All IoT devices Bricked after Insteon shuts down?
twitter.com
twitter.com
(highly recommend using home assistant and getting everything onto as much local control as possible, both to own your own data, and to know you aren't dependent on a phone home server being shut off. It can be a bit of a heavy list initially, but getting easier everyday, and onboarding is way quicker than 2-3 years ago)
HA acts as a HomeKit bridge, meaning that as long as I get a thing working with HA, I can control it from my Apple ecosystem.
Do I need it? No. But it's extremely helpful and still meets my goals around data ownership and no dependency on an Internet connection to turn off the lights before bed.
Nothing wrong with removing information about yourself in some random online profile. When the only thing that is coming from that is angry people yelling at you, I'd just as soon do the same thing. I'd get awefully bored of repeatedly pasting something like, "Per a legal agreement I have with my former employer I cannot comment on this issue," and then blocking the sender for their inevitable rage-reply.
Better to just let the rage subside and then quietly add that back in your profile so you can tell a good story about an acquisition gone wrong in a future job interview.
Enough of these ephemeral systems that becomes e-waste as soon as the company behind it goes bankrupt.
That’s simply untrue, Cory.
I have a couple dozen Insteon switches, all controlled locally (by a non-Insteon controller from Universal Devices, which way predates the Insteon hub) and everything works exactly the same as it has for the last dozen years.
People who bought the Insteon hub and have no local control are a bit screwed, and if / when my interface module dies, I’ll be screwed too. But all my switches will still have local control.
As long as no zdays for Insteon hub show up. In that case, you.f**ked(goat.tied).
It seems that you should not factory reset Insteon switches, as a call to home server is a part of the startup.
The scrubbing of the LinkedIn accounts was a classy touch.
Uh, don't make the device phone home? Make the phone home optional? Don't put software in it in the first place? There are many ways for devices to continue working long after the manufacturer is dead and forgotten.
Something has become clear to me: Since the IoT industry refuses to regulate itself, we need environmental legislation to regulate this industry.
Factory resets are a non-issue with my switches.
> If you are a spurned Insteon user seeking to move your hardware to some other system, whatever you do, don't factory-reset your Insteon Hub. Apparently, contacting Insteon's servers is a key step of the initial setup, so this may now fail.
Seems like you're fine until your hub dies, but you'll have to switch everything once it does.
My switches don't communicate with the outside world and as long as I have a functional PLM connected to the ISY, I'll be able to control them. There are probably ways to do that without a PLM too.
I will likely move to something else soonish though, likely Lutron. But I want to be clear that for those who have Insteon and have never relied on the Insteon hub, they can keep chugging along for now.
In fact, with Insteon, you can even set up and link devices manually without any hub at all, using the "set" buttons on the devices. The scenes and links and triggers are all stored locally on each device, iirc.
I do have a few Wyze cameras because they're cheap and I needed something "now" for a vacation home hours away, but long-term I'd like something that works either with Synology or control myself and preferably that I could reflash - again without cloud connectivity requirements.
My network has an always-on Ubuntu VM hosting the controller, but it's not needed for normal operation here either. (It is needed for things like guest portal pages and some network stats tracking.)
I just tested my local admin login and it still works. (Now, can I guarantee that nothing has even called-home and told Ubiquiti about that? Of course not.)
Cameras are a different ballgame; Ubiquiti cameras are much more tied to their software and hardware (and thus I don't have any).
edit: I know this because I have a Unifi Protect system.
I'm using some Tasmota firmware gear, ie outlets from Athom, just works, no cloud, all mine forever.
I got quite fed up with existing solutions and bought a couple of ESP32 + camera to try to create my own.
Wifi devices are a mess and you are often still reliant on a cloud/app for setup.
Wifi IoT devices are terrible IMHO. Yes, they are easy to add and cheap to buy but you are left juggling 3-4+ apps even if they all talk to Alexa/Google/Siri. Also you are putting god-knows-what on your network. Yes, you can put them on their own vlan but still, I do not like devices in my house that can phone home even if they can't see my local devices.
Stick with Z-wave or Zigbee (ideally pick just 1 or 1 main one) and if you want a nicer onboarding then SmartThings is fine but Home Assistant is probably more attractive to people on HN. At least if/when SmartThings goes under you can move your devices to a new hub.
For WiFi stuff- setting up ESPHome and programming ESP32s to do whatever it is I want them to do (report sensor values, twiddle gpios to control an h-bridge, whatever) is stupid easy. Highly recommend anyone who's been meaning to try ESP32s but hasn't yet take the half hour to try it out.
If you're lucky, some engineers added signature validation for firmware updates, but then your device is a brick because you can't do anything new with it.
There is no chance that we can count on IOT manufacturers to pin certificates or to have any motivation whatsoever to focus on security. That is up to the user. So we really need some sort of firewall / antivirus / etc. living on the user end to defend them from this.
I’m guessing there is a large legal aspect we haven’t heard about yet. Somebody did some crimes.
I think it was a competition thing. There is way more cheap stuff out there now, and insteon is known as annoying and unreliable (as in devices die after a few years), so the high end market just moved to lutron.
I believe they were bought by private equity a few years back and their MO is: buy, leverage and go bankrupt. This fits that pattern.
