Local Network Security

The cluster discusses whether private or local networks can be trusted or should be treated as untrusted like the internet, emphasizing the need for firewalls, VLANs, isolation, and zero-trust practices to secure devices and appliances.

📉 Falling 0.5x Security
4,600
Comments
19
Years Active
5
Top Authors
#6377
Topic ID

Activity Over Time

2008
12
2009
18
2010
42
2011
59
2012
66
2013
135
2014
129
2015
196
2016
261
2017
293
2018
314
2019
376
2020
426
2021
479
2022
485
2023
410
2024
458
2025
409
2026
32

Keywords

LAN ISP IT IMHO lightreading.com AirPlay SCIF VLAN TCP IP network firewall security internet lan access devices gateway router trust

Sample Comments

Zambyte Dec 16, 2025 View on HN

It may still be sensible if you only expose it to private networks.

ouid Jul 15, 2017 View on HN

You can network things without exposing them to the world.

hdgvhicv Dec 20, 2025 View on HN

Don’t put it on a network, but also don’t allow it to reach an untrusted network.

fulafel Aug 28, 2019 View on HN

If you're trusting the network to be "secure", you're doing it wrong.

StreamBright May 30, 2022 View on HN

Because of security. You do not know how exploitable the setup is. There were instances when these appliances connected to open Wifis and called home. Imagine same but attacker doing a drive by with open Wifi.

wladimir Jun 22, 2011 View on HN

Probably. I think part of his point is that these days it's very hard to have networks completely isolated from the internet. If there is only one host connected to both the internet (or a network that connects to it) and that proprietary network, it can act as gateway when compromised and unleash mayhem.

How is this a problem? Every network interface should be treated as public, meaning you must use encryption and firewall rules.

lmm Jan 9, 2024 View on HN

It shouldn't be. Treat the network as public, require credentials for any access whether it comes from inside or outside.

jandrewrogers Sep 9, 2024 View on HN

This is just bad security practice. You cannot trust the internal network, so many companies have been abused following this principle. You have to allow for the possibility that your neighbors are hostile.

tym0 Nov 30, 2016 View on HN

Isn't it a bit overkill? it's not like you can access them from the internet if they're on the local network. No?