
Redirect local ports with firewalld
Redirecting local ports with iptables directly isn’t too difficult, but can we use firewalld to get the same result? 🧱

Redirecting local ports with iptables directly isn’t too difficult, but can we use firewalld to get the same result? 🧱

Segment your home network easily with a VLAN on a Mikrotik router. 🖥️
Mikrotik routers and switches serve as efficient network devices, but they know other tricks, too. Monitor your UPS with a Mikrotik device and query it via SNMP. 🔌
Tailscale exit nodes allow you to route your traffic through nearly any system in your tailnet. Learn how to build an exit node using firewalld. 🕳️

Get systems online quickly or rescue a broken system by PXE booting from netboot.xyz using a Mikrotik router. 🛠

Tailscale provides a handy private network mesh across multiple devices but it needs security just like any other network. 🕵

Sometimes network interface autonegotiation doesn’t work as well as it should. Luckily, you can fix it with systemd-networkd. 🔧

Use the new DHCPv6 prefix delegation features in systemd-networkd to make IPv6 subnetting easy! 🎉
...

...
...

...

...

...
...

...

...
...

...
...

...

...

...
...
...
...
...
...
...
...
...
...
...
...
...
...
Mikrotik firewalls have been good to me over the years and they work well for multiple purposes. Creating an OpenVPN server on the device can allow you to connect into your local network when you’re on the road or protect your traffic when you’re using untrusted networks. Although Miktrotik’s implementation isn’t terribly robust (TCP only, client cert auth is wonky), it works quite well for most users. I’ll walk you through the process from importing certificates through testing it out with a client. ...
There are some situations where you want to do the opposite of creating a wireless hotspot and you want to share a wireless connection to an ethernet connection. For example, if you’re at a hotel that offers only WiFi internet access, you could share that connection to an ethernet switch and plug in more devices. Also, you could get online with your wireless connection and create a small NAT network to test a network device without mangling your home network. ...
...
...
...
...
...
...
...
...
...
...
...
...