adingbatponder

adingbatponder's avatar
adingbatponder
npub1v26q...fwh6
Tech by the people, for the people. Washing up โŒจ๏ธ #RISCV #RiscvAssembly washing up #Raspberrypi #raspi sorting socks #projects #SBC :raspberrypi: ๐Ÿ—œ๏ธ #make โš™๏ธ #maker #tibber taxi service #HomeLab #macOS #ubuntu :ubuntu: shopping โš›๏ธ #physics cooking ๐Ÿงฎ #mathematics #maths homework ๐Ÿง˜๐Ÿปโ€โ™‚๏ธ #iyoga #choir #iyengaryoga Pro nouns: but verbs are good too if used right. #meshtastic :meshtastic: ๐Ÿฆ€ :rust: :debian: :nixos: #nixos
Background: for my " #homelab " I set up #suricata in #nixos and have a functioning #ids #intrusiondetection system with a #grafana dashboard (flake info here ๐Ÿ“ƒ.md ). Preliminary plan: I now want to go to and #ips #intrusionprevention system that blocks threats detected. Current plan is #nftables with #nfqueue but there is no GUI for that it seems, and it is a bit clunky and black-boxy. Question: What are the more user-friendly options for an IPS front-end / GUI ? Thanks!
Tried making a transparent network bridge on #NixOS which sits between router & #LAN switch, monitoring all traffic for #IDS #intrusiondetection , #Suricata and #Zeek capture and analyze packets โ†’ #Filebeat ships #logs โ†’ #Elasticsearch with #GeoIP ingest pipeline โ†’ #Grafana visualization produces e.g. real-time world map showing geographic destinations of network connections. #flake details here Hardware: HP EliteDesk 800 G1 16Gb RAM & #i350t4 image