pug50, (edited ) to microsoft

Hmm. The certificate for https://windows.microsoft.com/ has expired.

youronlyone, to Philippines
@youronlyone@c.im avatar

Friendly tip if you are in the and want to use mobile Internet.

Use a to make the connection faster.

Mobile Internet operators here in the Philippines are constantly monitoring connections, even / connections (see: https://im.youronly.one/techmagus/philippines-isp-hijack-connection-2021206/ ). It is causing a slowdown. Another thing they're doing is they're throttling mobile Internet connections.

If you use a VPN, they won't be able to monitor you, and they won't be able to throttle your connections. (Unless you consumed your daily limit, or the signal is bad.)

I personally recommend (in no particular order):

Note: VPN, by itself, will not increase your connection speed. The reason it gets faster is that your ISP is already throttling you and routing your connections through their monitoring software, but a VPN bypasses most, if not all, of those.

For example. If I am not connected to a VPN, everything is slow. SSL certificates are incorrect—but browsers can't detect that it's using the ISP's certificates. There are URLs / IP addresses that are either too slow or inaccessible (even though they are not questionable).

But when I am behind a VPN, everything is fast and smooth.

Another example. If I am not connected to a VPN when playing Guild Wars 2, there are parts of the game (like news and Trading Post / Auction House) that fails to load. But if I play through a VPN, it works.

Lastly, VPNs will provide you increased and . So, that's a plus.

DS_Stiftung, to baking German
@DS_Stiftung@social.bund.de avatar

Neues Audit-Tool 🤖 des für -Behörden sowie für Verantwortliche und Auftragsverarbeiter, die ihre eigene Website testen wollen:
👉 https://edpb.europa.eu/news/news/2024/edpb-launches-website-auditing-tool_en

Das Tool basiert auf Chrome und untersucht u. a. , , Datenverkehr und -Pixel (). Ob eine Website gesetzeskonform ist oder nicht, entscheiden die testenden Sachbearbeiter*innen.

@lfdi @BayLfD @BlnBDI @HBDI @lfdi_rlp @sdtb
@dsk @bfdi

kuketzblog, to security German
@kuketzblog@social.tchncs.de avatar

Das BSI Testwerkzeug zur Durchführung von TLS-Konformitätstests ist als »TLS Checklist Inspector« online verfügbar. (Hosting/Betrieb achelos) 👇

https://www.tls-check.de/de

to3k, to fediverse Polish
@blog.tomaszdunia.pl avatar

🇵🇱 Nowy wpis na blogu! / 🇬🇧 New blog post!

YunoHost – How to run WriteFreely instance [ENG 🇬🇧]

#a #aaaa #activitypub #blog #caa #cloudflare #dns #fediverse #https #mx #opensource #oracle #proxy #selfhosted #ssl #txt #vps #writefreely #yunohost

Autor: @to3k

https://blog.tomaszdunia.pl/yunohost-writefreely-eng/

Hamishcampbell, to random

@duco OK in context weeding out people is nothing to do with genocide, this is obvuse just read in context, good faith is a start to overcome this. In the context, MOST people are a "waste of space" try thinking about the native tribes being exterminated by the incoming western culture - who here is wasters of the space?

The is about"unthinking" created by centralizing security - think what happens to the if Let's Encrypt goes down -an example of the recurring

fell, to SmartHome
@fell@ma.fellr.net avatar

I stopped messing with client certificates and went back to good old HTTP basic authentication for my little digital light switch panel.

It's a shame nobody cares about TLS client certificates. With a bit more effort we could've gotten rid of passwords a long time ago.

I wish there was something like SSH keys for the web.

Yeah I know, Passkeys are a thing... but also not really.

czach, to fediverse Polish
@czach@pol.social avatar

No dobra... Jest tu jakiś cwaniak?
Próbuję ogarnąć WordPressa/ActivityPub na własnym serwerze. Nawet to działa, ale gdy chcę z tego konta (pol.social) dać follow takiego konta domowego to wywala:

"503 Remote SSL certificate could not be verified”

No rozumiem. Sprawdzam swoją stronę SSL Checker i mam:

"The certificate is not trusted in all web browsers. You may need to install an Intermediate/chain certificate to link it to a trusted root certificate. Learn more about this error. The fastest way to fix this problem is to contact your SSL provider.”

Certyfikat SSL mam (działający i zainstalowany) z home.pl ale brakuje tego co wyżej „chain certificate”. Home.pl tego nie dostarcza i… jak to ogarnąć samemu? Bo jakoś utknąłem.

jbr_IC, to random German

Für Leute, die eigene Server betreiben und mal Klarheit bei der vorliegenden benötigen, können es hiermit testen.

testssl.sh is a free command line tool which checks a server's service on any port for the support of TLS/SSL , protocols as well as recent cryptographic flaws and more.

https://testssl.sh/

pitrh, to security
@pitrh@mastodon.social avatar
Tronde, to CA German

Gestern erreichte mich eine E-Mail von einem ehemaligen Kollegen. Dieser wollte mir unter anderem mitteilen, dass mein TLS/SSL-Kochbuch von 2016 immer noch hoch geschätzt und gelobt wird. Darüber habe ich mich sehr gefreut. 😀

Artikel zum TLS/SSL-Kochbuch: https://www.my-it-brain.de/wordpress/mein-tls-kochbuch/

#tls #ssl #certificate #ca #csr #hsts #hpkp #pinning

mjgardner, to infosec
@mjgardner@social.sdf.org avatar

@Perl Good news, the #Perl module IO::Socket::SSL now defaults to using the #TLS cryptographic protocol version 1.2 or greater. (Earlier versions have been widely deprecated for a couple of years due to weaknesses found in the #MD5 and #SHA1 hashing functions.)

