From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-pl1-x62e.google.com (mail-pl1-x62e.google.com [IPv6:2607:f8b0:4864:20::62e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by lists.bufferbloat.net (Postfix) with ESMTPS id 5D3CB3CB37 for ; Sat, 15 Mar 2025 14:49:28 -0400 (EDT) Received: by mail-pl1-x62e.google.com with SMTP id d9443c01a7336-223fd89d036so63245905ad.1 for ; Sat, 15 Mar 2025 11:49:28 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=stonescry-com.20230601.gappssmtp.com; s=20230601; t=1742064567; x=1742669367; darn=lists.bufferbloat.net; h=message-id:in-reply-to:to:references:date:subject:mime-version :content-transfer-encoding:from:from:to:cc:subject:date:message-id :reply-to; bh=5bsgHi6+zGr+jj3Rvo3lvUARbKM3MwYG5Zp3wNM1bXk=; b=1RZhDg99oN7ILrmgdMg3rBFJrMn+X36n49xGCEt/VpuSNW8qc1VtQhfFTNDcdrBWVe BDJ7uloqlbQeEtUZ6M0IGp+ucwsPDqK8Qm9tHxwpILMSiY0N7/4ZWClFHkddVM1+7Fa8 uhNnOoEJsJk18P97AUEdAN3NsmJYfXNrihPS4ElOBgAYN67hGJqcUAd94yT7leFEVecC gqS1zNk5Qmf81wmQ+iv3rLs+f/EV2dx/JWCECSvG6gY7a/WO7sjgCHVRMj/y1Z97WxtL 0hGURcvXYozIH6+zVlGj3EoWs2Cu1vkE8xWSZ7E6XaKPmOJjJV0PuDbf6CuViSKhTAU/ icGA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1742064567; x=1742669367; h=message-id:in-reply-to:to:references:date:subject:mime-version :content-transfer-encoding:from:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=5bsgHi6+zGr+jj3Rvo3lvUARbKM3MwYG5Zp3wNM1bXk=; b=sKiXjJXwfCthm2IWwh6NJvobAPJ5UJkobvUwHXmgzvPSeCFSCwHFwoUhaHWJroBxy7 ymehAY/ArEsm2R7sh0X6HXdCYjiyZLpvvJK2Hu2LCHJl8BxnoK5agKbzewOnnqtkD69l pU2EHUK31BYISrPpEMnVnx3s85YrtOuBbWbn0L4pg2k+ITkmRmos3XyS25Dxt50Q7fPW ohVB7NvgEEf7pTKQgHN0s5BqalbgL7KAy5r2zAByXvdJm/6OQt/RFCLEgdkS1E9Mj2nI I+XoQRfj2Nd0w1g4iavbH452yWzCgFn16etmHXLK6mdMTYjrwaDSa5U+Y8wBQkd4KhAN vaOQ== X-Gm-Message-State: AOJu0YyU0daNKUJsdjmEeRG8SJp/yi1Tg3tP03czweYnBNAqecjXI9/w XEpvP+ZZl0ioc9NtZTTyTQAPg8JwGUYMqP8zuq2Rq58nypaY5DVVKxnRNZi44C4hEnEPfxufmor W X-Gm-Gg: ASbGncvnLHchmoGUGfyqdavgI3SfSHExgx7aw4zkWwUUnDlThUCODJxMp95tBVUCsyN Ven8Jle5sUYzUqpPuwGEhm9XHZ0AanFusas7Zb4p9M28zPBZFF4NsUQxzv1BPAl0TEMUfUKx1OR qiD063VypA54K3aRiSwoDSTfUWjwO1Gxx+B0BwHIuw/nXj/Ac6l3jPH/zYzRzCH7V6rbRjRG2G1 GhDVoEGQQafaVc6Kv0V3PBistGC9WJQ5IhT6UcPeNw7aD6CnZ0C39YgEjMUZjn2L9CU2muIT/Om /RDgrPItlToSeBRnwwZgz7HPEfk6taTxwZILNeqqV2s2eZLEQhV/ze/5yYkB4r0cBOBa8XLFIg= = X-Google-Smtp-Source: AGHT+IFvH72DwbOBn2bZLrlLX0IpRDjghAYYECnoCvlRpx+MeYkEEmJ8iRlqCvMScU+4q2mL3upapA== X-Received: by 2002:a05:6a21:62c8:b0:1f5:92ac:d6a1 with SMTP id adf61e73a8af0-1f5c10fd57amr9045067637.4.1742064567385; Sat, 15 Mar 2025 11:49:27 -0700 (PDT) Received: from smtpclient.apple ([2603:3024:1743:7100:b1ee:fa82:735f:4092]) by smtp.gmail.com with ESMTPSA id d2e1a72fcca58-737116af372sm4732712b3a.160.2025.03.15.11.49.26 for (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Sat, 15 Mar 2025 11:49:26 -0700 (PDT) From: Daniel Ezell Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3826.400.131.1.6\)) Date: Sat, 15 Mar 2025 11:49:15 -0700 References: <55d2836a4fe4c6cf9e2b4d953b62f6c62f0e73c3.camel@tara.sh> <05c501db9526$db40bb30$91c23190$@alum.mit.edu> To: =?utf-8?Q?Network_Neutrality_is_back!_Let=C2=B4s_make_the_technical_as?= =?utf-8?Q?pects_heard_this_time!?