viktor, to opensource
@viktor@me.dm avatar

What's one project you can't live or work without?

❗No distros/OS. Let's make it interesting.

Boosts appreciated 🙏

gerowen,
@gerowen@mastodon.social avatar

@viktor . I use it not only to block ads and malware network wide, but to place content restrictions on all my kids' devices. I've added lists for social media, pornography, gambling, etc. that only apply to my childrens' devices. When there's no school the next day, re-enabling YouTube is as easy as hitting a toggle in the interface.

wyri, to terraform
@wyri@haxim.us avatar

Oops! Looks like there is a translation error somewhere between , , , , and .....

geo, to random
@geo@mastodon.scot avatar

Thanks to my , no. No it isn’t.

kuketzblog, to security German
@kuketzblog@social.tchncs.de avatar

Heute ist erneut Aktionstag: »Ask me a question!« Nach eurem Feedback habe ich die Teilnahmebedingungen angepasst. Ich freue mich über eure Fragen! 👇

https://www.kuketz-blog.de/aktion-ask-me-a-question/







Lars_Roskoden,
@Lars_Roskoden@machteburch.social avatar

@kuketzblog
Erkennt ein auch Geräte im sogenannten Gastnetz der , wenn ich ihn genau nach der aktuellen Anleitung in Deinem Blog aufgesetzt habe?

freemind,

@kuketzblog Ist eine gute Alternative zum powered by wie du es beschreibst?

dada, to random French
@dada@diaspodon.fr avatar

Vous la voyez l'augmentation du trafic sur le réseau de la maison de famille ?
Le sur un Pi 1 n'a pas bronché et a bien fait son boulot !

Mrfunkedude, to linux
@Mrfunkedude@mastodon.social avatar

Ok nerds.

I have an old laptop (10 yrs old) that’s running the latest version of mint and I rarely use it. So I’m looking for some suggestions.

What are some fun FREE things that I can do with it where I don’t have to be an engineer to set it up?

Any ideas?

stonedonkey,
@stonedonkey@mastodon.social avatar

@Mrfunkedude can't recommend enough, makes everything internet better, especially mobile browsing.

https://pi-hole.net

kubikpixel, to random German
@kubikpixel@chaos.social avatar

deleted_by_author

  • Loading...
  • schenklklopfer,
    @schenklklopfer@chaos.social avatar

    @kubikpixel @gnulinux schon mal was von gehört?

    chrisjrn, to random
    @chrisjrn@social.coop avatar

    I was wondering why my -based ad blocker had stopped working after a week or two of using IPv6 at home.

    Hot tip: make sure your DHCP server doesn't have separate DNS settings for IPv6.

    FreakyFwoof, to random

    What rabbit holes I go down sometimes.
    I found a folder on one of my drives full of .au and .mp2 files, most dating back to 1995. I looked up the creator of said folder and found this website, which in itself looks super-90s and it's such a throwback.
    Twisted Helices:
    http://www.ram.org/ram.html

    FreakyFwoof,

    @dave don't think I see it as I'm running which blocks ads and some trackers network-wide.

    selzero, to random
    @selzero@syzito.xyz avatar

    Today's quest, try to put together a PiHole. A little computer that sits next to the router and stops ads entering your home, including on your TV etc.

    CppGuy,

    @warsawmouse @selzero
    I've run a for years. It works really well. I followed these instructions:

    https://www.troyhunt.com/mmm-pi-hole/

    The blocklists that come with Pi-Hole by default are fairly conservative: they're most unlikely to break any functionality you care about or visit any sites you'd want to visit. (For example, they don't block porn.) You can get more lists in places like the Blocklist Project:

    https://github.com/blocklistproject/Lists

    Because our WiFi is used by children, I've installed several lists from there, including the one for porn. Someone with a little technical knowledge could easily work round it, especially on a PC rather than a phone, but at least people are unlikely to stumble across anything unsavoury by accident.

    kissane, to random
    @kissane@mas.to avatar

    A thing that I would love to get across about unpaid tech work, rolling your own [x], and running only the purest and most secure technical systems, is that if you add up enough factors like:

    • raising kids;
    • chronic illness or disability;
    • caring for sick, disabled, or dying family members;
    • community service;
    • a non-technical job

    …just for starters, the tech stuff is going to get triaged way down the list. And a lot of those factors are not evenly distributed, demographically!

    doboprobodyne,
    @doboprobodyne@mathstodon.xyz avatar

    @fschaap @choong @kissane

    Self hosting via a GUI/web portal...

