encbladexp, to security German
@encbladexp@chaos.social avatar

Schicke Seite: https://www.tunnelvisionbug.com

Mal wieder ein CVE mit Logo, ich finde das Logo aber dieses mal weniger Hübsch.

Khrys, to random French
@Khrys@mamot.fr avatar
9x0rg,
@9x0rg@mamot.fr avatar

@Khrys Article sympa qui leur permet de se dédouaner d'avoir fait de la pub dans le passé pour N*rdVPN - "oops, on avait besoin de sous". Fair enough. Mais ça manque un tantinet d'explications techniques.

TL;DR:

Utilisez #Wireguard et pas l'usine à gaz de #OpenVPN et ce avec l'un des fournisseurs suivants:

  • Proton
  • Mullvad
  • IVPN

Si vous voulez savoir pourquoi ? Des explications très claires ici.

https://www.privacyguides.org/en/vpn/

p/s. Le VPN de Mozzila c'est Mullvad sous le capot.

linuxiac, to RaspberryPi
@linuxiac@mastodon.social avatar
lovisix, to IT French
@lovisix@social.zdx.fr avatar

Y a t'il des personnes qui font tourner un serveur OpenVPN v2.5 et qui ony des clients OpenVPN v2.6 ?

J'ai besoin de lumières sur la configuration du client.

Le retoot fait comprendre Kerberos.


gregdosh, to homelab
@gregdosh@auengun.net avatar

Homelab TODO:
There is an existing pfSense guide to automatically renew an OpenVPN connection to PIA on some cadence. It also handles port forwarding for applications.

I've created a more modern idea with their Wireguard servers along with renewing the tunnel every 15 minutes and adapted to work with qBittorrent. I need to document and get this into version control somewhere.

https://github.com/fm407/PIA-NextGen-PortForwarding

retiolus, to random
@retiolus@mamot.fr avatar

I'll tell you what.

is a FUCKING SHIT.

dada, to android French
@dada@diaspodon.fr avatar

Dites les pro de , vous savez comment configurer l'outil pour que les requêtes DNS passent par le VPN et pas les autres.
Ça serait pour bloquer les pub sur un

:retootPlz:

governa, to linux
@governa@fosstodon.org avatar
gregsie,

@governa
Good article, but much easier to use ssh tunnelling to get access to internal network resources.
I can't really think of a use case for as it states in the note it doesn't allow port forwards within the cluster. I'll try this when I am away from home and see how data is routed

maralorn, to random
@maralorn@chaos.social avatar

The first release of was in 2001 https://en.wikipedia.org/wiki/OpenVPN and I am sure the concept of VPNs is older than that.

But somehow got to be one of the "TIME best inventions in 2022"?
https://time.com/collection/best-inventions-2022/6228878/nord-security-nordvpn/

Excellent joke.

Also quite telling that blocking ads and circumventing geo-ip blocking counts as innovation these days. Truly a kind of innovation we wouldn’t have without

meesj, to RaspberryPi

I'm looking for a router software that offers:

Any recommendations?

animemer, to random

hey, in a debate with @thecatcollective

over parents being delusional,

can you list any open source software that has become the industry standard, so far i got

  • obs- video-streaming
  • android
  • Linux and BSD on servers
  • both chrome and firefox are
    based on open source
kkarhan,

@animemer @thecatcollective

fantafanta, to random German
@fantafanta@mastodon.social avatar

Nach Ausbruch der Coronapandemie beschlossen die EU-Staaten, ein Videokonferenzsystem für Top-Secret-Treffen anzuschaffen. Doch auch ein Jahr nach dem geplanten Start lässt das System weiter auf sich warten. Zu den Gründen schweigt der Rat.
https://netzpolitik.org/2023/trotz-millionenbudget-eu-rat-scheitert-an-sicheren-videokonferenzen/

kkarhan,

@fantafanta vielleicht weil man mit #TVöD E9 keine gescheiten IT'ler*innen bekommt die wissen wie memsch nen #OpenVPn oder gar #WireGuard & #JitsiMeet oder auch nur #WebCall installiert?

stefano, to proxmox
@stefano@bsd.cafe avatar

Old customer infrastructure based on 5 and an ancient server running an outdated .
They asked me to update everything because the ERP provider (a small software house) accessing via claims the pfSense version is too old. I agree and decide to upgrade Proxmox.

On the old Dell, I install and, in agreement with the ERP provider, a VPN.

After a few days, they 'recall' me because, for their internal compliance and following their ' manual,' they need to enter the password manually every time they connect, and Wireguard doesn't support user/password concept.

They ask for the possibility to change the PSK with each access to ensure that the one in their configuration files is not the current one - an absurd operation. I don't have a maintenance contract and can't take this responsibility, as it doesn't make sense. Clearly, they agreed on Wireguard without even knowing what it was.
To avoid issues, I ask them what to install instead. They suggest might be acceptable. I proceed accordingly. They contact me again: 'The version of OpenVPN is not suitable, and OpenBSD is not certified according to our security procedures.' I ask them to tell me what is certified. They respond: ' 7, - and the version of OpenVPN from Debian 7.'
I politely point out that Debian 7 reached its End of Life in 2016, and even the extended LTS has been unsupported for 3 years. They don't care, they must abide by their manual - it's safe for them.

