kieron115

joined 2 years ago
[–] kieron115@startrek.website 1 points 5 months ago

Yeah I had to convince them to try RustDesk so they would stop using RDP. Like I said, a lot of people just know enough to be dangerous.

[–] kieron115@startrek.website 2 points 5 months ago

They also do some SSL shenanigans to get every user a unique, valid public certificate created during setup. https://words.filippo.io/how-plex-is-doing-https-for-all-its-users/

[–] kieron115@startrek.website 2 points 5 months ago (1 children)

also fyi starlink has public ipv6 available if you DO wan't to set it up. been hosting a minecraft server off a starlink connection lol.

[–] kieron115@startrek.website 1 points 5 months ago* (last edited 5 months ago) (2 children)

I had to explain to one of them why RDP is a bad idea lol. Thats kind of my point - average people tend to only know enough to be dangerous, not to do things safely. Or as Shakespeare said - "The fool doth think he is wise, but the wise man knows himself to be a fool.”

[–] kieron115@startrek.website 4 points 5 months ago

When I set up wireguard it was just more complicated when one side didn't have a public IP. Whyyyy can't we adopt ipv6 already.

[–] kieron115@startrek.website 1 points 5 months ago (4 children)

I'm talking average enough to see an article, or hear about it from a friend/coworker, then follow the insanely easy setup directions for Windows. I know plenty of people who aren't really "computer people" but know enough to open a port because they had to to get a game working at some point or another. Those people probably wouldnt notice "hey this thing is going to http maybe i should rethink this...."

[–] kieron115@startrek.website 1 points 5 months ago* (last edited 5 months ago)

Sure, but being mostly secure by default isn't one of them. One advantage of running a service that offers optional subscription services is that they can offer security features like built-in SSL and AAA that just work. Any average user can install it and have a reasonably secure service running. Hell, until a few months ago you didn't even need to open a port to have remote access to your content, whether you paid or not. Now they've made that a paid feature though.

[–] kieron115@startrek.website 3 points 5 months ago* (last edited 5 months ago) (6 children)

Sounds like a great reason to use Plex instead!

edit: to add something constructive to my snarky comment, what kind of attack surface are we talkin here? Multiple ports? Lots of separate services running? No authentication?

[–] kieron115@startrek.website 3 points 5 months ago (6 children)

I can set it up, and you can set it up, but for the average user?

[–] kieron115@startrek.website 5 points 5 months ago* (last edited 5 months ago) (6 children)

I think you're missing the point - that's neither simple nor easy for most people. I'm a network engineer and I don't wanna deal with setting up and (being responsible for troubleshooting) a bunch of VPNs! Nevermind the additional power/CPU usage from the tunnels. My parents just got fiber and they don't even have a public address (ipv4 or v6) which just adds another layer of headache. thanks west virginia...

[–] kieron115@startrek.website 1 points 5 months ago* (last edited 5 months ago) (2 children)

None really, just wondering what the issue with opening it up is if it has TLS? In 10+ years I've never had my Plex server compromised and it just uses TLS. I do change the default port but that's it.

[–] kieron115@startrek.website 1 points 5 months ago (4 children)

that's fair, does it not have any kind of encryption by default?

view more: ‹ prev next ›