    Quick and easy, for a given definition of "quick", and of "easy".

    Although I still need help with my UPS :P

    dec_hl, to random
    @dec_hl@mastodon.social avatar

    today a installation moved into one of my home servers. I'm running adblockers in all browsers, but this is a test if iPad/iPhone will get less ads, too...

    strobelstefan, to random German

    Ein Let's Encrypt Zertifikat für die Nextcloud im eigenen Netzwerk

    In diesem Beitrag geht es darum eine Nextcloud im eigenen Netzwerk mit einem offiziellen Let's Encrypt Zertifikat auszustatten, die eigentlich NICHT über das Internet erreichbar ist.

    https://strobelstefan.de/blog/2023/12/10/ein_eigenes_lets_encrypt_zertifikat_f%C3%BCr_die_nextcloud_im_eigenen_netzwerk/

    mrecondo, to privacy Portuguese
    @mrecondo@mastodon.sdf.org avatar

    and question: or ? I have a couple pi3 laying around and I think it's time to put them to use.

    fedithom, to IT German
    @fedithom@social.saarland avatar

    Mal wieder ne Frage an die / crowd:
    Auf meinem laufen verschiedene Dienste, die per Weboberfläche erreichbar sind. Die IP des Servers hab ich im Kopf, aber nicht immer sofort den korrekten Port, wenn ich mal nen Dienst aufrufen will ...

    Kann ich irgendwie sowas wie URLs vergeben, damit ich schlicht über Server.local/Dienst1 an die Sachen ran komme? Als DNS-Server dient n im Netzwerk

    jedie, to firefox German
    @jedie@chaos.social avatar

    Weiß jemand, wie man es bei hinbekommt, schneller zu merken, das eine per geblockte domain, wieder entblockt wurde?

    Ich vermute mal firefox hat einen eigenen cache? Wie kann man den leeren? Oder deaktivieren?

    jedie,
    @jedie@chaos.social avatar

    Hm. Mit about:networking#dns kann ich nun besser debuggen...

    Mir scheint das eine whitelist über einen gruppe in nicht funktioniert?!?

    jonkeegan, to random
    @jonkeegan@mastodon.social avatar

    I recently installed on my home network to get more familiar with open source tools for analyzing my network traffic (and ad blocking). What other tools should I be looking at (RaspberryPi preferred)?

    irfan, (edited ) to Kubernetes

    UPDATE: The service is accessible by its domain () as soon as I set the DNS server of my client machine to my PiHole. For other systems not using my local DNS (so outside my network), the domain remains unreachable. My suspicion is an issue with the Port Forwards, but idk what's wrong w em as it is.


    Note: this may not be in the exact order. If the order to any of this is important, feel free to point that out.

    1. I've added to , to my zone (domain), the hostname foo pointing to my network's public IP.

    2. I've deployed everything you'd need including (which determines the dedicated Ingress private IP), -ingress (type set to LoadBalancer instead of NodePort), and -manager (with both HTTP/DNS clusterissuers). If you want to take a peek at how I've deployed/configured them, more details are on here: https://github.com/irfanhakim-as/orked.

    3. I've added foo.domain to the closest thing resembling to a DNS server that I have, , pointing to the dedicated Ingress private IP.

    4. I've set my router's only DNS server to the PiHole's IP.

    5. I've set all my Kubernetes nodes' (Masters and Workers) DNS1 to the Router's IP (DNS2 set to Cloudflare's, 1.1.1.1).

    6. I've created a port forwarding rule for HTTP on my router with 1) WAN Start/End ports set to 80, 2) Virtual Host port set to its nodePort (acquired from kubectl get svc -n ingress-nginx ingress-nginx-controller -o=jsonpath='{.spec.ports[0].nodePort}' i.e. 3XXXX), 3) Protocol set to TCP, and 4) LAN Host address set to the dedicated Ingress private IP.

