Lawrence Systems

Lawrence Systems

In-depth tutorials, discussions on network engineering, security, and technology solutions.

Lawrence Systems offers a look at how we run our company, the products we use and solutions we provide for our clients. We discuss and create tutorials for firewalls, storage solutions, MSP tools, security tools and open source topics. We do a live show every Thursday where we engage with our audience and have some laughs about working in the IT industry.

Shipping Address:
14140 Pennsylvania Rd.
Southgate MI, 48195

Content Creation Ethics and Guidelines can be found here:
www.lawrencesystems.com/content-ethics/

The Future of TrueNAS...

The Future of TrueNAS...

Пікірлер

  • @cyberbud
    @cyberbud11 сағат бұрын

    Followed everything, worked well, but when I restrict one use to connect only to specific network, it loses internet. If I assign any permission, then Internet works. How to fix that ?

  • @georgepremium4541
    @georgepremium454111 сағат бұрын

    do you know if the UDM pro has a build in balancer for connecting another wan internet source in order to have cumulative speed ? thanks

  • @v6transplant
    @v6transplant13 сағат бұрын

    Great video, agreed... internet gold, genius use of the tags feature, thank you! Got stuck at timestamp 10:39 where the "translation" address was not selected before saved. However, at time stamp 11:51 the "NAT Address" field is set to "PIA_SWISS address" so he must of gone back and corrected it, and clipped the video. Just a fyi, if anyone else struggled for a bit on this. As of the date of the message below, wireguard config not available for pfsense using PIA: ========================================================================= May 13, 2024, 1:07 PM GMT+8: Thank you for reaching out to Private Internet Access Support. I understand that you wanted to know how you can set up Wireguard on your PFSense. Allow me to assist. Regarding your inquiry about the WireGuard file, I regret to inform you that we currently do not have a configuration file tailored for router usage. Our available configuration options are exclusively designed for OpenVPN. As a result, we are unable to provide the necessary files for setting up WireGuard, and there are no immediate plans to introduce future. No worries! Your opinions matter to us, and your feedback is used to improve how we work and ensure we deliver a consistently high-quality service. We'll pass this on to our feature request. I trust this provides clarity on the matter. Should you require further assistance or have any additional questions, please don't hesitate to let me know. Regards, Private Internet Access Support =========================================================================

  • @AcidAlexx
    @AcidAlexx13 сағат бұрын

    Towards the end of the video I tried to vlan hop as well. Maybe they patched it? I can't ping the IP or get to the web interface configuration page like you did on port 8 with your laptop.

  • @grant_HH
    @grant_HH16 сағат бұрын

    Looking at the UI and the shiny bits. it looks a lot more user friendly that wireguard. Would this be usable for remote access to a small home lab setup or is it complete overkill?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS12 сағат бұрын

    Isn't the point of a home lab to have a place that can be overkill?

  • @grant_HH
    @grant_HH12 сағат бұрын

    @@LAWRENCESYSTEMS I guess 🤣

  • @jyothishkumar3098
    @jyothishkumar309817 сағат бұрын

    Netbird's Android app is a little buggy (from my experience prior to Aug 2023). But it works and is cool.

  • @IntenseGrid
    @IntenseGrid18 сағат бұрын

    Several RAIDs have a hot spare, (or cool by powering down the drive). I would like to have a cold spare for my zpool that gets automatically used so resilvering can kick off without me knowing a thing. I realize that this is sometimes dangerous because we don't know what killed the drive, and may kill another one while resilvering, but most of the time, drives themselves are the problem. Doez ZFS support the hot or cold spare concept?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS17 сағат бұрын

    Yes, you can have a hot spare.

  • @xavierbernard4403
    @xavierbernard440318 сағат бұрын

    the combination of both is also a good opportunity, advanced functions of the pfsense firewall, in particular for the VPN and Wireguard functions...and the entire UI part of Unifi for the advanced management of switches, access points and other equipment of the brand.....great job anyway !

  • @AdrianBan04
    @AdrianBan0418 сағат бұрын

    I'm wondering if the new FS RJ45 SFP+ module that says the power is less than 1.8W: SFP-10G-T-100. Do you have any of these SFPs to test them? I'm interested especially for the temperature. I have a Zyxel XMG1915-10E switch which performs very well with optical SFP on 10GbE, but I want to use my RJ45 infrastructure. Because is a passive cooling switch I'm looking for low power SFP+.

