Comment on How do I avoid becoming one with the botnet?
CompactFlax@discuss.tchncs.de 1 week ago
I have snort running on my firewall monitoring my LAN port. Does it help? No idea. Does it make me feel good because it blocks stuff? Yup. It does enforce IP blacklists from a feed, so it’s a start.
Keeping an loose eye on things and watching for extra network traffic, cpu, ram usage is what I do.
irmadlad@lemmy.world 1 week ago
I run the Suricata package in pFsense which I would say is kissing cousins to Snort. It actually does work very well. In fact, on occasion, too well. I’d rather that that just having my jimmy hanging out in traffic. I also employ the pfblockerng’s massive feed lists, and Tailscale packages on the standalone pFsense firewall, and a VPN on all devices. Network so tight they call it virgin. LOL Not really, but I tend to go a bit overboard on security measures.