• 0 Posts
  • 157 Comments
Joined 3 years ago
cake
Cake day: June 13th, 2023

help-circle
  • I’m definitely in the thinking with others that keep admin/privileged and normal users separate. I kind of look at it as a way to minimize fallout from any unexpected security compromises. Will always do my best to prevent/avoid that, but if it happens it better happen on a non-privileged account.

    But the downside is it can be quite inconvenient, especially if I need to administer or debug something quickly.

    A bit, but I don’t find that to be too cumbersome. The initial setup period yeah, you’re constantly jumping into admin mode, but once things are configured and settled down you hopefully don’t need to jump into admin mode often.

    I’m also not sure if my homelab expands, should I share the admin user credentials with other human admins or not.

    That’s a fair question and it depends on the service(s) really. I don’t know what the general consensus is on that but I’d say that other admins should have their own separate admin account and user account (e.g. call it “joe” and “joe_admin” or whatever). Sharing credentials, especially admin credentials, seems like its own security risk. But I also get that sometimes it’s simply not possible to maintain multiple admin accounts and you just have to do the best you can.


  • It is built by AI agents, for AI agents. I guess it’s interesting seeing software built from the ground up with hooks built in for every single action to be controlled by an AI agent, in that sense you could direct your own AI agent to use this to create/edit images. But even then I wouldn’t trust this thing to edit and save over existing images, it is way too new and will have plenty of non-obvious bugs that would get embedded in every image you save.

    And like most vibe coded AI projects this one will probably cease being maintained long-term.

    If you’re actually going to work with images you plan to keep long term just stick to GIMP, Krita, etc.


  • That sounds right, there is a delay from the time a live show airs to the time/day it shows up on one of the big official streaming websites. It’s not instant.

    Maybe if someone is posting a lower quality live capture that could end up being a bit faster? But if someone were already doing that with that show you would’ve seen it most likely. And that still means having to wait until the show ends before anything else happens.

    The other option is IPTV sources (not torrents) where you could maybe just watch a live stream. I don’t use that so can’t offer any advice but it’s probably discussed in the wiki and FMHY pages (and earlier Lemmy posts).




  • Haven’t heard of torrent clients, or anything related to the bittorrent protocol, running on the Freenet network. They do have a list of their standard apps here https://freenet.org/apps/ , were you referring to some other app enabling bittorrent that isn’t listed there?

    To be fair I’m way out of the loop, last time I tried Freenet must have been 20-something years ago. Apparently its been forked at some point and now Hyphanet exists as well (https://www.hyphanet.org/). EDIT: Not forked exactly, but there are two versions of Freenet now as explained in the FAQ https://freenet.org/about/faq/#what-is-the-projects-history

    The only reason I noticed is that back when I tried Freenet there was 1 file sharing app that people sort of used called Frost (https://jtcfrost.sourceforge.net/) I just looked it up and it still exists but seems to work for the Hyphanet version of Freenet, maybe not the baseline Freenet itself. It’s not torrents but it exists if that’s something you’re interested in.

    Also keep in mind unless things have drastically changed Freenet is SLOW, so file sharing is going to be SLOW. You’ve been warned :P

    PS - Maybe check out I2P (https://i2p.net/), Torrents over I2P is a thing and more people should be using that IMO. You won’t need a VPN nor need to worry about port forwarding anymore. Downside is that it’s slower than regular torrents (but much, much faster than anything on Freenet). Another downside is that not enough people are using it so not a lot of seeds/peers.




  • Maybe that’s specific to UK? I’ve never had to upload ID at any of the general domain registrars but am not in the UK. Maybe you’re looking for a registrar that doesn’t do that for UK residents, specifically. (or you might need to use a VPN or something, dunno)

    Privacy aside most people tend to buy a domain at the cheapest registrar (keeping in mind whether to renew at that registrar later or transfer out to a new one when the time comes). There are domain registrar sites people use for comparison, been a bit since I’ve needed to shop around but sites like https://tld-list.com/ can be helpful. You could try doing a lookup there and work your way down the list until you find one you like.

    Or if you’re really set on looking for a service that actually advertises no KYC then looking through this list may help https://kycnot.me/?categories=domains (njalla is one of the listed ones there as someone else mentioned).


  • I made the jump to OPNsense recently, ended up buying a Protecli to install it on and its been working great so far. For me it sort of made sense since I wanted to have a little purpose built fanless system with Intel NICs, and Coreboot and Console access via USB are nice bonuses too. My original thinking was to try running other services on the same hardware (using Proxmox maybe) but for now it just runs OPNsense and nothing else… maybe it’s better for the network firewall to just be the network firewall, it’s the one thing I don’t want to crash and have an outage with.

    But you don’t have to do that, pretty much any Intel/AMD based system with multiple Intel NICs should work with an OPNsense install. The other mini pc vendors will be a bit cheaper for sure, just be mindful of RAM and storage prices right now.






  • Those who bought an Office license back in 2019 are very much likely to have upgraded their packages already

    You’d be shocked how often that’s not the case. So, so many people and small businesses don’t feel like buying another new license of MS Office and instead just re-install an old licensed version on their new system when needed. Just in my own bubble of working at different small businesses or helping people with computers I’ve repeatedly encountered ancient versions of MS Office that people cling on to. People that do lots of IT support in the field must encounter this fairly regularly.

    When I ask/question people on using their old outdated MS Office it’s some combination of “I don’t want to learn something new” or “I paid for it so I’ll keep using it”.

    And nowadays, besides LibreOffice, people also have the option of using MS Office Online or Google Docs but that still falls into the category of needing to do things slightly differently vs what they’re used to.


  • Not sure if you already know, the Piefed software (and pifed.social site) does maintain a list of default domains they block. It’s mostly right leaning/far right type stuff but still, hosting a conservatism community on an instance that censors/blocks a lot of those related links… is certainly a choice.

    See https://lemmy.ml/post/47022286/25574741 and rest of the post discussing it.

    I’ve no interest in the community, just letting you know in case you’re wondering why certain news site links don’t show up there.


  • Offhand I’d suspect a finicky adapter. Does the adapter work with other disks? Does the disk work when plugged into a server/computer directly?

    Assuming it’s the adapter being finicky - did you happen to try using other USB cables with the adapter?

    When plugging into the system - Does the dmesg output display anything else useful, any warnings or anything? I would have thought it would give you the USB drive chipset vendor/model, I didn’t think Sabrent builds their own chipsets but could be wrong.

    Also would try doing a smartctl --scan followed by a smartctl -a /dev/YOUR-EXTERNAL-DRIVE and see what comes up. (those are part of smartmontools)


  • tried it via tor

    Doesn’t load in Tor for me either but I suspect their site is simply blocking Tor. The site does load fine outside Tor in the regular clearnet.

    9 times out of 10 these sort of things turn out to be a DNS issue on your end, you might want to double-check you’re actually able to query their IP address via nslookup freedns.afraid.org or similar. (assuming you’ve already tried other web browsers to rule out issues with installed extensions or specific browser settings).


  • Adding onto the other comments, if you have admin access to your network router/firewall you can configure the incoming port forward itself to only allow specific IP addresses while dropping traffic from any other internet WAN IPs. It’s a bit like using the Jellyfin whitelist/blacklist but doing it at the network level. This drops all unwanted internet traffic to that port at the firewall before ever reaching the Jellyfin software. Downside is having to occasionally update the firewall whenever there are IP address changes.

    This is probably only feasible if you only have some specific Jellyfin clients in mind to accept connections from, not any random person from any random WAN IP address.