Internal Projects: Site-to-Site Routing

One of the things we really wanted to focus on but was just a bit
outside of our knowledge was being able to route entire IPv6 subnets
to our project members in the form of a site-to-site tunnel. For a
while now, our project members have been making use of our services
directly on their devices on an as needed basis, which while do
offer such, that was never the intended purpose of the project.

The idea has always been to route out a subnet to be used on the
LAN side of a homelab router. We reached that milestone after
having a few days to sit down and crawl the OPNsense and WireGuard
documentation pages.

Last night, we finally figured out how to get WireGuard setup between
two routers, on different physical servers, and route a /64 subnet
across the tunnel. This has been one of our goals for the project and
we figured it out. Along with the better understanding of the peer
based connections in WireGuard, we should be able to start offering
fully routed subnets within a few days.

Just have to finish publishing the documentation internally for our
volunteers and project members to make use of.

Legacy OVPN Support

Our team has opted to bring back legacy OpenVPN support
for devices which do not support WireGuard properly.
With the latest updates to OPNsense, managing OVPN has become
a fair bit easier and we are able to offer NAT’d IPv4 and
IPv6 support with these connection profiles.

Network speeds over OVPN are much, much slower than our
WireGuard speeds. Just something to keep in mind if you
decide you need legacy connectivity.

If you need OVPN support for your homelab or older device,
reach out to our support desk and let them know.

Changes to ToS and NMP

Hey guys,
There have been some changes to our Terms of Service and our
Network Management Policy. Take some time to read through them
and make sure you are up to date with the terms, as they apply
to all project members and end users.

Perhaps the biggest change, however, is that ‘free weekends’ are
no longer a thing. The new accounting system doesn’t have a way
to disable traffic counting on the weekends and as a result, all
subnet traffic is counted through out the week. We are looking for
a way to bring this feature back, but it might be a while.

Unexpected downtime…

Hey guys,
We had some unexpected downtime tonight that started around 1700EST
and lasted for about two hours. We started seeing disk errors in
the system log of the hypervisor followed by VMs crashing very soon
after. We shutdown the physical server to prevent further damage to
our running VMs, but the damage to our CFX and Minecraft servers was
already done.

We do have backups made nightly during the weekdays and had to roll
these two machines back to get them playable again. The root of the
problem was a bad SATA connector that was causing the disk those
machines live on to drop to 1.5Gbps and then fall off the bus.

The issue appears to have been resolved with the help of the data
center and having our backups in place. We apologize for the interruption
in service tonight.