Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

In general it's best practice to leave unused ports on managed switches in an admin down/shut state until something you know is connected. Or live, but in a quarantine VLAN.

Your idea, however, is not totally uncommon to have a raspbery pi sized device at an offsite location, specifically not plugged into any sort of UPS, which is monitored by various alerting systems. In addition to the alerts that one should get during a grid power failure event from managed UPS and automated generator transfer switch systems, the disappearance of your "UPS canary" can indicate that something is going on at an unattended site.



My college used to do similar. If you did not register your MAC address, you would be DHCP assigned into a walled-garden IP block.

We found we could run an IP scanner on the authorized subnet (from a computer with a whitelisted MAC), and find the unused IPs, and just set those statically for 'visitors'.

No need to register any more MAC addresses.


I doubt they were very concerned with you or your friends. 80/20 solutions.


Only had problems when a classmate was running routed.

Oh, and all authorized IPs were in a public address space.


Out of curiosity, you couldn’t just guess them based on knowing a couple? Or do people assigning them in some fashion that isn’t consecutive within the block?


yeah, definitely not consecutive.


You simply weren't that much of a concern. DHCP snooping takes care of that problem quite well.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: