My first blog series on headscale with traefik through podman quadlets was pretty well received on here. I’m just getting started with this blog, and thought the second topic I recently worked on might be popular in this crowd too: a lower resource method of centralizing logs for OPNSense with Grafana Loki (and Alloy) including geoIP!

  • Lem453@lemmy.ca
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 days ago

    Do you mind putting some screenshots of what the final dashboard looks like?

    Also, how much IO wear and tear does this put on a solid-state drive?

    • StarkZarn@infosec.pubOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 days ago

      I would love to if I had them! Haha. I’m working on the dashboard right now, which will be part two.

      I don’t have a great answer on the IOPS requirement, but I imagine it’s less than something based on elasticsearch/open search based on the reindexing. I’ll try and benchmark it if possible.

    • StarkZarn@infosec.pubOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      11 days ago

      Isn’t it the best? Somehow all the big log and aggregation stacks are java… Elk, graylog, wazuh…

    • StarkZarn@infosec.pubOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      12 days ago

      Certainly! Feel free to comment on any hardships, if I notice a glaring omission or something I’m happy to fix it. This is also a pretty new setup for me, so I’m still tweaking and working through what will become part 2 here in Grafana, currently.

  • neons@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 days ago

    Serious question:

    Why opensense over openwrt?

    What would I want that OpenWRT doesn’t give me? Is there any reason for me to switch?