    7. I've created a port forwarding rule for HTTPS on my router with 1) WAN Start/End ports set to 443, 2) Virtual Host port set to its nodePort (acquired from kubectl get svc -n ingress-nginx ingress-nginx-controller -o=jsonpath='{.spec.ports[1].nodePort}' i.e. 3XXXX), 3) Protocol set to TCP, and 4) LAN Host address set to the dedicated Ingress private IP.

    8. I've deployed a container service, and an Ingress for it, using 's DNS validation clusterissuer.

    Current result:

    • Cert-manager creates a certificate automatically and is in a Ready: True state as expected.

    • The subdomain (foo.domain) however remains unreachable, no 404 errors, no nothing. Just "The connection has timed out" error.

    • Describing the container service's ingress (foo.domain), shows that it's stuck at "Scheduled for sync".

    and experts - please tell me what I've done in any of this that were either wrong or unnecessary, or what I'm currently missing here for me to reach my goal of being able to get my container accessible via foo.domain through that Ingress. I suspect that I might be doing something wrong with this whole DNS mess I literally cannot fathom. I feel like I'm insanely close to getting this thing to work, but I fear I'm also insanely close of blowing up my brain.

    cc: @telnetlocalhost (thanks for bearing w me and getting me this far)

    tychotithonus, to random

    Missed this a couple of weeks ago from Consumer Reports -

    "How to Turn Off Smart TV Snooping Features"

    All smart TVs—from Samsung, LG, you name it—collect personal data. These TV privacy settings limit what manufacturers learn.

    https://www.consumerreports.org/electronics/privacy/how-to-turn-off-smart-tv-snooping-features-a4840102036/

    Another approach is to use nothing on the TV itself, and feed video in from another source entirely.

    solarisfire,
    @solarisfire@mast.solarisfire.com avatar

    @tychotithonus It's pretty ridiculous how many requests from my Samsung TV my has to block... Over 62K in the last 30 days...

    GambaJo, to random German
    @GambaJo@social.tchncs.de avatar

    So, läuft jetzt neben meiner auf meinem süßen NUC 😍

    boelder, to privacy
    @boelder@shakedown.social avatar

    When I look at all the blocked tracking domains and sites on my pi-hole, I wish I'd set up the pi-hole a looooong time ago.

    If you haven't set up a pi-hole for your home (or work) network yet, it's well past time...

    Now if I could just get my wife to stop using Google and Chrome...

    There's a link on how to set up your own pi-hole in this article:

    https://avoidthehack.com/best-pihole-blocklists

    tuxedocomputers, (edited ) to philosophy German
    @tuxedocomputers@linuxrocks.online avatar

    🫵 𝐘𝐨𝐮𝐫 𝐨𝐩𝐢𝐧𝐢𝐨𝐧 𝐢𝐬 𝐢𝐧 𝐡𝐢𝐠𝐡 𝐝𝐞𝐦𝐚𝐧𝐝

    We want to know your again and look forward to your !

    Which open source software is indispensable for you?

    artem,
    @artem@social.anufrij.de avatar
    simplenomad, to infosec
    @simplenomad@rigor-mortis.nmrc.org avatar

    Running a single Pi-hole to protect a combination of public and private addresses can be done. What with eIDAS and rumors about changes to the Chrome browser, maybe we all should look for ways to regain a bit of control.

    https://www.markloveless.net/blog/2023/11/21/my-pi-hole-rabbit-hole

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • cubers
  • DreamBathrooms
  • ngwrru68w68
  • Durango
  • osvaldo12
  • magazineikmin
  • mdbf
  • Youngstown
  • slotface
  • rosin
  • everett
  • kavyap
  • anitta
  • normalnudes
  • thenastyranch
  • khanakhh
  • cisconetworking
  • modclub
  • GTA5RPClips
  • InstantRegret
  • tacticalgear
  • provamag3
  • ethstaker
  • tester
  • Leos
  • megavids
  • lostlight
  • All magazines