@clement@ck.villisek.fr
@clement@ck.villisek.fr avatar

clement

@clement@ck.villisek.fr

NEW ACCOUNT: https://wizard.casa/users/clemv
My personal Fediverse instance will be shut down this summer, so please go to my new profile instead :)

This profile is from a federated server and may be incomplete. Browse more on the original instance.

clement, to fediverse
@clement@ck.villisek.fr avatar

Hey !

Here's a personal announcement:
I plan to shut down my instance this summer.
I'm trying to shrink the number of different services I am using, to reduce VM and storage costs (reducing costs even more would imply downsizing my servers, which would degrade even more performance of my services).

And I figured that I didn't have very interesting stuff to share lately, everyone on here is already doing a great job in providing the Fediverse with awesome content ^_^.

So I think that, for now, I'm going to "archive" this account and use @clemv (a third-party-hosted Mitra instance) as my main account from now on.

And ultimately the instance will be taken down during the summer.

I may take some time to redirect every link/profile and resub everything there, so don't worry if I'm not following you from the "new" account yet, I'll do so before I take down my instance :)

See you!

clement, to random
@clement@ck.villisek.fr avatar

Maintenant, wait & see l'avis de l'UE sur l'interprétation de la DMA par Apple...

RE: amicale.net/users/nextinpact/statuses/112048145672866611

PetitPas, to random French
@PetitPas@eldritch.cafe avatar

Si je résume pour le
pour avoir accès au Monde, mediapart, arrêt sur images...*

Créer un compte et payer 24€/an ou moins :
https://inscriptionbilletterie.bnf.fr/

Une fois la création du pass confirmée par mail :
Se connecter sur
https://espacepersonnel.bnf.fr/

Pour les utilisateurs de Mozilla : installer l'extension
https://ophirofox.ophir.dev/
(Installation et paramètres détaillés en scrollant la page, attention c'est tricky)

Ensuite aller sur https://easybnf.fr/ (en étant connecté'e hin)

Ou aller sur par exemple sur le site du Monde et cliquer sur le lien jaune "lire sur europresse" dans l'article payant.

Bonne lecture bien méritée 🥳

  • et Télérama, le Temps, 24 heures, Tribune de Genève...
clement,
@clement@ck.villisek.fr avatar

@PetitPas
Wow, intéressant !! C'est vraiment intégralement en ligne ? Car quand on va sur la boutique/billetterie ce service puis sur "Pass lecture/culture" ils mettent surtout en avant ce qu'il se fait "sur site". C'est ça l'accès illimité à "des ressources électroniques à distance" ?

clement, to techsupport
@clement@ck.villisek.fr avatar

Domain facing massive e-mail spoofing attacks: Can something be done?

Hello,

I am running my own mailserver using Mailcow and I noticed, since mid-January, a huge rise of e-mail address spoofing attacks, in three ways:
(1) a lot of spam ends up in the inbox despite having rspamd.
(2) a few undelivered e-mail errors
(3) some e-mails with rubbish content sent to public administrations, with my e-mail address mentioned in the "via" field, but different sender address (possibly from a third hacked mailserver), end up in my inbox as well.

My mailserver doesn't seem to have been hacked BTW, as e-mails were sent today and the last connection to the SMTP service was 2 days ago according to Mailcow admin UI.

Here are my questions:
(1) Does the address spoofing make that rubbish mail end up in the recipients' inbox?
(2) Is it shown as being sent by me or by the third hacked mailserver?
(3) Is there a way to block the incoming spam using that technique in rspamd?
(4) Can this spoofing attack impact my domain name's reputation (blacklist, ...?)
(5) Last but not least, do you think I could get in legal trouble given the fact attackers seem to spoof my e-mail to target public administrations of my country (France, in case that matters)? If so, what could prove neither me nor my mailserver are faulty?

I am respecting all the good practices for e-mail security (SPF, DKIM, DMARC, and even signing my emails with an S/MIME cert). Oh and my server isn't an open relay ^_^

Thank you!

@email @techsupport

clement,
@clement@ck.villisek.fr avatar

@intelisense
Those are properly configured, I get a 10/10 on mail-tester dot com, as well as everything validated on mxtoolbox.

clement,
@clement@ck.villisek.fr avatar

@wintermute_oregon
I tested on Mxtoolbox, it shows my server isn't an open relay.

clement,
@clement@ck.villisek.fr avatar

@voracitude Thank you very much! This confirms my worries, not much can be done...

clement,
@clement@ck.villisek.fr avatar

@intelisense
Hello, thank you for your answer and sorry for the late reply.

I took some time analyzing my SMTP server logs, and it contains 100% legit outgoing traffic. And no successful SSH connection for weeks on the server so it can't have been erased.
u/voracity confirms my thoughts as well. I think the issue is outside and unrelated to my server. And the e-mail address in question seems to have leaked from several places according to haveibeenpwned (the password is safe though).

RE: lemmy.world/comment/7170785

clement,
@clement@ck.villisek.fr avatar

@intelisense Oh and sorry for the second message I forgot the last part of your message. Here's the DMARC record, I've been using it for months now:

_dmarc.villisek.fr.     900     IN      TXT     "v=DMARC1; p=quarantine; rua=mailto:postmaster@villisek.fr,mailto:b377e11c@mxtoolbox.dmarc-report.com; ruf=mailto:postmaster@villisek.fr,mailto:b377e11c@forensics.dmarc-report.com; rf=afrf; sp=quarantine; fo=0:1:d:s; pct=100; adkim=r; aspf=s"
clement,
@clement@ck.villisek.fr avatar

Hi, thank you for the answer, and sorry for the late reply :( ...

