• 0 Posts
  • 8 Comments
Joined 2 years ago
cake
Cake day: June 20th, 2023

help-circle
  • Tailscale is very popular among people I know who have similar problems. Supposedly it’s pretty transparent and easy to use.

    If you want to do it yourself, setting up dyndns and a wireguard node on your network (with the wireguard udp port forwarded to it) is probably the easiest path. The official wireguard vpn app is pretty good at least for android and mac, and for a linux client you can just set up the wireguard thing directly. There are pretty good tutorials for this iirc.

    Some dns name pointing to your home IP might in theory be an indication to potential hackers that there’s something there, but just having an alive IP on the internet will already get you malicious scans. Wireguard doesn’t respond unless the incoming packet is properly signed so it doesn’t show up in a regular scan.

    Geo-restriction might just give a false sense of security. Fail2ban is probably overkill for a single udp port. Better to invest in having automatic security upgrades on and making your internal network more zero trust


  • lurklurk@lemmy.worldtomemes@lemmy.worldMeme.
    link
    fedilink
    arrow-up
    4
    ·
    3 months ago

    I see plenty of ML people being awful in meme communities. I’m amazed you don’t. Any even remotely political meme will attract them, or at least would back when they were out in force supporting Trump leading up to the election.

    And that is even though I’ve blocked ML and have a hair trigger for blocking .ml accounts



  • lurklurk@lemmy.worldtomemes@lemmy.worldMeme.
    link
    fedilink
    arrow-up
    4
    ·
    3 months ago

    Well, you’d need to pay a very specific amount of attention to not notice the tankies from ML, but really notice and be bothered but people shunning ML because of the tankies. I guess it’s possible, but it seems unlikely to be common



  • lurklurk@lemmy.worldtomemes@lemmy.worldMeme.
    link
    fedilink
    arrow-up
    11
    arrow-down
    4
    ·
    3 months ago

    Sure, and anyone can walk into a nazi bar. But with threads like this being fairly common, and ML people behaving as they do, you have every chance to realise pretty quickly and leave

    Hell, ML people are bad enough that I imagine a lot of sane people leave lemmy entirely, if they pick an instance that hasn’t defederated ML yet. I’m looking at alternatives myself as getting associated with these types of people isn’t a great idea, and the lemmy developers are part of the problem



  • Or run the raid 5 or 6 separately, with hardware raid or mdadm

    Even for simple mirroring there’s an argument to be made for running it separately from btrfs using mdadm. You do lose the benefit of btrfs being able to automatically pick the valid copy on localised corruption, but the admin tools are easier to use and more proven in a case of full disk failure, and if you run an encrypted block device you need to encrypt half as much stuff.