• 0 Posts
  • 41 Comments
Joined 1 year ago
cake
Cake day: July 1st, 2023

help-circle


  • No, this means the recovery key or other external unlocks have been lost, but the TPM chip is still working correctly to provide the bitlocker key during boot.

    This is not bypassing bitlocker, simply bypassing loading the bsod causing crowdstrile driver by booting into safe mode. You still need a valid administrator account so authentication is also not compromised.

    You would still need some kind of exploit to bypass the windows login screen.



  • SGG@lemmy.worldtoSelfhosted@lemmy.worldThumb drive heating up
    link
    fedilink
    English
    arrow-up
    12
    ·
    3 months ago

    If you have docker containers and other stuff all on that USB drive I’d really reccomend getting it all off that USB (not just logging) and onto a proper drive of some kind. USB thumb sticks are not reliable long term storage, you will wake up to find the drive failing one day and good chance you lose everything on it with little to no warning.




  • Games need to live closer to the bleeding edge than a lot of other software.

    Also, for wine/proton, and the other customisations built into the deck, it makes sense to pick a starting point that is more built for customisation. By that I mean there was probably less things they needed to add or remove at the start.

    As mentioned, it’s also likely there was personal bias internally. But even that can be a valid reason as they need to be familiar/comfortable with the starting distro.

    Not saying that Debian cannot do it, but doing it this way probably made valve’s employees lives easier.



  • Given the abstract nature of a lot of the economy these days (which unsurprisingly benefits those with wealth) it’s debatable if it fits to be honest. I would lean more towards yes. They would argue that by exposing bad conditions, helping people lower the cost, causing a rental to go empty, or whatever else means they aren’t getting the money they feel entitled to.

    The same kind of arguments are often used when corporations argue that piracy is stealing. All that has happened is an unauthorised copy of a movie/etc had been created. Yet that is called stealing and they try and fine people sometimes thousands more than what a legal copy would cost.



  • Mine is nice and quick in regards to the web interface and general functions. However I run it on a server at home and my upload speed isn’t the best, so if I need to pull a larger file (Files On Demand enabled) then obviously the transfer speed of the file is a bit sluggish.

    Hosted on a VM with 16GB RAM, 4 cores. Using the NextcloudAIO docker deployment option, all behind an Apache reverse proxy (I have a bunch of other services on another VM that all have reverse proxy access in place as well).


  • SGG@lemmy.worldtoSelfhosted@lemmy.worldvpn on nextcloud?
    link
    fedilink
    English
    arrow-up
    3
    ·
    8 months ago

    In very basic terms, and why you want to do them:

    Attack surface is the ports and services you are exposing to the internet. Keep this as small as possible to reduce the ways your setup can be attacked.

    Network topology is the layout of your home network. Do you have multiple vlans/subnets, firewalls that restrict traffic between internal networks, a DMZ is probably a simple enough approach that is available on some home grade routers. This is so if your server gets breached it minimises the amount of damage that can be done to other devices in the network.




  • If you have a dynamic IP from your ISP, could be you got unlucky and were given a address previously used by attackers.

    Or if you have a static IP on a VPS or similar, they may have had a lot of attacks from the IP Range.

    By attacks in this instance I mean people setting up phishing or similar websites as the most common example. A simple web form, probably with obfuscated code. They then send a bunch of emails line "click here to view your invoice"and gather office 365 credentials.

    While it’s not good that this kind of false positive happens from time to time, I am more thankful this kind of service exists. Yes, there’s privacy and security implications, but smart screen has stopped legitimate attacks at our clients before, and we force it enabled wherever possible.


  • The first year price is a “loss leader” discount. Get you in the door, then make a profit from you in future.

    Namecheap have a bit of a reputation (as can be seen here with a few people warning of poor support), Spaceship seems to be a bit of a offshoot/addition they have created, partly as it doesn’t seem to be a 1-1 comparison, and partly maybe to avoid their existing reputation?

    However, it’s not entirely a bad idea to separate your registrar from your DNS provider. If one goes down, you still have access to the other to make changes. I used namecheap in the past because it was cheap, and cloudflare for DNS. If you are using both for only your registrar, it probably won’t matter much at all as you are probably not changing nameservers often, if at all, once set.


  • If you are going to use your desktop, I would suggest putting all of the self-hosted services into a VM.

    This means if you decide you do want to move it over to dedicated hardware later on, you just migrate the VM to the new host.

    This is how I started out before I had a dedicated server box (refurb office PC repurposed to a hypervisor).

    Then host whatever/however you want to on the VM.


  • A sane firewall configuration should have no/minimal impact on a desktop focused OS.

    On the other hand, sometimes programs are really badly made and expect stupid things like there being no firewall.

    You should have one yes, but to each their own.

    I manage a bunch of windows computers and regularly make adding firewall rules part of install scripts, good example: Dreamweaver.