or better ) than standard / cli tools ?</p>

<p><a href="https://www.linode.com/products/firewall/" rel="nofollow">https://www.linode.com/products/firewall/</a></p>
]]>
        </description>
    </item>
    <item>
        <title>General Setup for MMO and Firewall</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/1512/general-setup-for-mmo-and-firewall</link>
        <pubDate>Mon, 27 Jul 2020 00:19:14 +0000</pubDate>
        <category>Technical</category>
        <dc:creator>kind</dc:creator>
        <guid isPermaLink="false">1512@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Hello guys, its me again.<br />
As im progress with the setup, new doubts are comming.<br />
First of all, im gonna tell you about my setup and why I rent a dedicated server.<br />
I have 2 servers of MMORPG, and, usually we (the ppl who has this kind of servers) rent vps, problem is most of the ppl who rent related to this game don't have a clue about nothing, and oversell resources af. So, since my 2 vps cost around 35USD monthly, I decided to take the leap and move to soyoustart.<br />
My goal is to setup 4 vps with Windows Server (2 operationals and 2 for test). <br />
This is the specs of my server: SYS-LE-2 Server - Intel Xeon E5-1620v2 - 32GB DDR3 ECC 1600MHz - 2x 800GB SSD SATA Soft RAID and it has Proxmox VE 6.2.</p>

<p>That being said, I have a couple of general questions:<br />
1. OVH Monitor isn't enabled for SYS right?<br />
2. Do you recommend to have RAID setup for this use? Currently I have one of the SSD unmounted.<br />
3. What its the best configuration for Windows regarding VM options. Screen: <img src="https://i.imgur.com/KYz8227.png" alt="" title="" /></p>

<p>And about Firewall (the same topic since setup is relevant):<br />
1. Is there a file config to see all the rules that has been applied? Im aware of iptables -S<br />
2. Do you really see crucial to add a rule for SSH and GUI access only from 1 ip? Im from Argentina, and all the companies here use dynamic ip, or its enough with anti brute rules?<br />
3. All the rules I apply to main server in SSH would be apply to my VM's if network firewall is enabled?<br />
4. Need to limit connection ammount per IP and per time, I read this tutorial (hope isn't againts the rules share the link) <a href="https://javapipe.com/blog/iptables-ddos-protection/" rel="nofollow">https://javapipe.com/blog/iptables-ddos-protection/</a> with a bit of tweaks could be exactly what I need, only if I can add a ban to the ip that exceed the limite, for 30mins lets said.<br />
5. Is there a way to add a whitelist IP for certain rules only? Like for example, I wanna limit connections with the rules from the link above, to 15 connections over 30sec.</p>

<p>Think that would be all. Thanks to all for reading, sorry for all the questions and the bad english ^^</p>
]]>
        </description>
    </item>
    <item>
        <title>Do you block traffic from China?</title>
        <link>https://staging.lowendspirit.com/index.php?p=/discussion/468/do-you-block-traffic-from-china</link>
        <pubDate>Thu, 09 Jan 2020 10:15:19 +0000</pubDate>
        <category>Technical</category>
        <dc:creator>havoc</dc:creator>
        <guid isPermaLink="false">468@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>From reading various things on the intertubes at least some people seem to do this. On the basis that a lot of the traffic is not legit and/or malicious.</p>

<p>Thoughts on this? yay/nay</p>

<p>Also, anybody know a clean way of managing this type of stuff. I know one can download country IP blocks and funnel it into iptables but not sure how to remove/manage</p>
]]>
        </description>
    </item>
   </channel>
</rss>
