this post was submitted on 22 Nov 2023
1 points (100.0% liked)

Homelab

22 readers
1 users here now

Rules

founded 1 year ago
MODERATORS
 

So i am going to re-ip some devices in my network and am looking to make a proper OOB network. For things lke iDrac, ipmi, ups interface, and thinking about the proxmox interface as well.

on my L3 switch ill create the access list for certain machines on my network to gain access to that subnet and nothing else. but then i was thinking about it. if i do that then they will not have any internet access either. which is fine and what i ultimately want. but then how do you manage BIOS, firmware, and any general updates etc?

how are you guys/gals setting up the oob? are you even using one?

top 3 comments
sorted by: hot top controversial new old
[–] lamesauce00@alien.top 1 points 1 year ago

I just did a separate VLAN for my OOB devices and control the traffic through my pfsense firewall.

[–] kaiwulf@alien.top 1 points 1 year ago

I run a completely separate switch for OOB, a separate vRouter in the firewall, with rules to allow those devices access to their update servers and nothing else

[–] MasterCommander300@alien.top 1 points 1 year ago

You could always open up internet for when you need to do updates. I cant imagine youll be letting firmwares update on its own 🤡