• 0 Posts
Joined 6 months ago
Cake day: December 27th, 2023

  • that could come in veery handy once microsoft wants to pull some plugs. i guess we can be grateful for the backup that is 1. not 100% in m$ hands any more then and 2nd cannot be as easy destroyed as some backups at archive.org. i actually hoped for someone with enough money to create this type of security after m$ assimilated github and thought like “does nobody see the rising danger there?” but even if china’s great fork might be more reliable than m$ over time, maybe it’s better to have your own backups of all the things you actually may need in future.

    btw did microsoft manage to get rid of the hackers that settled into their network for … how long??

    i guess they’ll tell

  • i once had to look at a firefall appliance cluster, (discovered, it could not do any failover in its current state but somehow the decider was ok with that) but when looking at its logs, i discovered an rsh and rcp access from an ip address that belonged to a military organisation from a different continent. i had to make it a security incident. later the vendor said that this was only the cluster internal routing (over the dedicated crosslink), used for synchronisation (the thing that did not work) and was only used by a separate routing table only for clustersync and that could never be used for real traffic. but why not simply use an ip that you “own” by yourself and PTR it with a hint about what this ip is used for? instead of customers scratching their head why military still uses rcp and rsh. i guess because no company reads firewall logs anyway XD

    someone elses ip? yes! becuase they’ll never find out !!1!

    i really appreciate that ipv6 has things like a dedicated documentation address range and that fc00:/7 is nicely short.

  • ipv6 in companies… ipv6 is not hard, but for internal networking no company (really) “needs” more than rfc1918 address space. thus any decision in that direction is always “less” needed than any bonus for (da)magement personnel is crucial for the whole companies survival…

    for companies services to be reachable from outside/ipv6 mostly “only” the loadbalancers/revproxies etc need to be ipv6 ready but … this i.e. also produces logs that possibly break decades old regexes that no one understands any more (as the good engineers left due to too many boni payed to damagement personnel) while other access/deny rules that could break or worse let through where they should block (remember that 192.168. could the local part of ipv6 IF sone genious used a matching mech that treats the dot “.” as a wildcard as overpayed damagement personnel made them rush too fast), could be hidden “somewhere”. altogether technical debt is a huge blocker for everything, especially company growth, and if no customer “demands” ipv6, then it stays on the damagement personnels list as “fulfilling the whishes of engineers to keep them happy” instead of on the always deleted “cleaning up technical debt caused by damagement personnel” list.

    setting up firewalls for ipv6 is quite easy and if you go the finegrained “whitelisted or drop/block” approach from the beginning it might take a bit for ipv6 specials to be known to you, but the much bigger thing is IMHO the then current state of firewall rules. and who knows every existing rule? what rules should be removed already and must not be ported to ipv6? usually firewalls and their rules are a big mess due to … again too many boni payed to damagement personnel, hindering the company from the needed steps forward…

    ipv6 adoption is slow for reasons that are driving huge cars that in turn speed up other problems ;-|

  • maybe start with an adjustable setup:

    • rent a cheap vm, i got one for 1€/month (for the first year,cancel monthly) from ovh currently
    • setup 3 openvpn instances to redirect all routes through the tunnel, one with ipv4 only, one with ipv6 only and one with both
    • setup the client on your mobile phone and your laptop both with all three vpns to choose from
    • have the option to choose now and try out ipv6, standalone or dualstack depending on what vpn you switch on
    • use this setup to blame services that don’t support ipv6 yet or maybe are broken with dualstack 🤣
    • rise from under-the-stone (disabling ipv6 only) to in-sunlight (to a well-above-industry-standart-level !!! “quick” new network technologies adopting “genious”) 🤣
    • improve your openvpn setup from above to be reachable “by” ipv6 too if you haven’t done it from the beginning, done: reach the pro-level of the-late-adopter-noob-group

    (if you want, ask for config snippets)

    btw i prefer to wait for ipv8😁 before “demanding” ipv6 from services i use 🤣

  • its amazing how good services can be if some just skip the corporation-obligatory adding of enshittification. i remember an article about a downloadable (but not very legal) DVD with an installer for a (worthless but very popular) OS that included heaps of expensive industry software and the installer was point-klick what you want and then all is done in background and fully usable once done. reading that article it seemed to be a better installer than ever produced by any company for any product.

    however as that payed streaming service seemingly leaves huge amount of bank records and ran for such a long time, i guess it would have been easy to stop their customers from paying them. it rather might seem that the real intentions of content corporations might not truely be what they officially claim. maybe we learn in 25 years that the content corporations really were behind such services, maybe like “better get money from ALL markets!” or such.

  • 🤔 maybe there is a lack of distributed fediversed search engine instances where:

    1. everyone can host a search engine for their very own pages
    2. everyone can crawl other pages and provide (maybe with permissions) the crawled data to other search engines (as compressed snapshots, api …) or provide a search engine by themselves for all.
    3. such search engines can be ranked or marked with “has anti features xyz” and put into followable ‘collections’ per topics.
    4. possibility to add 3rd party rankings and filters, so that one can use only a subset of a search engine list that was pieced together by someone you know or trust, reduced by rankings or filters published by another one you somehow trust to limit the items in the first list.

    then: “for software development i use linuz personal ‘devel’ collection, this way i don’t have to manually click through big G’s gigabytes of SpaMalAds they always only frustrate you with and i am not distracted with dyo stuff when searching for server administration things like ‘puppet stages howto’. for my home projects i use my friends ‘home of DYO’ collection, i get more results than i need but get new ideas as well without seeing work stuff when looking up how to build a puppet stage for my little one. 👨‍👧 for kids its awesome, our school provides a collection including specialized search instances that fit learning, while that collection is also peer reviewed by a company that spezialized to ensure it does to not contain search engine instances that also index any unfitting content pages.”

    oh btw: no i do not have any info about duckduckgo status unfortunately, i stepped over it by myself today 🤷‍♀️

  • smb@lemmy.mltolinuxmemes@lemmy.worldRussian delete
    3 months ago
     unset RANDOM

    If RANDOM is unset, it loses its special properties, even if it is subsequently reset.

