OPNsense Home Network Security
WAN/LAN policy, DNSSEC, Quad9 DNS-over-TLS, DNS bypass blocking, CrowdSec, DHCP/local DNS, and sanitized operational notes.
Command Deck
Case Files
WAN/LAN policy, DNSSEC, Quad9 DNS-over-TLS, DNS bypass blocking, CrowdSec, DHCP/local DNS, and sanitized operational notes.
Graph-based Entra ID device hygiene workflow that checks sign-in context before treating a device as abandoned.
Active Directory review for stale objects, risky group leftovers, non-expiring passwords, and aging service accounts.
Read-only checks across Windows Scheduled Tasks, Linux cron, and systemd timers for forgotten operational risk.
Extension risk review for permissions, manifest signals, age, and host access.
Authorized assessment notes focused on evidence, impact, and clear remediation for an AI chatbot workflow.
Method
Slow down enough to know what is evidence, what is assumption, and what still needs proof.
Prefer reversible checks, read-only review, and documented steps before touching production-like systems.
Notes should help another analyst understand the why, the finding, and the next move without guessing.
Embryology trained timing, chain-of-custody thinking, and pressure discipline. Never panic. Panic burns signal.