Mesh Wifi with good parental controls: porn blacklisting

Thanks captain network. Lol
34c0c7e5a9a4b17ce34f09ed7fc8f5b8.jpg

:ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO: :ROFLMAO:
 
That's what I have set up right now... ish. My PiHole handles DNS. That was pretty easy to set up. (Though see me issues above re content blocking). The issue I have now is that certain content gets around the settings depending on the search engine.

That said, uf, for example, I go into my laptop's own DNS settings and set 1.1.1.1, it circumvents the PiHole.

May have to look at running OPNsense on my Unraid server, then, to get this all working. I have an extra NIC sitting around. I could probably use that and dedicate it to the DHCP capabilities. I think the Core i3 10100 should be up to the task of DNS plus DHCP and all the other things the box does.

I have the Nest Wifi Pro: https://store.google.com/product/nest_wifi_pro?hl=en-US&pli=1
3600 sq foot house means a single router just won't work. I had a gen1 Google Mesh until about 3 months back, and LOVED it. Alas, the ease of use and setup does mean some limited options for advanced settings.
That core i3 is more than up to the effort. My main pi-hole is actually on a old Dell Latitude E7270. WAY overkill. It's honestly hardly touched. I'm migrating that system to an RPi4 as soon as I can get my hands on another one.
 
That core i3 is more than up to the effort. My main pi-hole is actually on a old Dell Latitude E7270. WAY overkill. It's honestly hardly touched. I'm migrating that system to an RPi4 as soon as I can get my hands on another one.
I've got other stuff on the box too. Plex, Home Assistant Server, a Minecraft server for the family, backup duties for computers in the home, etc.

May look for some cheap used i5s if I cand find them... That said, a cheap mini PC with a quad core 11th Celeron can be found for $140ish and already has the extra NICs I'd need. Which would be fun...
 
I've got other stuff on the box too. Plex, Home Assistant Server, a Minecraft server for the family, backup duties for computers in the home, etc.

May look for some cheap used i5s if I cand find them... That said, a cheap mini PC with a quad core 11th Celeron can be found for $140ish and already has the extra NICs I'd need. Which would be fun...
Even with that I think it'll be fine with the Pi-Hole. Pi-hole with DNS/DHCP is really lightweight.
 
Yeah. While OPNsense is fairly lightweight I don't think I'd put it on that box with everything else you have going.
Soooo.. youre giving me permission to buy a cool little mini PC to play with and put OPNsense on it?
https://a.co/d/7BtkC64
 
As an Amazon Associate, HardForum may earn from qualifying purchases.
Soooo.. youre giving me permission to buy a cool little mini PC to play with and put OPNsense on it?
https://a.co/d/7BtkC64
with coupon its a decent price, but it wouldn't be on my list. I'd get a 4 nic qotom for a few bucks more and run sense or other firewall/utm, along with pi.hole
 
As an Amazon Associate, HardForum may earn from qualifying purchases.
Soooo.. youre giving me permission to buy a cool little mini PC to play with and put OPNsense on it?
https://a.co/d/7BtkC64
Yes!

And damn that's a slick one. If/When I need to replace mine (Protectli 4 port Intel Atom) I'll look at something like that because for that price it's a steal.
 
As an Amazon Associate, HardForum may earn from qualifying purchases.
Yes!

And damn that's a slick one. If/When I need to replace mine (Protectli 4 port Intel Atom) I'll look at something like that because for that price it's a steal.
Yea, the windows license is super sus, but it'll be nuked anyway.
 
with coupon its a decent price, but it wouldn't be on my list. I'd get a 4 nic qotom for a few bucks more and run sense or other firewall/utm, along with pi.hole
I like having PIhole on my unraid. Makes it easy to update and manage. Plus, if all I'm using it for is a firewall, two NICs is enough.
 
I like having PIhole on my unraid. Makes it easy to update and manage. Plus, if all I'm using it for is a firewall, two NICs is enough.

So here's the thing I learned on the way. A two port router doesn't allow you to have multiple networks using inter vlan routing for security (L2 switching vs L3 routing). Once you have the ability being able to have networks dedicated to iot devices, work network, and home is very nice. Pihole on unraid is great, and I still have it, but hate it in a key area, updating or reseting the unraid. Once everything goes thru pihole when it's down so is your network, as switching dns temporarily doesn't work for all.devices due to sessions and leases. Of course that said I think pihole can be more or less an add on within the pfsense itself.
 
So here's the thing I learned on the way. A two port router doesn't allow you to have multiple networks using inter vlan routing for security (L2 switching vs L3 routing). Once you have the ability being able to have networks dedicated to iot devices, work network, and home is very nice. Pihole on unraid is great, and I still have it, but hate it in a key area, updating or reseting the unraid. Once everything goes thru pihole when it's down so is your network, as switching dns temporarily doesn't work for all.devices due to sessions and leases. Of course that said I think pihole can be more or less an add on within the pfsense itself.
This is why I went Protectli 4-port for my OPNsense build. IOT is on it's own network, my other self-hosted stuff is on it's own network, and then there's main LAN.

OPNsense can integrate with Pi-hole directly. https://pi-hole.net/blog/2021/09/30/pi-hole-and-opnsense/#page-content

That blog post is a bit old (they even say so) but it may still work. If not I'm sure there's documentation out there from others on the proper configuration.
 
Bingo!

You can absolutely run Pi-Hole off a VM. My Pi-hole server is bare metal but it is only taking up 317MiB of RAM on Ubuntu 22.04.

Once you get it up and running you will see visions of cell phones and iPad's connecting to a home based VPN for filtering and security when away from the mother ship...

Your poor kids though...no pr0n anywhere! ;)

I joke though. I already filter that shit and the eldest of my three kids is 10! LOL

And when your kids get phones, install ATAK and run your own instance on a home VM. 👍
 
TAK is the architecture, the network in your use case would be commercial of course ;). Setting up your own certificates to build your "team" is pretty straightforward, particularly if you have an accessible surface on your home stack, but I guess you could spin up an AWS instance as well for periodic use (eg going to Disneyland or something).
 
TAK is the architecture, the network in your use case would be commercial of course ;). Setting up your own certificates to build your "team" is pretty straightforward, particularly if you have an accessible surface on your home stack, but I guess you could spin up an AWS instance as well for periodic use (eg going to Disneyland or something).

TAK looks interesting, but you know I've got enough self hosted stuff already, and its missing things that I'd like to have for management and monitoring. For the kids phones, when they get them, I've been keeping an eye on several of the paid services. Bark right now seems to be my prefference when I get there.
 
Back
Top