elkalbil

joined 1 year ago
[–] [email protected] 4 points 1 year ago (1 children)

C'était un troll, à mon tour de faire le puriste 😜

[–] [email protected] 4 points 1 year ago* (last edited 1 year ago) (3 children)

Non, jamais lu ni entendu cette remarque, et ça fait 30 ans que j'écoute du métal. Ton pote était peut-être un ~~emmerdeur~~ puriste extrémiste comme en rencontre parfois...

troll

Après, parler de métal dans un article sur Ghost, je vois pas le rapport

[–] [email protected] 2 points 1 year ago* (last edited 1 year ago)

Ça affecterait le business direct de Twitter, les organisations européennes qui ont un compte vérifié ou qui payent de la pub.

Mais ça affecterait aussi les sociétés et particuliers hors UE qui sont sur Twitter et qui veulent continuer à échanger avec des membres de l'UE. Comment forcer tout ce petit monde à créer des comptes Mastodon/Bluesky/Threads en une seule décision...

Donc, même pas cap.

[–] [email protected] 13 points 1 year ago* (last edited 1 year ago)

Klipper on KDE offers a clipboard history. Don't know about other DEs.

[–] [email protected] 4 points 1 year ago (1 children)

Keepass2Android provides both an autofill function and an alternative keyboard. As the name implies, it works with a Keepass file.

[–] [email protected] 4 points 1 year ago

Si vous vous intéressez au sujet, Heu?reka a fait 3 bonnes vidéos sur le marché de l'électricité, pourquoi son prix est indexé sur celui du gaz, ...

Je colle les liens PeerTube, il a aussi une chaîne YT.

[–] [email protected] 25 points 1 year ago* (last edited 1 year ago) (4 children)

Not a great timing to move to something RHEL-based!

If I may ask, why not Debian? You're already familiar with 99% of the distribution, as it's the base for Ubuntu.

[–] [email protected] 1 points 1 year ago* (last edited 1 year ago) (1 children)

DISCLAIMER: I never used Tailscale. All I know about Tailscale I learned reading their "How it works" blogpost and documentation, because I wanted to understand the hype.

Since nobody answered your questions, I'll try my best. Just trust that I spent most of the last 25 years configuring security systems, including but not limited to VPNs.

Hmm, I guess my question would be how does this all work?

See my 2 links above.

I mean, is it not possible to configure STUN/DERP services yourself?

Of course it is, but it will be additional work, that most users are not willing/confident to do and Tailscale provides this service.

Or add control lists yourself? [...] For ACLs, I guess Apparmor and/or SELinux profiles would be configured?

Deploying network ACLs on your hosts indeed does not require you to use Tailscale. However they provide an centralised way to manage and deploy them, without worrying about the underlying OS and ACL system. Or even requiring you to have access to the host, it could be an authorised user trying to access your Tailscale network.

Note: AppArmor/SELinux are more "system/process ACLs", not directly related to network ACLs. I'm oversimplifying a lot, they're difficult to describe without knowing your sysadmin skills.

The removing a key I can understand why it's be a nightmare yourself, but how does Tailscale do it where it's just so simple?

Simple: they ask you to run an agent on all of your Tailscale hosts and connect to their centralised platform. To paraphrase their blogpost: config management is centralized, but that doesn’t matter because it carries virtually no traffic. It just exchanges a few tiny encryption keys and sets policies. The VPNs and their traffic are a distributed mesh.

EDIT: Another question I have is how does Tailscale work when I have a VPN for securing network traffic when browsing the internet etc.? Or is that just seamless?

I'm not sure to understand this question, so I'll make an asumption: you're asking what happens if you run Tailscale on a host that already has a VPN configured to access the Internet.

Tailscale (and Wireguard under it) is already a VPN solution, and tunneling a VPN inside another VPN is generally discouraged. But as Tailscale is providing STUN/DERP, if they manage correctly the MTU issues and things like that, I don't see an immediate reason why it should not work at all.

You can configure Tailscale or Wireguard to create a VPN to access the Internet though.

Once again, if you try to understand how Tailscale works, please read the links at the start of this post. RTFM, kids!

On a more personal opinion, I find their solution clever and elegant. If I have the need for a distributed VPN solution in the near future, I will definitively consider it (or Headscale's). For the moment, I'm fine with all my hosts connecting to my homelab, configuring a Wireguard tunnel for each roaming host, and opening ports and creating rules on my firewall. Compared to IPSec or OpenVPN tunnels, it seems almost too easy each time.

[–] [email protected] 8 points 1 year ago

Je suis un homme simple, je vois Monsieur Bidouille ou PeerTube, j'upvote.

[–] [email protected] 1 points 1 year ago

La question principale, c'est à quelle orbite ils vont opérer ? Dans l'orbite de rebut (graveyard orbit) des satellites géostationnaires, loin mais où la majorité des déchets se situent ?

Ou dans une orbite plus proche, pour récupérer les bouts de fusée et les microsatellites hors d'usage ?

[–] [email protected] 3 points 1 year ago

Merci. Si tu as besoin d'aide pour un détail ou une tournure de phrase technique, n'hésite pas à me MP. Je ne peux pas le contacter directement, je n'ai pas accès à son instance du tout...

[–] [email protected] 3 points 1 year ago* (last edited 1 year ago) (1 children)

Je compatis, les seules fois où je vois ces pubs YouTube c'est en utilisant un autre terminal qu'un des miens.

Newpipe sur Android, Firefox + uBlock Origin sur PC

Après, il reste les sponsors à la con du style SudVPN ou GIGN Shadow Legends

view more: ‹ prev next ›