  • @EarthStarz
    @EarthStarz21 сағат бұрын

    Awesome video, but if you just use pure wireguard, you don't need any overlays

  • @blitzio
    @blitzio23 сағат бұрын

    This is insanely cool, absolutely nerding out.

  • @blitzio
    @blitzioКүн бұрын

    Thanks for the video Tom, sorry for the basic question but what is it about devices that cost so much additional $? And to be clear this is for Unifi Devices not client devices right? Thanks again!

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS17 сағат бұрын

    I don't understand the question.

  • @blitzio
    @blitzio15 сағат бұрын

    @@LAWRENCESYSTEMS Thanks for the quick response, Tom! To clarify, I'm trying to understand why adding more UniFi devices to a network increases costs significantly. Is this due to the additional network management overhead, hardware requirements, or something else? Essentially, I'm curious about what factors contribute to the increased expense when scaling up the number of devices on a UniFi network. Thanks for helping me understand this better!

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS13 сағат бұрын

    @@blitzio Yes, each individual device talks to the controller which is why it scales that way.

  • @michelangelop3923
    @michelangelop3923Күн бұрын

    Thank you for your video Lawrence! Im migrating my lab from esxi to xcp-ng and i knew that you eould have a helpful video for xcp-ng. Also, cicada 1337 reference?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS17 сағат бұрын

    No, Leet (or "1337") is not a Cicada 3301 reference.

  • @Hanesy
    @HanesyКүн бұрын

    What i hate about wireguard is that you are unable to remote on linux from local network.

  • @notsrynot
    @notsrynotКүн бұрын

    Love these takes you do on this setups ❤

  • @JLT9150
    @JLT9150Күн бұрын

    This explanation, to ly understanding, seems at least incomplete. For this vulnerability to work the DHCP server also has to become the gateway. Know this vulnerability is extremely easy to execute on non authznticated networks like most public networks, many corporate networks and many private networks. However. This attack does require to be present on the network as the target which does introduce a challenge.

  • @fredresource2661
    @fredresource2661Күн бұрын

    Great vid! thanks

  • @macromaker
    @macromakerКүн бұрын

    Hello, is it still worth it in 2024? Thanks!

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS17 сағат бұрын

    nope

  • @macromaker
    @macromaker17 сағат бұрын

    @@LAWRENCESYSTEMS what would be a good option then?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS17 сағат бұрын

    @@macromaker I prefer pfsense.

  • @Healsofsteel
    @HealsofsteelКүн бұрын

    When will there be a 2.5 Gbit+ model of such thing? :(

  • @AgrartechnikHD
    @AgrartechnikHDКүн бұрын

    Great video, thanks! I was already able to successfully create the first backups with Synology. But when I want to restore folders and files, only folders are restored successfully. I get an error saying I don't have rights to restore the files. The user can create files manually without any problems. Do you have any idea what it is?

  • @Ecker00
    @Ecker00Күн бұрын

    Alright, that was actually crazy easy to setup. Converted from manually managed Wireguard, what a chore it's been...

  • @computersales
    @computersalesКүн бұрын

    I might be switching from core to scale to fix some problems I'm running into. Change is hard though.

  • @AmanuelRezzene
    @AmanuelRezzeneКүн бұрын

    hello I found about pfsense on your youtube channel for the first time. i have small office with 2 DSL modem one for internet connection and the other for vpn (remote desktop connection) to connect with head office to access ERP (Microsoft Dynamics SL), since we don't have a router we manually change the ip address and default gateway when ever we need to access internet or vpn (remote desktop connection) and it's very frustrating changing manually . After seeing your video on youtube about pfsense(software based router and firewall ) I decided to use pfsense as a router so that users can access both the internet and the VPN (for Remote Desktop Connection) without needing to change their IP addresses manually. This can be achieved by properly configuring the router to route traffic to the appropriate gateway based on the destination IP address or port number using policy-based routing (PBR), traffic is routed to different gateways based on the destination IP address. This means that users can access both the internet and the VPN without needing to change their IP addresses or perform any additional steps. I installed pfsense on my desktop computer with 3 NIC and I would greatly appreciate it if you could provide me with iformation on how to configure and set up the pfsense for my office based on my scenarios .

  • @RadhakrishnanMudliar
    @RadhakrishnanMudliar2 күн бұрын

    Does it have LACP LAG LAN aggregation ?

