HHugoinhugovalters.hashnode.dev·2d ago · 4 min readProxmox Network Configuration: Bridges, Bonds, and VLANsI once spent a Sunday afternoon restoring a client's 12-node Proxmox cluster because someone thought balance-rr on a single switch was a good idea. The switch's MAC table filled up in 47 seconds, the 00
HHugoinhugovalters.hashnode.dev·3d ago · 3 min readLock Down SSH: Configuring Two-Factor Authentication (2FA) with Google AuthenticatorSecure Your Server: Forcing 2FA on SSH Connections 🖼️ Image: 'Hacker trying to bypass SSH with Google Authenticator shield' available in the full article here Every single day, automated bots and b00
HHugoinhugovalters.hashnode.dev·May 3 · 3 min readSplit Tunneling: Performance vs Security in the Remote Work EraI recently sat in a boardroom where a non-technical CISO was pounding the table, demanding that every single byte of data from 500 remote employees be forced through the corporate VPN. "Full Tunneling is the only way to ensure security!" he shouted. ...00
HHugoinhugovalters.hashnode.dev·May 2 · 3 min readTailscale & ZeroTier: Why You're Fighting CGNAT and LosingI recently talked to a developer who spent three days trying to set up a WireGuard tunnel to his home server. He had the config perfect. He had the port forwarded on his router. He had the dynamic DNS updating every five minutes. But no matter what h...00
HHugoinhugovalters.hashnode.dev·May 1 · 3 min readThe MTU Nightmare: Why Your VPN Connection is Fragmenting to DeathI’ve lost count of how many times I’ve had to explain this to "Senior" DevOps engineers who think they’ve discovered a ghost in the machine. The symptoms are always the same: The VPN tunnel is "Up." You can ping the remote gateway. You can even SSH i...00