tapdattl

joined 3 years ago
[–] tapdattl@lemmy.world 5 points 1 week ago

I was literally about to link czawka

[–] tapdattl@lemmy.world 1 points 4 weeks ago

Does amnezia work? Its obfuscated wireguard and is, according to their github, resistant to deep packet inspection and such

[–] tapdattl@lemmy.world 89 points 1 month ago (5 children)

Julia Evans has such great and accessible content, they're awesome

[–] tapdattl@lemmy.world 7 points 3 months ago (1 children)

Maybe do some deduplication first? https://github.com/qarmin/czkawka

[–] tapdattl@lemmy.world 55 points 3 months ago* (last edited 3 months ago) (15 children)

Looks like they put in a ton of effort to make this compatible with generic devices, but I have to ask, with all the features removed, why choose this over any other ROM?

Features removed

hardened_malloc — causes boot loops on devices with 39-bit virtual address space. replaced with AOSP Scudo.

Auditor — requires hardware attestation which > doesn't work on GSI

mtectrl / misctrl — Pixel-specific memory tagging control; breaks vendor TEE drivers

USB protection — the low-level USB port controls rely on Pixel-specific hardware and are non-functional on other devices

native debugging protection — not ported; breaks compatibility with root solutions and vendor debugging tools

Features disabled by default

These can be re-enabled in TrebleApp → Hardening or Settings → Exploit protection.

MTE/TBI for vendor processes — memory tagging breaks some vendor drivers

hardened thread stacks — non-standard memory layout breaks some vendor drivers

secure (exec-based) app spawning — breaks root solutions (Magisk / KernelSU)

[–] tapdattl@lemmy.world 22 points 4 months ago (1 children)

Best we can do is paid leave

[–] tapdattl@lemmy.world 2 points 4 months ago

Rocky and Alma Linux are both Red Hat Enterprise Linux

[–] tapdattl@lemmy.world 5 points 5 months ago

Assuming your bank already has all of your information, what's the problem with them knowing your IP?

And how often do you need to use your banking app? Could you connect from a local free WiFi network from a library or something?

[–] tapdattl@lemmy.world 6 points 5 months ago (2 children)

What about just logging in with your web browser? I've been using GOS for going on 4 years now and haven't had any issues with it. Is there anything specific the app provides that you need that isn't available through browser?

[–] tapdattl@lemmy.world 12 points 5 months ago

There's also SeaweedFS that I've used as an S3 compatible fileserver

 

I'm re-setting up my HomeLab and one of the things I'm trying to learn about on this go-around is Zero Trust networking. To accomplish this I am planning on using NetBird's mesh overlay network. I would like all of my services to use the NetBird mesh network at all times, whether they are communicating within my homelab's LAN or I am accessing them from outside via the greater internet.

I have successfully set up the NetBird management interface on a Hetzner VPS, however the issue I run into is if I lose internet access at home, none of my services are able to function as they can no longer reach the management interface. However, if I self host the management interface in my homelab, I am unable to access it from outside my home LAN.

I've identified 2 solutions that could solve this:

  1. Self host the management interface and set up a Cloudflare tunnel to the management interface, which would allow access from outside my home network.

  2. Self host the management interface, then set up a wireguard proxy/tunnel on a VPS that forwards traffic to my management interface (Similar in my mind to option 1, but not relying on Cloudflare)

What are your thoughts? Any other ideas?

I appreciate your comments/criticisms!

 

As the title states, how would you set it up? I've got an HP EliteDesk G5, what are the strengths and weaknesses of either:

  • ProxMox with one VM running TrueNAS and another VM running Nextcloud
  • TrueNAS on bare metal with Nextcloud running in docker
  • Some other setup

I'd like to be able to easily expand and backup the storage available to Nextcloud as needed and I'd also like the ability to add additional VMs/containers/services as needed

view more: next ›