The customer asks me to accommodate them anyway, but I reflect on the fact that when they inevitably get compromised, it will be my fault for installing something so outdated today.

I declined the job - limiting myself to updating Proxmox.

I'm not sure if I'm more offended by the bureaucracy of certain 'internal manuals' or by the closed-mindedness of certain colleagues who can't stand up against such dynamics.

mstankiewicz, to Matrix Polish
@mstankiewicz@pol.social avatar

Dziś chyba jakaś większa awaria w @ftdl - nie działa ich strona internetowa, tak samo m.in. panel ich , serwery i strona @cesarstwokwadratowe, wyszukiwarka @svmetasearch, czat , bin.pol.social oraz yt.elonego.com.
Co robić? Jak żyć?

I jakim cudem działa ten ?

@pomoc

mstankiewicz,
@mstankiewicz@pol.social avatar

Nie jest to jednak awaria w @ftdl, za zamieszanie.
Mam dziwny z – nie działa mi połowa stron internetowych, tak jakby były problemy z DNSami niektórych stron. Nie działają mi serwisy, o których wspomniałem wcześniej, ale także moje postawione w . Co ciekawe strona działa, ale nie chce nic się załadować.
Na pewno nie jest to wina Internetu, ponieważ na telefonie wszystko działa. Nie mam żadnego , nie mam ustawionych żadnych customowych . Nie jest to też wina przeglądarki, ponieważ sprawdziłem na ośmiu. Nie wiem co robić.
Nie instalowałem dzisiaj żadnych programów, nie otwierałem podejrzanych maili oraz nie przeglądałem żadnych podejrzanych stron. Jedyne co robiłem i co najbardziej nasuwa mi się na myśl to usunięcie aplikacji oraz 1.1.1.1.
Czy ktoś z was może wie, jak to naprawić?

@cesarstwokwadratowe @svmetasearch @pomoc

ciferecaNinjo, to cybersecurity in Android forces us to run a WiFi hotspot. Not good. OpenVPN workaround…

Good to know. I think I have an old no-name one in storage I might dig out & try at some point. But that effort is worse than buying one. So for the moment I’m stuck with attempting reverse tethering.

I love the swiss-army-knife that could have been, had they not tried to nanny users by forcing encryption.

ChickenPwny, to random

vpns are dumb nobody configurres them correctly

kkarhan,

@ChickenPwny I do - but one must be a spechal kind of person to f**k up & on ...

SecurityWriter, to random

Do you route your internal traffic through your firewall rules and policies?

If not, you are assuming a LOT of things about a LOT of things :)

kkarhan,

@SecurityWriter @datenritter OFC, I do use Certificate & Key based VPNs with only allow-listed users and endpoints to tunnel insecure protocols and access to said systems.

You don't want to know how many @Raspberry_Pi with and modems are mounted on DIN-Rails solely to do and allow ...

czottmann, (edited ) to macos
@czottmann@norden.social avatar

Random shoutout to my personal go-to app when it comes to #PDF manipulation on #macOS, #PDFGenius 4. I use it for many years by now, and it hasn't let me down once. Absolute steal for €10.

https://apps.apple.com/de/app/pdfgenius-4/id522090209?l=en&mt=12

Do you use little overlooked gems like that one yourself, or wrote one yourself? Something you wish more people would know about? Give a shoutout and tag it with #FridayFeature. Just reply to this here post, include the tag, and I'll boost!

Let's get this party started, give it a 🔄

forceofhabit,

@czottmann client, continues updates, Mac and Windows

https://www.sparklabs.com/viscosity/download/

Stark9837, to linux
@Stark9837@techhub.social avatar

I am using @protonvpn on . The process was a lot easier than has suggested the last few years, so they greatly improved it.

However, it lacks the same settings menu as on and I want to exclude some local IP addresses and from using my VPN.

Does someone have a guide for this, or is there some other app I should rather use with my credentials?

protectprivacy, to random
sirber, to random
@sirber@fosstodon.org avatar

I made a docker compose file for #zerotier mesh vpn. I'd like to join my vps and my local server. I hope it will work 😅

sirber,
@sirber@fosstodon.org avatar

I had a successful vpn with #openvpn but a #docker container couldn't talk with the other host

cjerrington, to random
@cjerrington@mstdn.social avatar

Making a good backup of my laptop before upgrading to version 38 that just was released. Hope all goes well, started using Fedora in November and first in-place upgrade and might not go back go Debian for a while either.

cjerrington,
@cjerrington@mstdn.social avatar

I got my upgrade done on a VM of #fedora but my #OpenVPN profile wont connect. Not sure if its a Network issue within Fedora or not. Only using a config file and Network Manager to make the connection. I'll hold off on upgrading my Laptop until I can get this resolved.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • normalnudes
  • osvaldo12
  • tester
  • GTA5RPClips
  • cubers
  • everett
  • tacticalgear
  • ethstaker
  • provamag3
  • anitta
  • Leos
  • cisconetworking
  • lostlight
  • All magazines