JustEnoughDucks

joined 2 years ago
[–] JustEnoughDucks@feddit.nl 2 points 2 days ago

Also mealie supports SSO with OIDC so authelia/authentik can cover it and there is no need for separate accounts.

Also being a PWA on mobile instead of another electron app means that authentication in front of it doesn't break anything.

[–] JustEnoughDucks@feddit.nl 2 points 5 days ago* (last edited 5 days ago) (1 children)

Yes,

https://www.silverstonetek.com/en/product/info/expansion-cards/ECS07/ https://www.amazon.com/Adapter-RIITOP-Expansion-Chipset-ASM1166/dp/B0D8BCWHPT

https://www.aliexpress.com/item/1005003335714128.html

Then you have 4 main plus these 5-6 extra. Just put your boot drive on a data drive instead of m.2 or get an adaptor and you are good to go. 8 data drives plus a boot drive

[–] JustEnoughDucks@feddit.nl 1 points 1 week ago

Syncthing also even has basic version control, just no "web file browsing" interface.

[–] JustEnoughDucks@feddit.nl 8 points 3 weeks ago

Dropping instead of blocking might technically be better because it wastes a bit more bot time and they see it as "it doesn't exist" rather than an obsticle to try exploits on. Not sure if that is true though.

For me:

  • ssh server only with keys

  • absolutely no ssh forwarding, only available to local network via firewall rules

  • docker socket proxy for everything that needs socket access

  • drop non-used ports, limit IPs for local-only services (e.g. paperless)

  • crowdsec on traefik for the rest (sadly it blocks my VPN IPs also)

  • Authelia over everything that doesn't break the native apps (jellyfin and home assistant are the two that it breaks so far, and HA was very intermittent so I made a separate authelia rule and mobile DNS entry for slightly reduced rules)

  • proper umask rules on all docker directories (or as much as possible)

  • main drive FDE with a separate boot drive with FDE keyfile on a dongle that is removed except for updates and booting to make snatch-and-grabs useless and compromising bootloader impractical

  • full disk encryption with passworded data drives, so even if a smash and grab happens when I leave the dongle in, the sensitive data is still encrypted and the keys aren't in memory (makes a startup script with a password needed, so no automated startups for me)

For more info, I followed a lot of stuff on: https://github.com/imthenachoman/How-To-Secure-A-Linux-Server

[–] JustEnoughDucks@feddit.nl 3 points 4 weeks ago* (last edited 4 weeks ago)

HealthyPi will be a too option too. Much more fitness focused than pinetime or banglejs

[–] JustEnoughDucks@feddit.nl 7 points 1 month ago (2 children)

Then the question is: what is being smart or dumb? If acting dumb in 90% of life while having the capability of being smart isn't "being dumb" then what is?

If someone who has the capability of being 50/100 intelligent and is always acting 50/100, I would argue they are smarter than someone capable of 80/100 intelligence but acts 20/100 intelligence for 90% of their life.

[–] JustEnoughDucks@feddit.nl 3 points 1 month ago* (last edited 1 month ago) (1 children)

That is the thing. From the business and management side, yes he made them what they are today. He got the government to give absolutely massive subsidies, changed the company culture to be a 24/7 work grind with great pay (if you ignore salary-per-hour which most people do until they get burnes out). That got a ton of shit done very fast, with enough budget to be able to just test and test and test and not need to burn as much money on trying to get it right the first few times while also having state of the art assembly capabilities. That is no small feat and most startup companies can only hope to achieve that runway and engineering power.

People then extrapolate it to "he is some tech genius who built these companies and products and he was the main engineer behind it" No, he absolutely is not, he is a steve-jobs-esque role with decent tech literacy. He is no genius, sociopath who is extremely good at manipulation and getting what he wants, yes. He is closer to an Edison than a Tesla. In the executive world, decent tech literacy and willingness to learn makes you seem like a supergenius compared to all of the other MBA CEOs.

If you ask engineers in his company, since he went crazy and stopped being willing to listen and learn from his engineers, he has been an active detriment, engineering-wise, to the companies. He is not a genius. Just ask Tom Mueller

[–] JustEnoughDucks@feddit.nl 3 points 1 month ago (2 children)

And then I get down voted for laughing when people say that they use AI for "general research" 🙄🙄🙄

[–] JustEnoughDucks@feddit.nl 2 points 1 month ago* (last edited 1 month ago) (1 children)

I only partake in the finest carapils

[–] JustEnoughDucks@feddit.nl 1 points 1 month ago

To be fair though. The experience of google and Microsoft online word/spreadsheets/etc... also sucks ass on a smartphone. Much better, sure, but doing spreadsheets or writing a paper on a phone is a bad experience in general.

[–] JustEnoughDucks@feddit.nl 1 points 1 month ago

That is a fantastic idea. Wtf how is this not commonplace? Or am I just way behind 😅

[–] JustEnoughDucks@feddit.nl -1 points 5 months ago* (last edited 5 months ago) (2 children)

Well the entire multiplatform astroturfing campaign from people who call themselves leftists worked! Democrats stayed home instead of voting.

Now Palestine will be completely flattened with 0 resistance at all, and redoubled support and bombs for Israel! Way to go! You really showed your support for Palestine by helping this happen!

They will probably come back saying "it wasn't our fault, we just pointed out the truth" while they shouted that a vote for Harris was a vote for genocide [so don't vote for harris] from every platform that they used.

view more: next ›