Note that if you’ve updated #OpenSSL recently you may also have to rebuild and reinstall Net::SSLeay from #CPAN.

#infosec #security #cryptography #SSL https://g0v.social/@gugod/110392435778885615

develwithoutacause, to windows

I had to install on a machine today and OH MY GOD I forgot how complex of a set up process it is. I went through it again just to count the unbelieveable number of steps it took:

  1. License agreement.
  2. Which components to install (includes proper nouns like "Git Bash", "Git LFS", and "Scalar"). Notably does not enable automatic updates by default.
  3. Default editor for Git (doesn't include as an option).
  4. Default branch name.
  5. How to configure the PATH.
  6. Which to use.
  7. Which / library to use.
  8. How to handle CRLF / LF line endings.
  9. Which terminal emulator to use.
  10. Whether to use merge or rebase by default.
  11. Whether to enable the credential helper.
  12. Extra options:
  • File system caching.
  • Symbolic links.
  1. Experimental options:
  • Pseudo consoles (?)
  • File system monitor (?)

This is utterly absurd and probably the most unnecessarily complicated install experience I can think of.

todd_a_jacobs, to iOS

This is more of a security question, but I currently know way more people on ruby.social than infosec.exchange. I want to use a for or signing on & , but can't find:

  1. Any documentation about how to integrate it with Apple Mail.

  2. Anyplace that offers certificates for S/MIME at zero or minimal cost the way @letsencrypt offers free certs.

Self-signed S/MIME certs are a non-starter, and there are no full-featured apps on iOS. Suggestions?

eosinopteryx, to tech

Shakespeare once said, 'An SSL error has occurred and a secure connection to the server cannot be made.' 😂

chrisgervais, to macos
@chrisgervais@hachyderm.io avatar

Anyone know of an parsing library or code for classic ? After decrypting a stream I’d love to shove it into a lib that can parse it all out and let me extract the relevant bits. I found HTTP sample code for OpenTransport but not sure if that’s right path. I may also not be thinking of the problem correctly but having fun experimenting and kinda don’t want to write it from scratch

chris, to webhosting
@chris@mstdn.chrisalemany.ca avatar

Any Firefox website Wizards out there? Even though my website has a verified and valid (LetsEncrypt) SSL certificate, Firefox is reporting that "Parts of the webpage are not encrypted”.

I can't find any other information on why this is occuring, I do have a couple iframes in the page (alberniweather.ca) and lots of images including some that are hosted on Google cloud.

Any help is appreciated.
#Webhosting #WebAdmin #SSL

Zeronaut, to random
@Zeronaut@fosstodon.org avatar

on and the FediVerse:
I use as my production RMM in my IT small biz.

The issue's pattern: you have a DNS service routing traffic to your Meshcentral instance, often behind an reverse proxy. The main website works, but the remote connections start failing half the time. Now they always fail at a 0 sec timeout.

It seems caused by a change in cloudflare likely with but possibly certs?
Thoughts on this?
https://github.com/Ylianst/MeshCentral/issues/5302

mkj, to linux

New up on how to get a server certificate fingerprint from the command line without using a full-blown web browser. Also works with other TLS-protected services, so not just .

https://michael.kjorling.se/blog/2023/extracting-tls-certificate-fingerprint-on-the-linux-command-line/

freeformz, to random
@freeformz@hachyderm.io avatar
matrig, to machinelearning
@matrig@mastodon.social avatar

A Cookbook of Self-Supervised Learning

Comprehensive review on Self-Supervised Learning ("the dark matter of intelligence") with focus on vision tasks and lowering the high barrier to entry.

📰 https://arxiv.org/abs/2304.12210

to3k, to android Polish
@blog.tomaszdunia.pl avatar
tripplehelix, to random
@tripplehelix@fosstodon.org avatar

Wow, that was simple! Setup on a local site to get USB/Serial working. Would love to do this to my home assistant setup, but I'm using HAOS which is super locked down.

james, to hosting
@james@jamesgallagher.social avatar

Where do people get their SSL certs at reasonable prices these days? I'd like to move some (mostly Wordpress) sites to shared hosting at Blacknight, from a VPS so Let's Encrypt would no longer be suitable

kuketzblog, to android German
@kuketzblog@social.tchncs.de avatar

Android: Der Beitrag stellt die Vorbereitung des Testgeräts sowie Werkzeuge (Frida, Magisk) zur Analyse des Datensendeverhaltens von Apps vor. Reinschauen! ✌️ 👇

https://www.kuketz-blog.de/in-den-datenstrom-eintauchen-ein-werkzeugkasten-fuer-analysten-von-android-apps/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • mdbf
  • ngwrru68w68
  • tester
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • tacticalgear
  • osvaldo12
  • normalnudes
  • cubers
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • Leos
  • provamag3
  • anitta
  • modclub
  • lostlight
  • All magazines