As the title says, I want to know the most paranoid security measures you've implemented in your homelab. I can think of SDN solutions with firewalls covering every interface, ACLs, locked-down/hardened OSes etc but not much beyond that. I'm wondering how deep this paranoia can go (and maybe even go down my own route too!).

Thanks!

you are viewing a single comment's thread
view the rest of the comments
[–] [S] 5 points 2 years ago (1 child)

Since you're running x86 for your router, do you actively prevent ME from trying to connect to the Internet?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 2 years ago (1 child)

    I am aware of the ME, but I can't really do anything about it. Current ARM SBCs are not suitable for a router/firewall (at least in my experience). I'm not that concerned about it though.

  • source
  • parent
  • hideshow 2 child comments