BitPirate

joined 1 year ago
[–] BitPirate@feddit.de 9 points 1 year ago (1 children)

Aber sie wird ja eh nicht mit ihrer Partei stärkste Kraft

Ähnliche Aussagen über die AFD sind schlecht gealtert. Da war das Kredo auch immer "ach, die paar Spinner".

[–] BitPirate@feddit.de 12 points 1 year ago

nonfree drivers accessible right away

Non-free firmware is included in the Debian installer since Bookworm.

[–] BitPirate@feddit.de 6 points 1 year ago (3 children)

Do you really know how Wireguard works?

Updating without a reboot only works for wireguard-go. The default implementation runs in the kernel. An update to it would require kernel live patching.

Wireguard doesn't answer to unsigned packets. Using obscure ports or even port knocking is rather pointless. It's indistinguishable from a closed port.

I'd rather take Casaos out of the equation and target Ubuntus' Wireguard stack instead.

[–] BitPirate@feddit.de 7 points 1 year ago (2 children)

Protocol ossification is a huge problem. That's one of the reasons why the IETF went with the UDP based QUIC for HTTP/3.

[–] BitPirate@feddit.de 4 points 1 year ago (1 children)
[–] BitPirate@feddit.de 1 points 1 year ago (1 children)

Jellyfin is completely free. I only used it shortly in my LAN environment so I can't give you any numbers. It should roughly be in the same ballpark as plex though.

[–] BitPirate@feddit.de 1 points 1 year ago (3 children)

You can skip fail2ban for SSH. I missed the important bit. Duh...

Never used Plex but had a good experience with Jellyfin.

[–] BitPirate@feddit.de 5 points 1 year ago (5 children)

Just a few thoughts:

  • don't cheap out. Building your whole stack on top of free or ultra budget providers is going to backfire eventually
  • check the traffic limits if you want to stream 4k content from your NAS
  • if latency and bandwidth is a concern, you need to select a VPS provider with good peering. This fully depends on your ISP.
  • i'd recommend setting things up with split DNS. Your DNS server would answer with local IPs for queries from within your LAN and with the IP of the VPS for external queries.
  • take a look at AdGuard Home
  • you can skip fail2ban if you go straight for ssh keys
  • 100% wireguard
[–] BitPirate@feddit.de 7 points 1 year ago (1 children)

Aren't auto updates a solved problem? It's only the official f-droid client that doesn't support this.

[–] BitPirate@feddit.de 11 points 1 year ago (1 children)
[–] BitPirate@feddit.de 16 points 1 year ago (1 children)

The alcohol test is carried out using a breathalyser and, if positive, is confirmed by a blood sample. This works well because it measures the concentration of alcohol still in your blood. A positive test means that the driver is (still) drunk and not fit to drive.

The test method for THC is not as accurate. A urine sample can still be positive 3(!) days after smoking a joint. This is even worse with hair samples or if the person smokes occasionally.

Limiting testing to THC alone would be a sensible decision. At the moment they also test for THC-COOH, which is a metabolic by-product and lasts much longer in the body.

Without a change in testing methodology, you could lose your driving licence on Monday because you smoked a single joint on Friday. A bottle of vodka on Saturday? No problemo.

view more: ‹ prev next ›