Home Lab Network Security! - vlans, firewall, micro-segmentation
One of the most important aspects of building out your home lab environmment is giving attention to your home network design. Network segmentation is a core component of securing your home lab network, segmenting traffic, and protecting your network resources. In the video we talk about how to properly design your network with VLANs, using a firewall to filter traffic from specific resources
Subscribe to the channel: https://www.youtube.com/channel/UCrxcWtpd1IGHG9RbD_9380A?sub_confirmation=1
My blog:
https://www.virtualizationhowto.com
_____________________________________________________
Social Media:
https://twitter.com/vspinmaster
LinkedIn:
https://www.linkedin.com/in/brandon-lee-vht/
Github:
https://github.com/brandonleegit
Introduction - 0:00
Talking about VLAN basics - 1:37
How many home lab networks are designed - 3:35
How an attacker can pivot in a un-segmented network - 4:43
Beginning the creation of VLANs - 5:36
Showing the existing VLANs on a switch - 6:01
Running the commands to create a new VLAN - 6:25
Configuring a switchport as an access port for the newly created VLAN - 7:15
Testing out connectvity between two PCs and seeing how VLANs work - 7:59
Testing connectivity with ping commands - 8:37
After adding the additonal port to the new VLAN - 9:25
Overview of a network design using multiple VLANs 9:54
Using firewall rules to filter traffic between VLANs - 11:44
Looking at firewall rules and associating those to different interfaces - 12:42
Adding a firewall rule for a particular interface and blocking traffic between VLANs - 12:59
Looking at micro-segmentation within a VLAN - 14:01
Limitations of firewall filtering - 14:27
Creating a layer 2 segment (logical switch) - 15:05
Looking at creating a distributed firewall rule - 15:31
Adding Active Directory to NSX Manager - 15:44
Thinking about the possibilities - 16:28
Covering the basics and wrapping up - 16:56
pfSense proxmox installation and configuration:
https://www.virtualizationhowto.com/2022/08/pfsense-proxmox-install-process-and-configuration/
pfSense VLAN to VLAN routing:
https://www.virtualizationhowto.com/2022/03/pfsense-vlan-to-vlan-routing-in-vmware-esxi/
Segment your network with pfSense:
https://www.virtualizationhowto.com/2022/03/segment-your-vmware-network-with-pfsense/
Enable VMware NSX-T distributed IDS configuration:
https://www.virtualizationhowto.com/2020/05/enable-vmware-nsx-t-3-0-distributed-ids-configuration/
Identity based firewall with VMware NSX-T:
https://www.virtualizationhowto.com/2022/03/identity-based-firewall-configuration-with-nsx-t-and-vsphere/