I built it, so if it breaks I know how to fix it. No chance of the cloud shutting down bricking my devices.
They can also be turned on and off based on presence, on time of the day, on the fact that you just turned on your TV, etc.
If companies were actually trying to make good products, there would be almost zero drawbacks if we turned all current switches 'smart'. It's just a single bit in the case of switches and lights. The problem is that they want to monetize said bit in addition to the device cost, they want it to talk to a cloud, they want to make it so only their hub can flip the bit, etc. Oh, and they will have unnecessarily complex firmware with security vulnerabilities and that require regular updates. EVEN when most of the logic is in the cloud, which is mind-boggling. And cloud integrations will randomly fail.
I do like the ability to be able to make all things 'smarter'. In particular, I want to be able to collect data from all devices(this all feeds to Home Assistant in my case). When you have all the data, and the ability to remotely control, you start thinking of all the use-cases you can automate.
Today, I can automate when light switches turn on or off, I can have my robo vacuum not run if my 3d printer is running so it won't bump it, I can have reminders to plug in my EV (when the @#%6 Nissan API works properly). I have locally controlled power switches. I can have reminders when laundry is done. If my dishwasher was 'smart' I would be able to control when it runs (as it is, I'm going to jury rig my own solution). Also thinking about automating my garden next (I already have weather forecast information, just need moisture sensors and a pump).
Honestly, we could turn our homes into a Star Trek ship bridge today, if only companies got their act together. I think there will be an 'IoT winter' as consumers get fed up with all the shenanigans.
For example, I love being able to switch off the living room's lights, as well as all adjacent rooms' lights, all with two taps on my iPhone, without getting up from the couch. Also nice is turning the lights on/off at certain hours of the day, or when certain triggers occur.
My setup goes: ZWave wall switch <-> (Raspberry Pi) [ZWave hub <-> Mqtt <-> Homebridge] <-> AppleTV (Home Hub) <-> iPhone. Despite all of the moving parts, this has been 100% reliable for me with near-zero latency. It even works well when I'm away from home (albeit with a tenfold increase in latency)
Unfortunately, this setup is not a low/no configuration one, so it's not a solution for the vast majority of people, and is why internet connected IoT (Nest/Alexa/Hue/Insteon) are as popular as they are.
Matter [0]
I agree, they work good, but one thing I love most about them is that, if you use IKEA's gateway, they neither require nor provide "the cloud". Everything's local, it's great.
What I do is I think about the massive challenges like climate change and then compare it with what I'm doing. Immediately makes me realise what is worth my time and what is not.
Climate change was just one example. There are some things in my personal life that are just as scary as climate change for me. Immediately snaps me out of wasting my time.
Interestingly, having automated lights and detailed power monitoring has helped me to reduce my average electric consumption by around 20%. Imagine the impact on global warming if everyone reduced their electric consumption by 20%.
Everything was connected to the Home Assistant.
This setup worked 99,9% percent of the time, but occasionally there would be some issues, especially if WiFi or power was down, which would usually mean that devices wouldn't connect to the WiFi, or in some cases ZigBee light bulbs would go into pairing mode (I guess ensuring that I use more expensive Philips Hue bulbs everywhere might solve the latter.)
At some point I just figured out that I want my light switches to work 100% of the time, regardless of the status of network or connected devices (Home Assistant NUC or ZigBee bridges), and that I don't have practical benefits from all the automation and data gathering (Grafana dashboards were nice, but didn't really improve my life in a meaningful way.)
I did some research before investing in home automation. I settled on Z-Wave exclusively exactly because there are multiple manufacturers in the market, their devices are interoperable, and I can use Free Software controller software that I host myself that doesn't phone home. Admittedly I am dependent on binary firmware blobs embedded in every device, but at least my system has no Internet dependency whatsoever.
As long at they follow a standard, i think this is somewhat acceptable
I'm sure Home Assistant would also be fine though!
Currently it uses openzwave, but I found that it didn't suit me very well. So I have a half-written replacement for the low level protocol parts too, to eventually take it to pure Python.
AFAIK, they aren't charging any money for this shit, so why not make it open source so, in the event you go out of business, your customers can figure out workarounds. Bonus point, you'll get security fixes for free.
- A public-facing codebase is a reflection of the company, and thus needs to be polished and maintained in a way that a private one doesn't.
- You might have trade secrets in your code base that you don't want your competitors to have
- Even without explicit secrets, your code base is a substantial investment that any competitor will need to make themselves in order to enter the market; publishing the code would give that to everyone (and let's not pretend that licensing terms and copyright will prevent a knock-off hardware manufacturer in a less cooperative country from reusing the code wholesale)
- Alongside the free security fixes, you give adversaries more opportunity to look for, and exploit, flaws in your security.
- The IP represented by the source code has a value that might well be a substantial part of your company's valuation, in which case you might need to sell it as part of an acquisition/bankruptcy proceeding.
- (I am not accusing Insteon of this, but) if you publish your source code, you may expose all the 3rd-party code you are using/modifying whose license terms you may not be respecting.
They also annoyingly blink a green LED because they can't contact the server.
But if they have, I'm not seeing information that they filed for bankruptcy, so they (or their owning company) may be at risk.