Something that seemed like a fun idea at the time turned out to be an interesting challenge. There is documentation online that show you some basics around FreeRADIUS, FreeIPA, and WiFi authentication. However, most of it is outdated as it expects an NT Hash on user objects. There are a few pages about EAP-TLS authentication, but nothing fully detailed. In fact, there are some documentation pages at Red Hat’s website around this idea, which tells me someone has done it before.
[Read More]IPA: Using it for external DNS (the awkward way)
I’ve been in the process of redoing my IPA domain at home. I decided that I wanted a new domain while not changing ID’s, but also allowing me to control some DNS domains that are external in the process.
Traditionally, I have managed some domains with IPA while guaranteeing that some are available externally and that if my IPA servers were down during maintenance, bind on my AlmaLinux router would still serve DNS for my network. This worked for the most part, actually, though I only had that one name server that was known/usable. (You can imagine what happens when the one and only name server for a domain stops responding to requests.)
[Read More]Mikrotik: A new adventure in the networking world
Recently, my HP ProCurve switch decided to die. It was one of those situations where it didn’t make sense to try to repair it. However, this caused my entire home network to go down, so I had to plug the things that I could directly into my Linux router/lab box instead. Now normally, I’d be able to get another ProCurve from my father, as he used to have access to pallets of them. However, this is no longer the case, so I had to figure out what I wanted to do instead.
[Read More]Welcome
More to come.