<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Gpon on Julien Mérieau</title><link>https://julien.merieau.ch/tags/gpon/</link><description>Recent content in Gpon on Julien Mérieau</description><generator>Hugo</generator><language>en-gb</language><lastBuildDate>Tue, 25 Aug 2026 14:57:33 +0200</lastBuildDate><atom:link href="https://julien.merieau.ch/tags/gpon/index.xml" rel="self" type="application/rss+xml"/><item><title>Seral - Part. 1 - Internet &amp; Firewall</title><link>https://julien.merieau.ch/posts/2025/01/seral-part.-1-internet-firewall/</link><pubDate>Sat, 25 Jan 2025 00:00:00 +0000</pubDate><guid>https://julien.merieau.ch/posts/2025/01/seral-part.-1-internet-firewall/</guid><description>&lt;p&gt;Seral&amp;rsquo;s first pillar is simple: &lt;strong&gt;take back your network equipment&lt;/strong&gt;.&lt;/p&gt;
&lt;p&gt;The router sits at the centre of a home network&amp;rsquo;s security. Every packet goes through it. It decides which ports are open, acts as the gateway to the internet, and does (or does not) protect personal data. It is the first line of defence.&lt;/p&gt;
&lt;p&gt;These days we have less and less control over that box. ISPs push their own routers, lock the MAC address, add custom authentication, and ship a pile of proprietary code. Hard to know what is actually running in there. And what confidence can you have in a router whose admin UI is sometimes reachable over Wi-Fi and rarely patched properly?&lt;/p&gt;</description></item><item><title>Seral - Part. 1a - OPNsense router 1-10 Gbps</title><link>https://julien.merieau.ch/posts/2025/01/seral-part.-1a-opnsense-router-1-10-gbps/</link><pubDate>Sat, 25 Jan 2025 00:00:00 +0000</pubDate><guid>https://julien.merieau.ch/posts/2025/01/seral-part.-1a-opnsense-router-1-10-gbps/</guid><description>&lt;aside class="prereq"&gt;
 &lt;p class="prereq-label"&gt;Prerequisites&lt;/p&gt;
 &lt;ul&gt;
&lt;li&gt;Fibre at 1–10 Gbps (Swisscom / green.ch style), &lt;strong&gt;or&lt;/strong&gt; an ISP box you can put in bridge mode&lt;/li&gt;
&lt;li&gt;USB stick, display, keyboard for the OPNsense install&lt;/li&gt;
&lt;li&gt;Optional: USB-TTL &lt;strong&gt;3.3 V&lt;/strong&gt; adapter and a soldering iron if you root the ONT&lt;/li&gt;
&lt;/ul&gt;

&lt;/aside&gt;

&lt;p&gt;This article covers building &lt;strong&gt;your own OPNsense router&lt;/strong&gt;, based on a &lt;strong&gt;Lenovo m720q&lt;/strong&gt; and a &lt;strong&gt;Nokia XS-010X-Q ONT&lt;/strong&gt;, for &lt;strong&gt;1 Gbps&lt;/strong&gt; fibre, with a path up to &lt;strong&gt;10 Gbps&lt;/strong&gt;.&lt;/p&gt;
&lt;h2 id="hardware"&gt;Hardware&lt;/h2&gt;
&lt;h4 id="fibre-connection"&gt;Fibre connection&lt;/h4&gt;
&lt;p&gt;First job: find a &lt;strong&gt;rootable GPON ONT&lt;/strong&gt;, i.e. a box you can actually take over.&lt;br&gt;
&lt;strong&gt;&lt;a href="https://hack-gpon.org/"&gt;hack-gpon.org&lt;/a&gt;&lt;/strong&gt; has a fairly complete list, plus tutorials and datasheets. Read them. It is a goldmine.&lt;/p&gt;</description></item></channel></rss>