= In-Reply-To: Message-Id: X-Mailer: Apple Mail (2.3826.400.131.1.6) Subject: Re: [NNagain] FCC - delete, delete, delete X-BeenThere: nnagain@lists.bufferbloat.net X-Mailman-Version: 2.1.20 Precedence: list List-Id: =?utf-8?q?Network_Neutrality_is_back!_Let=C2=B4s_make_the_technical_aspects_heard_this_time!?= List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 15 Mar 2025 18:49:28 -0000 This is one of the most helpful posts on this list ever. I appreciate = the whole scope of the discussion, but from time to time you guys drop a = gem of helpful advice for my real-world needs. Nothing may ever top = Dave=E2=80=99s 2021 email with the crontab script for updating OpenWrt, = but this will certainly be a reference for me as I prepare my home for = the upcoming revelation of 10G Sonic Fiber later this year. Thank you = Bob, and thank you all.=20 Daniel Ezell https://chronos.academy > On Mar 15, 2025, at 11:16=E2=80=AFAM, Robert McMahon via Nnagain = wrote: >=20 >>=20 >> In case it's not clear. I am NOT happy with how device manufacturers = ship old >> code and never update it. >>=20 >=20 > I was unhappy about my home network and my paying job is to provide > components for such. >=20 > My home network wasn't resilient enough to carry entertainment, > productivity (including distance learning) and medical traffic. >=20 > The fixes so far have been: >=20 > o) Don't use an all in one AP anywhere, just use it for wireless = bridging > o) Use a fronthaul architecture (2.5G - will go to 100G when Fi-Wi is = ready) > o) Use a dedicated firewall & dhcp server with AQM such as fq_codel (I > use a protectcli vault) > o) Connect the APs (4 for me in 100 sq ft) configured in bridge mode > and optimize spacetime, allow for proper RF overlap - not too much, > not too little, but just right like the story says. > o) Use AP's that support the 6G band > o) Use keep connect devices to detect AP failures and power cycle them > (hammer approach) > o) Use separate ethernet switches where 802.3 switching is needed > (don't use the AP integrated switches, they go down per the crappy > gateway sw you're likely talking about) > o) Implement DHCP guard to protect against rogue DHCP servers >=20 > Then for monitoring > o) Install rpi 5bs with INTC BE200 and pcie Wi-Fi adapters in the > rooms that need monitoring > o) Install kismet and integrate with kismet to monitor > o) Turn on firewall & WAN port monitoring services >=20 > Only access to devices is ssh with encryption keys, and configure ssh > passwordless access. >=20 > Now, my family can be entertained, do their work and learning, and use > their medical instruments with high in-home reliability. >=20 > It's a thankless job we Dads must do. The home frustration level goes > way down and the complaints of "Dad, the internet isn't working again" > have gone away - except for when the OSP goes down. The OSP provider > tends to send information to me when that happens so my family can > work around it. >=20 > Bob > = ______________________= _________________________ > Nnagain mailing list > Nnagain@lists.bufferbloat.net > https://lists.bufferbloat.net/listinfo/nnagain