Cyber

joined 2 years ago
[–] Cyber@feddit.uk 1 points 9 hours ago

Yeah, my Pi Zeros are bettter on Trixie.

My proxmox was also an adhoc, lets-see-what-happens-if... build, but I think I'm going to drop proxmox for Incus as I can script that in Ansible too

[–] Cyber@feddit.uk 2 points 9 hours ago

I started getting the base install on a separate SD card yesterday, and realised there's still loads of things I'd missed in my Ansible script, like reducing journal writes, etc.

So, I just put the old SD card back in and left it until I can look at it again

Small steps...

[–] Cyber@feddit.uk 2 points 1 day ago

Look into radicale if that's you're using NC as a DAV server - and everyone's using their phone as a client

It's so simple & lightweight (but admittedly the webgui is admin only - no visible calendar)

[–] Cyber@feddit.uk 3 points 1 day ago

Just a friendly word of caution:

if they don't appreciate what you're telling them to do, ... and if the minis you're building fail to do some magic data protection that they / you hadn't thought about... it'll be your "fault"

They need to take some ownership

[–] Cyber@feddit.uk 3 points 1 day ago

Nice way to find (& document?) The system though

[–] Cyber@feddit.uk 1 points 1 day ago

That's an interesting process... you could improve it with some ansible - if that's your thing... or use snapshots on the VM(s) and roll back?

That's kinda what I'm doing with this (physical obviously) Pi... take a full backup now and again... do upgrades... rollback when completely borked.

[–] Cyber@feddit.uk 3 points 1 day ago

Ah, yes, half-finished notes... had similar issues in the past too.

But it's a great feeling when you finally understand something, update the notes (and maybe the Arch wiki ) and sleep a little better...

 

So, just a light post, I upgraded my Pi4 last night and found the Linux firmware breaks a 32bit install.

I've been meaning to change to 64bit for months, but as it's my DMZ box for torrents, radicale, etc, then it's just finding the right time to convert an adhoc setup into my ansible scripts.

Luckily I had a SD backup from September to get it running again

So, what have you broken over the holidays?

[–] Cyber@feddit.uk 1 points 3 days ago (1 children)

As others have said - check your contract, but, also ask them for a copy of your contract... (and from reading other comments, maybe keep this for the 2nd meeting to delay until a 3rd?)

I was quite surprised when I changed roles a few years ago that the (large, global) company had only a single piece of paper with my NI details on. Nothing else.

If their copy is different, of course check the dates - I'm not a lawyer - but you might be able to pick the "better" version...

If you have things like overtime, then maybe you'll be able to take advantage of that to claim more income whilst you close out actions... or... dunno... get an eye test and claim it back...?

[–] Cyber@feddit.uk 5 points 6 days ago (1 children)

I dont want to dump on anyone, but this is v2.4.0 and v1.0.0 was last month...

With 4 tickets...

I'm also unsure that refering to zero knowledge architecture is the correct phrase here. Instead I think it should be zero trust in this context.

But as other repos are French, perhaps the AI is from translations.

In short - a good idea, but needs time - and clearer explanations of what's going on

[–] Cyber@feddit.uk 1 points 6 days ago

Finally stopped work for "the holidays"... even had to work the morning if my first day off just to catch up the urgent () work that a few () idiots decided we needed to do before year end...

But, I feel the anxiety of a massive todo list has left my mind, so I can chill now.

Now, it's just driving along motorways every other day to go and see friends and family.

I worked out that the 3rd and 4th Jan are the only 2 days rest I get.

But, I'll get to see some old friends again... and that makes it all good.

[–] Cyber@feddit.uk 2 points 1 week ago (1 children)

Not sure about "dangerous", Mastercard and Visa have to comply with PCIDSS...

I'm not sure if Google and Apple do...

[–] Cyber@feddit.uk 6 points 1 week ago (1 children)

How / does this affect ntppool.org? (Which I refer to)

Seems all is calm there, but I guess they ref those time sources too?

 

I've been generally running various different ways of backing up files to my NAS (which then backs up to other locations...) - mostly syncthing for photos and large collections of files, but I tend to use rsync to push out config backups to the NAS once something's working.

But, the NAS is only powered up a few times a day (to save on electricity costs), which is fine for manual pushes, but makes scheduling backups a bit tricky.

It dawned on me that it might be better for the NAS to pull the files via rsync instead of pushing them.

Anyone tried this route and have any advice?

 

Just been supporting someone remotely and was waiting for them to turn on their laptop...

Whilst troubleshooting I ran uptime to see how long we'd been working on the problem and saw it was up for ~2 weeks...

Which made me think ... how do you tell how long a device (laptop) has been running, but since it's last suspend / hibernation?

I can find it from other clues such as journalctl -b -fu systemd-logind and look for Lid opened, but I was really looking for an smarter way...

Just a nice little challenge for anyone bored at this time of year :)

 

I stumbled across Diode whilst looking for ways to do secure off-site backups (to my own equipment at another house) and it feels like a paid-for TOR (Ok, there is a free option)

I'm looking for any real experience as the site has too much marketing lingo in it:

Every Client is secured with a public/private key self-custody identity

And this doesn't seem very dynamic if I want to change something:

Diode’s Blockchain Name System can be used for Client friendly names

And somewhere on the site it infers unlimited storage...!

So, is the free option worth me looking into, or is it a waste of time?

 

The internet is down... well, if you use AWS services it would appear to be true.

Things such as Alexa (now working again?), Ring, etc are either slow or not responding whilst they try to get things running again

 

A colleague was discussing an option to use different vendors either side of a DMZ and suggested StormShield... I'd not heard of them before.

Looks interesting, albeit an old Gartner "magic quadrant" showed their firewalls as being in the bottom left corner... so I thought I'd ask here for real-life opinions on them... if any?

 

Interesting article where ~35k devices from 45 manufacturers have vulnerabilities

Advice is probably not as easy to implement as this in real life:

Forescout recommends that you immediately stop the direct connection of devices to the Internet, to use VPNs or segmented networks, and to ensure prompt firmware updates. Otherwise, tens of thousands of systems around the world will remain a potential entry point for attackers.

 

I have a few VMs and PMs around the house that I'd setup over time and I'd now like to rebuild some, not to mention just simplify the whole lot.

How the hell do I get from a working system to an equivalent ansible playbook without many (MANY) iterations of trial & error - and potentially destroying the running system??

Ducking around didn't really show much so I'm either missing a concept / keyword, or, no-one does this.

Pointers?

TIA

 

First holiday rental BBQ of the year.

These are always an adventure, broken legs, crumbling gas pipes, spiders and snails in all the crevices...

In this case, it's not too bad, just lit the fire so we'll see if it explodes / melts...

And... just burgers, sausages and halloumi for this one, nothing too adventurous

 

It's already 25DegC in my home office.

The best cooling automation I have so far is to turn the fan on when it's 25 for >5mins.

Is there a nice zigbee / ESP32 evaporation cooler that I can enjoying setting up with HA?

 

"On 11th November BBC iPlayer will no longer be available directly on this device."

OK, so, I didn't purchase this particular (Blaupunkt) TV, but as it's my mother's then, well, I'm the one that has to "fix" this.

Personally, I use TVs as a simple screen and watch everything through other devices (Roku, or a Linux PC running MythTV).

I see the BBC website has some links to review sites, but I thought this might be another place to ask for - preferably open source - devices that could be used.

Comments?

view more: next ›