Two entries that are one decision:
- Procure
ifrit, a second server for the isolated playground network.
- Build the playground — the deliberately-vulnerable range for practising
offensive work.
ADR-0007 splits the estate into a defensive side (the network the house depends
on) and an offensive range, and is explicit that the range "requires a second
machine that does not yet exist". ADR-0007:73-76 also defers ifrit's
isolation mechanism: physically separate, a dedicated VLAN with no route, or
virtualised — "not settled here … deferred deliberately".
That deferral is the real content of this issue. Everything else is a purchase.
The ordering constraint, from the roadmap
Build the playground — only after the main network is finished.
Which is the right call, and worth keeping visible: this repository started as a
place to practise security work and became the network the house depends on. A
broken experiment is a learning opportunity; a broken DHCP server is a domestic
incident. The range is the thing that reintroduces that risk, so it goes last
and it goes behind an isolation mechanism that has been decided in advance.
Related: whether VLAN 30 needs egress filtering is the same question asked from
the other side.
Tracked in docs/roadmap.md; filed as an issue so it has a place to be discussed and closed.
Two entries that are one decision:
ifrit, a second server for the isolated playground network.offensive work.
ADR-0007 splits the estate into a defensive side (the network the house depends
on) and an offensive range, and is explicit that the range "requires a second
machine that does not yet exist". ADR-0007:73-76 also defers
ifrit'sisolation mechanism: physically separate, a dedicated VLAN with no route, or
virtualised — "not settled here … deferred deliberately".
That deferral is the real content of this issue. Everything else is a purchase.
The ordering constraint, from the roadmap
Which is the right call, and worth keeping visible: this repository started as a
place to practise security work and became the network the house depends on. A
broken experiment is a learning opportunity; a broken DHCP server is a domestic
incident. The range is the thing that reintroduces that risk, so it goes last
and it goes behind an isolation mechanism that has been decided in advance.
Related: whether VLAN 30 needs egress filtering is the same question asked from
the other side.
Tracked in
docs/roadmap.md; filed as an issue so it has a place to be discussed and closed.