fishynoob

joined 5 days ago
[–] fishynoob@infosec.pub 1 points 10 hours ago

Sorry, I don't use either of those services. Would you be willing to explain your setup? I use my own CA with HAProxy for TLS termination (with servers side TLS) so I might be able to give some general tips. Maybe.

[–] fishynoob@infosec.pub 1 points 1 day ago

It definitely takes more effort to get started

[–] fishynoob@infosec.pub 1 points 1 day ago (1 children)

You need something like stunnel/OpenVPN flag which masks your traffic as HTTPS I think. Even then DPI can probably detect it

[–] fishynoob@infosec.pub 4 points 1 day ago (2 children)

Hey, it's nice to talk to you. I've seen you around this community and I like your comments.

I said K8S because I work with it, but if OP doesn't need HA I guess Podman is fine too. I don't like Docker anymore after what they pulled a year or so back

[–] fishynoob@infosec.pub 1 points 1 day ago (1 children)

Yes but if your instance holds a decent population then it's a net benefit

[–] fishynoob@infosec.pub 2 points 1 day ago (4 children)

Run K8S on a VM on Proxmox for this stuff

[–] fishynoob@infosec.pub 1 points 2 days ago

Thanks for this, I didn't know Scaleway had a free service. I'll definitely take a look

[–] fishynoob@infosec.pub 1 points 2 days ago (1 children)

Sorry but I don't want a MacBook. I'll run *nix on this laptop for my workloads.

I see. The Framework 13 with Ryzen 9 HX 370 is about $1700 and the Ryzen 7 from the last generation is $900. I think both are priced a bit too expensive for a barebones device, even if they are super repairable. A $100-$200 reduction would be my ideal price for these laptops.

Thanks for the comment.

[–] fishynoob@infosec.pub 1 points 2 days ago

I'm in the US. I was looking up laptops but I don't see powerful laptops under $3000. Maybe I'm looking at the wrong websites

[–] fishynoob@infosec.pub 1 points 2 days ago* (last edited 2 days ago) (2 children)

I thought Clevo only sold to businesses? I've thought about Clevo but dismissed them because I assumed it was not realistic to actually buy a laptop from them, so this is news to me. Where can I get an unbranded Clevo laptop?

[–] fishynoob@infosec.pub 0 points 2 days ago

Thanks for the comment. I need the most CPU horsepower in a laptop that I can repair and find parts easily for under $1000. My projects need a lot of CPU power but I anticipate I'll be moving around with it (I don't care about the weight though, I'll chuck it in a bag so that's not an issue. Neither is battery life since I won't be working on the go, just take the laptop to different locations).

 

I have been looking at hardening *nix servers for my lab and maybe carry some of that over to work. CIS benchmarks are something I like doing but that's barely scratching the surface. What do you do for your servers?

I have Lynis, systemd-analyze, Kernel self protection in mind but I'd love to hear your thoughts. Bonus points for the most paranoid setups!

view more: next ›