    HISTCONTROL If the list of values includes ignorespace, lines which begin with a space character are not saved in the history list.

    RTFM can save your server AND your bet ;-)

    it is cheating of course if the predefined rules tell us about such requirements and if these are not met any more when unsetting RANDOM ahead of it.

  • smb@lemmy.mltolinuxmemes@lemmy.worldThat's why we need two ssds for dual boot
    3 months ago

    i have two other possibilities at hand, that do not involve two SSDs:

    1. don’t use intentionally broken software in the first place ;-)
    2. use another device for bootloader, could be a readonly CD or a usb drive, PXE/bootp could also do it.

    And if your company wants you to use rotten software, they also want you to give them the delays, downtimes and annoyances that naturally come with rotten decisions, just keep that in mind.

    Here is one thing to remember and why i call it rotten software and rotten decisions:

    Microsoft offers a free “blame the ransomware people” to any CTO who just wants to receive money without working at all or not having to “think” during work. That same CTO can get a bonus after “solving” the ransomware issue and then: “look how ‘invaluable’ that CTO is to the company” he “worked” for month ( yelling at engineers he previously told to install rotten software???) and resolved the ransomware issue!! This is same to those who work. no law has ever given people that many payed breaks from work as “rotten software” vendors did. and if you made a mistake and did not get trained before, you could blame bot beeing trained.

    Look at it from a “fingerpointer” point of view, one cloud always blame someone else for everything and the only one to blame is too big to fail and also untouchable due to their army of darkness lawyers. thus anything happened? no one could be guilty AND be held responsible. Also if one is slow at work, and so is his OS, obviously easy to blame someone else again.

    so microsoft offers a “solution” to “boss wants you to work more and quicker” but remember, that same boss only “needs” a cover for his own ass to be able to point to someone else and the ones creating the rotten software do deliver that ;-)

    i do not know any better wording for such a situation than “rotten” thus i name it so.

  • quadrillion you say…

    yes, banksters like to create bubbles, inflate, trade with them until all value was extracted, let the bubble burst and then let all bus drivers and other low income people pay for the loss which is the gain of some parasites.

    quadrillion… bubble->add some time->burst

    if we have both two dollars, one for security and one for trading. we both “invest” in buying call orders from each other for a dollar and repeat it a billion times on the same day then we creates a “cash flow” of two billion dollars alone, yet the value behind it was less than 2 dollars.

    that is what high performance traders do, they sell/buy thousands of times per second, creating the illusion of cash flow and worth, yet their actions have negative value, destabilize the market on the long run to create illusion of worth. but that illusion is very welcome as it blinds people and let them believe and invest which then can again be harvested until the bubble bursts…

    lets remove two dollars from my above example… i have now only one dollar for trading so do you. but none for security. would you buy a call-option from someone without security? no. so wont i. thus remove 2 dollars (half of them) and 2 billion dollars of cash flow cease to exist on that day alone!! well, the next day looks the same then. lol. guess that would be called a collapse that 'nobody could have foreseen". lol.

    7 trillion usd is roundabout half of the worldwide existing usd in 2017 (cash and database money, no debts, no could-be-printed, no needs-to-equaled-later) that is if wikipedia is correct and i did not miscalculate the ‘trillion’ which is just a sloppy ‘billion’ here. And further more the “worth” of the really ‘existing’ usd looks to me like a huge bubble by itself waiting to burst some day, but that is not the point or discussion here.

    lets just hope that this “quadrillion bubble” you seem to be fond of does not burst too soon. there are still some resources to be ripped of from earth, some countries that could be enslavelaboured just to postpone the burst of that bubble, so the wave of destruction could carry that bubble for another generation maybe and we are sort of “safe”, but not sure. thus maybe lets hope it bursts rather sooner than later preserving some resources and preventing huge amount of hurt and damage from beeing done while leaving chance for a more stable bubble-free world without manmade intentionally created crisises just to let “others” pay for it.

    intentionally created illusions are in total the most costly “realities” ;-)

  • yeah, thats exactly what i am saying, most of the money ever printed sits in places it will never leave, so IMO there are no 5trillion available on the market and the cash flow does not allow to take out even a “little” bit (speaking in 1e12 terms) before things collapse for the majority.

    oh yes, printing money works exactly like that, it was just printed in the past and nowadays they just increase numbers in databases: plopp and the value of that currency and especially everything that is bound to it decreases, ripping you of what you have saved without even touching your bank account.

  • i guess the number they want to fundraise comes from an AI (maybe because they do not want to think by themselves any more)

    as far as i am right with the “trillion” which is just a “billion” where i live and 1e12 (a 1 followed by 12 zeroes)

    but according to wikipedia (in 2017) there are only: USD existing in the world while they want to fundraise USD

    so basically they want half of the USD that had been printed in all history up until 2017.

    maybe they just want to say that they want to push YOU into poverty, who knows.

    may it by getting it from you or by letting some govs print money faster than ever, reducing your money to half or less of a fraction of its previous virtual value.

    But the AI that came up with that number had “good luck” to not come up with the need of “more” money than ever has existed =D

    i think i’ld prefer to use a dice when i really need a random “decision”.

    update: Plz tell me if i am wrong with the numbers or what the current 2024 number of all “printed” (well physical AND digital) USD in the world is at the moment. thx