  • @DJDXD
    @DJDXD2 күн бұрын

    i love how the world of live sound and professional lighting leaks into the world of IT and server labs somehow 😅 (ADJ)

  • @TechySpeaking
    @TechySpeaking2 күн бұрын

    first

  • @StephenMcGregor1986
    @StephenMcGregor19862 күн бұрын

    static IP on my pfsense WAN = I'm safe yeah?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMSКүн бұрын

    Not really an issue there.

  • @wDave1337
    @wDave13372 күн бұрын

    Cool t-shirt 🐱

  • @svboxtel76
    @svboxtel762 күн бұрын

    Why no cold aisle containment?

  • @praetorxyn
    @praetorxyn2 күн бұрын

    I've been using Quad9 since I setup a pihole and it seems great.

  • @oishisakana
    @oishisakana2 күн бұрын

    I hate the unifi firewall rules ui/options.

  • @davidhenzler4817
    @davidhenzler48172 күн бұрын

    Nice explanation.... but slow down your delivery 10%

  • @user-rx4gw7gz9m
    @user-rx4gw7gz9m2 күн бұрын

    Can you automate the config/key backups?

  • @lucasrosa485
    @lucasrosa4852 күн бұрын

    Been running the zimaboard 832 as pfsense firewall for a couple of weeks and whenever I transfer a large file between networks the LAN interface stops responding and I have to reboot it. Have had to reboot it 3-5 times for no apparent reason as well because my network connectivity would suddenly stop working while doing everyday normal things such as watching youtube or browsing the web.

  • @aeiplanner
    @aeiplanner2 күн бұрын

    Great video Tom. One of the things that occurred to me right from the get go is the importance of data structure and how to organize all of the dependencies. I think you should do a video covering this topic in more detail and reasoning behind why you structure things a certain way.

  • @_maxt
    @_maxt2 күн бұрын

    "if you don't know what it is go ahead and read about it" would've been nice to get a 5 second explanation instead, i think.

  • @InsaiyanTech
    @InsaiyanTech2 күн бұрын

    Is this possible with NordVPN?

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS2 күн бұрын

    Not that I aware of

  • @InsaiyanTech
    @InsaiyanTech2 күн бұрын

    @@LAWRENCESYSTEMS dang its the vpn i have im not trying to have 2 vpns

  • @dorianphillips7714
    @dorianphillips77142 күн бұрын

    Thanks for explaining this. Great job!

  • @Abc-sl1nf
    @Abc-sl1nf2 күн бұрын

    Thx

  • @adamd4218
    @adamd42182 күн бұрын

    Thank thank you SOO much. I have been BEATING my head on this for hours. Missed the final step.

  • @adamd4218
    @adamd42182 күн бұрын

    Subscribed and liked. I've got to watch more of your videos for some steps to setup blocking. I have everything wide open. All my experience has been with sonicwall in the past. But I had a need for this netgate at a small 5 person office.

  • @bob_the_k5894
    @bob_the_k58943 күн бұрын

    I think my ISP broke my Protectli. I was still running + but they pulsed my router and i could no longer get to the internet. Looks like this method no longer works. There is only an option to upgrade over the net. I tried several times and always ended up with my old version of +. I tried to create a boot USB but the unit doesn't see USB as a valid drive. Trying to reorder boot devices in the bios and now the only device I see is BIWIN SSD. When it boots, it goes so far and then I end up at a mountroot> prompt. I did a cross reset - didn't help. I've been trying different things for hours nut no luck. Any ideas?

  • @bob_the_k5894
    @bob_the_k58943 күн бұрын

    CMOS reset, that is.

  • @djgaffey2009
    @djgaffey20093 күн бұрын

    great system for the basic/generic use home user I guess if you wanted to have something that is capable for connectivity but also have a decent vpn or routing rules I guess you could get a raspberri pi to do that part of your network for you if it allows you to set a static IP to the pi

  • @JWoelpl
    @JWoelpl3 күн бұрын

    Hello, wondweful tutorial! Does it work with multi-wan in load balance mode? If so how to configure the gateway?

  • @user-wu3us3kx2p
    @user-wu3us3kx2p3 күн бұрын

    One major difference. UniFi sucks you into their ecosystem. Like Apple. 😄

  • @bhakedevisuals7190
    @bhakedevisuals71903 күн бұрын

    This is well documented. Appreciated.