Unattended remote access utility/ computer
-
@Pete-S said in Unattended remote access utility/ computer:
It's more transparent and the one in control of the firewall can decide what you are able to access. I'm thinking liability and what not.
How does that really differ? In one case the IT that manages the firewall determines the access, but without security planning ahead of time (presumably.) And in the other the same IT person that can manage the remote access device can determine the remote access. Lower liability with the RP because it's more secure as an approach.
In either case, if you do it without permission, it's a problem. In both cases if you do it with permission, it is not.
-
@Pete-S said in Unattended remote access utility/ computer:
If you are hell bent on the idea of bypassing perimeter security, why not use something like an edgerouter? Set it up as a router on a stick and have it dial out.
That's better but, what benefit does that bring? More complexity, making them potentially change their router strategy, more effort, much much much much more difficult to keep secure. Anything that uses "use a VPN" as an option, even one that is "reach out" requires a ton of work (and trust) to ensure it is not creating extra exposure. VPNs are SO dangerous under normal conditions and usages.
The reason to do the RP method is security and good practice. All other things like following process, having permission, telling IT, etc. should be treated the same across the board. And both can have MFA and all that. And yes, in theory, you can make a VPN locked down to do nothing but allow an RDP connection to a single host and ... and ... and... if you do it all well enough, all you've done, is basically rebuilt the RP/MeshCentral solution. At no point do you gain an advantage, you only carry the risk that you won't totally recreate the solution, in the hopes of a break even.
Why NOT do the better, more secure, best practice method that's nearly zero effort right from the beginning. Why start with something complex, probably expensive, and risky only to hope you don't get anything wrong for no advantage?
-
@ElecEng said in Unattended remote access utility/ computer:
I have been using these recently and love them plus they give you BIOS-level access and virtual media with no limitations.
This too:
https://www.lantronix.com/products/lantronix-spider/ -
@JasGot said in Unattended remote access utility/ computer:
@ElecEng said in Unattended remote access utility/ computer:
I have been using these recently and love them plus they give you BIOS-level access and virtual media with no limitations.
This too:
https://www.lantronix.com/products/lantronix-spider/Same issues though, no computer to access and would need one for every machine if they existed.
-
-
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
-
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
-
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Agreed!
-
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
-
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
-
@travisdh1 said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
If you run a lean Debian similar to what RP has that people typically run on an RP4 on the Celerons, it's .... similar.
-
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
If you run a lean Debian similar to what RP has that people typically run on an RP4 on the Celerons, it's .... similar.
Right - why would you run windows on this? just because it's Intel? Run some 'nix thing like you would on the RPi and it should be faster than the RPi.
-
@travisdh1 said in Unattended remote access utility/ computer:
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
We replaced RPi4 with Celeron J4005 (Intel NUC), and it was significantly faster.
They were both on Linux, displaying live web pages on 2 monitors, and RPi was strugling.
J4005 is very similar to mentioned N4020 -
@Dashrender said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
If you run a lean Debian similar to what RP has that people typically run on an RP4 on the Celerons, it's .... similar.
Right - why would you run windows on this? just because it's Intel? Run some 'nix thing like you would on the RPi and it should be faster than the RPi.
Exactly, apples to apples it should be like 20% faster at least, maybe more. Now, it also costs more, so factor that.
-
@scottalanmiller said in Unattended remote access utility/ computer:
@Dashrender said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
If you run a lean Debian similar to what RP has that people typically run on an RP4 on the Celerons, it's .... similar.
Right - why would you run windows on this? just because it's Intel? Run some 'nix thing like you would on the RPi and it should be faster than the RPi.
Exactly, apples to apples it should be like 20% faster at least, maybe more. Now, it also costs more, so factor that.
But typically available right now, unlike the Pi4
-
@JaredBusch said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@Dashrender said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@travisdh1 said in Unattended remote access utility/ computer:
@AdamF said in Unattended remote access utility/ computer:
Great video. Thanks for that. Your assumption is correct. There are no PCs or servers on this network, just other networking equipment. I like the idea of the Pi and Mesh Central. I finally was able to find one and have it on order. Time to setup a mesh central vm.
I also found this as an option as well https://www.amazon.com/gp/product/B082VVCFNG/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&th=1
Not too badly priced either. But I am going with the Pi.
I'm leery about anything running a Celeron J or N series CPU, a Pi is probably going to perform better.
Actually they are probably faster than the Pi. But I like the Pi more.
Not in my experience, but I've also never run Windows on a Pi.
If you run a lean Debian similar to what RP has that people typically run on an RP4 on the Celerons, it's .... similar.
Right - why would you run windows on this? just because it's Intel? Run some 'nix thing like you would on the RPi and it should be faster than the RPi.
Exactly, apples to apples it should be like 20% faster at least, maybe more. Now, it also costs more, so factor that.
But typically available right now, unlike the Pi4
For sure, that's a big deal. Bird in the hand, these days.
-
I found 2 at Best buy online. Now they are out of stock already. Crazy times.
-
@scottalanmiller said in Unattended remote access utility/ computer:
@JasGot said in Unattended remote access utility/ computer:
@ElecEng said in Unattended remote access utility/ computer:
I have been using these recently and love them plus they give you BIOS-level access and virtual media with no limitations.
This too:
https://www.lantronix.com/products/lantronix-spider/Same issues though, no computer to access and would need one for every machine if they existed.
No. You install it on one computer and then remote (ie; RDP) into all of the others. I only pointed it out because it gives you access to the bios and pre-boot screens like tiny pilot, which can be handy.
-
@JasGot said in Unattended remote access utility/ computer:
@scottalanmiller said in Unattended remote access utility/ computer:
@JasGot said in Unattended remote access utility/ computer:
@ElecEng said in Unattended remote access utility/ computer:
I have been using these recently and love them plus they give you BIOS-level access and virtual media with no limitations.
This too:
https://www.lantronix.com/products/lantronix-spider/Same issues though, no computer to access and would need one for every machine if they existed.
No. You install it on one computer and then remote (ie; RDP) into all of the others. I only pointed it out because it gives you access to the bios and pre-boot screens like tiny pilot, which can be handy.
They are handy, for sure. I was just pointing out that in order to get those features everywhere, you have to deploy those everywhere.