

Brain Krebs on Mastodon:
Brain Krebs on Mastodon:
Some companies do “internet only” wifi where there is no routing to internal services for anyone, radius or not. A VPN is required, even when at work, to access anything internal wirelessly. Its a perfectly reasonable config that lowers the risk of breach of your internal network by exposing less of it over the air.
This is also the nominal config for most zero trust networks, but that’s more a consequence of the “always on” nature of those VPN connections since you never have unencryted traffic anywhere, regardless of origin point.
deleted by creator
No, it’s stupidier and more nakedly corrupt. Fossil fuel companies gave Trump over a billion dollars in political donations, and fossil fuel jobs look “manly” and have “big trucks.”
That’s about it. He can appeal to rural voters in rural states working dying jobs while the companies he gives trillions in subsides to give him billions in donations back. For that, he’ll kill the planet faster and trap millions in low wage, dangerous jobs instead of just letting solar and wind naturally ramp up.
The “win” was to become the first god king in his next actual game, which let players compete/pay in a shared world for nobility/etc. The hook was that if you were god king, you got a cut of the money the game made.
That game was never released with the above feature, and they entirely ignored the “cube” game winner for years after the initial PR blitz. He got nothing at all besides some merch and a trip to their office. Eurogamer wrote a great piece about it years ago.
A few weeks ago, his wife made some unprompted comments about him being a “sexual matador” in an interview. Concurrently, there are rumours that he’s been literally cuckcolded by Elon musk in a consensual context.
So these memes are just riffing off these two pieces of news.
Microsoft literally calls the feature “vibe working.” Youre not far off the actual name.
They aren’t even pretending to care anymore.
Amazon makes a game with a Trump supporter? Neato.
600 known nuclear ICBMs. They can probably mass produce just the missiles to flood the system and let the actual nukes through.
The vm/container side is less important than the “cant run a RAID parity check regularly because it makes the NAS useless” part. Thats my qnap experience. It might have gotten better, but it was shit heel for me, and the NAS was in the 1k range.
I’d argue that a NAS should be able to run containers at this point. NAS hardware does not need to be utterly gutless just because it can be. A versatile NAS is actually a great first choice for a homelab setup before you start to expand.
I’d recommend against it. It works “fine” but everything is in a thin, but walled, garden. Every app is some “Qsomebullshit.” They really, really want you in their ecosystem.
Id say the systems are underspec’ed as well. The model I bought years ago pitched itself as VM/container ready, but the chipset was so weak it couldn’t run anything worth a damn. It couldn’t even run a scrub on lowest priority without choking all other filesystem access. When a scrub takes 3 days or more, it wasn’t exactly a usable experience.
If you have the funds, i’d recommend 45drives. They make very good hardware and sell 4/8/15 disc form factors for homelabs.
They kicked him out for that callous joke, which is a hilarious cherry on top. All the comedians, many of them “free speech warriors,” agreed not to make any jokes about Saudi arabia.
That’s one the books I tried to get through. Maybe it was in a more raw state at the time, but it didn’t click for me.
Im honestly more interested in Nix, as even with all the chaos it feels like it has good technical momentum. I just wish there was something equivalent to Geerlings “Ansibles for devops” or Shotts “The linux command line” for it.
As someone who is curious about Nix but has given up after trying to wade through the myriad and conflicting “getting started” resources for it, I cant imagine how bad guix docs must be for a Nix enthusiast to adandon it.
It reads as an “honor” system rather than any objective exclusionary mechanism. Steering committee members are expected, and to their credit, were considered to have done so, but it all seems like judgement calls.
It is fully possible that grey areas or instances where other SC members didn’t personally care, were not met with recusal.
It would overall be better to not have those conflicts be likely or even possible.
There is no endurance, but the power is there. Someone in the example won’t last a minute, but they wont have to if they drop 250lbs on your throat in that first minute.
Note that this apparently does work with a 4 port local KVM as well. Technotim, a homelab youtuber, tested them working together smoothly.
So buddy up the above with a jetkvm and you can control 4 systems at once.
Sounds like they are an “someday ill have enough money to have my boot on their throats instead” capitalist, i.e a helpful fool.
Apparently it was supposed to be. They have the core functions in a “can’t OTA” container, with less important functions like AV/etc in a “can OTA” model.
This update was pushed to the “can update” side and fucked the “can’t update” side, which is its own can of worms. Another can? Jeep pushed a silent, emergency update “to all Jeeps even those who have automatic updates disabled.”
So the issue is not that they have no security model, it’s that it clearly doesn’t work and they can and will push secret updates even when you decline all updates.