Jump to content
Main menu
Main menu
move to sidebar
hide
Navigation
Main page
Recent changes
Help about MediaWiki
FUTO
Search
Search
Appearance
Create account
Log in
Personal tools
Create account
Log in
Pages for logged out editors
learn more
Contributions
Talk
Editing
Introduction to a Self Managed Life: a 13 hour & 28 minute presentation by FUTO software
(section)
Main Page
Discussion
English
Read
Edit
Edit source
View history
Tools
Tools
move to sidebar
hide
Actions
Read
Edit
Edit source
View history
General
What links here
Related changes
Special pages
Page information
Appearance
move to sidebar
hide
Warning:
You are not logged in. Your IP address will be publicly visible if you make any edits. If you
log in
or
create an account
, your edits will be attributed to your username, along with other benefits.
Anti-spam check. Do
not
fill this in!
=== Decreasing Attack Surface with OpenVPN is a best practice === OpenVPN isn’t a hobby project coded by your cousin’s methhead roommate. This is used by everyone, from companies with more money than sense to just about anyone who doesn’t want their data plastered all over the internet: * Having '''''ONE''''' service open to the public rather than 10 means a smaller attack surface. * Having one service * OpenVPN is designed with one purpose in mind, a secure connection. * It is over 20 years old. * Commercial interests (aka people actually paying money for software that rely on it for their infrastructure, not ''[https://www.reddit.com/r/immich/comments/1codh0p/comment/l5rfpu7/ this guy)]'' use & rely on it. * There are more eyes on the code of OpenVPN than <code>hellanzb</code>. <gallery mode="packed-hover" heights=250 widths=400 perrow=2> File:lu55028jxaty_tmp_f3e2603c.png </gallery> '''Marketing wankery? …Kind of, but they’re not lying here.''' <gallery mode="packed-hover" heights=250 widths=400 perrow=2> File:lu55028jxaty_tmp_29f791ff.png </gallery> '''Is this 100% accurate? No.''' Are more people for whom millions of dollars rides on the security of their software using OpenVPN than hellanzb. Yes! Having a home server is cool. But the programs we’re talking about are used by [https://wiki.futo.org/index.php/FUTO:General_disclaimer 0.0001% of 0.000001%] of the world. OpenVPN can still have vulnerabilities; it isn’t perfect! But remember, in the world of network security, '''nothing is perfect!''' This isn’t about being perfect. It’s about controlling what we can control, and minimizing risk & attack surface every chance we can. A UFC fighter makes a better bodyguard than a mall cop, regardless of the fact that they’re equally useless against a bomb or a comet. This guide walks you through the process of setting up OpenVPN on '''pfSense'''. OpenVPN allows you to access your home network as if you were there. All of the services we want to use require having access to this network we are placing our server on, from anywhere. This setup will make sure that all traffic from the phone is routed through the VPN with no DNS leaks, which will be important for our adblocking-via-router section that comes after. <span id="setting-up-openvpn-within-pfsense-for-secure-access"></span>
Summary:
Please note that all contributions to FUTO may be edited, altered, or removed by other contributors. If you do not want your writing to be edited mercilessly, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource (see
FUTO:Copyrights
for details).
Do not submit copyrighted work without permission!
To protect the wiki against automated edit spam, we kindly ask you to solve the following hCaptcha:
Cancel
Editing help
(opens in new window)