I analysed the logs thoroughly, and I can confirm my SMTP server hasn't sent any email aside the legitimate ones.
And u/voracitude 's answer confirmed my thoughts, being that the emails were sent from somewhere else.

I don't think it's that much unusual to use a "small" domain for spoofing: SMEs are "easy targets" usually, and if the recipient's anti-spam isn't configured properly then the attackers could benefit from a domain which may be small but has a good reputation.

clement, to fediverse
@clement@ck.villisek.fr avatar

I discovered today Masto Reader, a super that allows reading on in a blog style UI. It is Fediverse's counterpart of birdsite's Threads Reader app.

mastoreader.io/

Facebook degrading Firefox user experience now?

Recently, most images on Facebook have stopped loading for me. Sometimes it’s just a few images. Other times it’s almost all images. The longer I scroll, the worse it gets. Today, I couldn’t even see my own pictures. Are any other Firefox users having this problem, or maybe it’s a server issue on Facebook’s end?

clement,
@clement@ck.villisek.fr avatar

@TheBaldness
When opening the developer tools and going to the Network tab, are there errors? (refresh the page to be sure everything appears in the tab)

clement,
@clement@ck.villisek.fr avatar

@TheBaldness
What type of error is it? Time-out, blocked, ... ?

clement,
@clement@ck.villisek.fr avatar

@TheBaldness wow, that is weird indeed.... I don't have a clue if there could be a fix in such case.
Is the problem also occurring on other browsers or devices?

clement, to testfediverse
@clement@ck.villisek.fr avatar

Un post de test vers un article depuis Iceshrimp

Voilà un test de post vers Lemmy depuis Iceshrimp

Lien vers un article pour voir :
next.ink/122730/amd-annonce-ses-apu-ryzen-8000g-am5-avec-usb4-et-quatre-cpu-ryzen-5000-en-am4/
@testfediverse

clement, to technologie
@clement@ck.villisek.fr avatar
clement,
@clement@ck.villisek.fr avatar

@technologie Ah zut, je ne pensais pas que ça allait mal s'afficher comme ça sur Lemmy. Désolé. Qqun connait la bonne méthode pour partagée un post vers Lemmy ? Juste copier l'URL ?

clement,
@clement@ck.villisek.fr avatar

@Syl
Depuis Iceshrimp. Merci, je prendrai le temps d'essayer demain.
Si ce post pose souci un admin peut le supprimer :)

clement, to random
@clement@ck.villisek.fr avatar

I am testing différent fediverse software on 3rd-party instances. It is incredible how the écosystèmes is expanding!

clement, to random
@clement@ck.villisek.fr avatar

Okay, finally received a code... Let's check Bluesky out! bsky.app/profile/villisek.bsky.social

clement, to random
@clement@ck.villisek.fr avatar

Happy new year everyone!

Welonz, to random
@Welonz@mastodon.social avatar

Howdy 🌻 we're checking out Undertale Yellow today, a long-awaited fan prequel to the original Undertale (which came out EIGHT YEARS AGO WTF)

https://youtu.be/KzZpkVMz7_c

clement,
@clement@ck.villisek.fr avatar

@Welonz Oh yeah!! I haven't taken a look to Undertale mods but I would enjoy watching a full walkthrough of yours on this one!

clement, to random
@clement@ck.villisek.fr avatar

Hello,

Petite question aux admins :

Rencontrez-vous aussi des soucis sur votre instance -key liés au flux principal ? Depuis que mon instance s' "agrandit" (en termes de pub/sub, pas en termes de comptes), le flux principal échoue de plus en plus à se charger avec la simple erreur "Une erreur est survenue".

Ca le faisait par moments il y a encore une ou deux semaines, mais maintenant c'est permanent...

Avez-vous rencontré ce souci ? Avez-vous trouvé une solution de contournement ?

J'ai vu un ticket sur le git de mais ça n'a pas l'air d'avancer alors que c'est à mon avis un souci majeur...

iceshrimp.dev/iceshrimp/iceshrimp/issues/128#issuecomment-3388

clement,
@clement@ck.villisek.fr avatar

@tournesol Tu as une technique particulière pour vacuum la bdd ? J'avais cherché si il y avait un moyen de le faire de façon propre sous Misskey, Firefish puis Iceshrimp... Mais je n'avais pas trouvé. J'ai peur d'effacer des trucs qui pourraient casser la base.

clement,
@clement@ck.villisek.fr avatar

@tournesol Oh my! Je l'ai laissé tourner un petit moment, ça s'est terminé quand j'avais le dos tourné... et ça marche !... (pour l'instant).

N'étant pas un power-user de Postgres, je ne connaissais pas cette commande; et je pensais que tu faisais manuellement du nettoyage ou utiilisait un outil tiers.

Merci beaucoup !! Je vais signaler que c'est réglé (pour l'instant) sur le salon Matrix.

clemv, to random

After some tests I can definitely say MITRA is an awesome Fediverse server software.

clement,
@clement@ck.villisek.fr avatar

@aura @clemv
Hello, sorry for the delayed answer. I just saw your message by going on the instance again hahaha.
Well, I only checked if I could follow my personal iceshrimp instance and follow back from there, as well as following news bots.

I can say Mitra looks pretty solid. And the fact its fully written in Rust is awesome for hosting on small hardware.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • rosin
  • ngwrru68w68
  • Durango
  • DreamBathrooms
  • mdbf
  • magazineikmin
  • thenastyranch
  • Youngstown
  • khanakhh
  • slotface
  • everett
  • vwfavf
  • kavyap
  • megavids
  • osvaldo12
  • GTA5RPClips
  • ethstaker
  • tacticalgear
  • InstantRegret
  • cisconetworking
  • cubers
  • tester
  • anitta
  • modclub
  • Leos
  • normalnudes
  • JUstTest
  • All magazines