• 0 Posts
  • 18 Comments
Joined 1 year ago
cake
Cake day: July 23rd, 2023

help-circle


  • Probably not. It looks like it’s setting the fake address before reading the tunnel parameters, where the real address is stored. Probably a kludge in case the connection address is undefined so the program doesn’t crash. So check whether the address is included there.

    Also check the function that establishes the connection. 10.1.1.1 is not a public subnet, so unless there is a VPN device listening at the local address, the tunnel should fail to establish and throw an error, triggering the exception clause in that code. Again, you’ll want to confirm that in the code.



  • Manually keying in the pin is only needed when plugging in the device. Challenges for TOTP, FIDO2, etc. are a configuration option, and are only 3 digits if enabled (press any button if disabled).

    As for “excessive amount of security”, security as an absolute measure isn’t a great way to think about it. Use case and threat model are more apt.

    For use case, I’ll point out it’s also a PGP and SSH device, where there is no third party server applying the first factor (something you know) and needs to apply both factors on device.

    For threat model, I’ll give the example of an activist who is arrested. If their e-mail provider is in the country, they can compel the provider to give them access, allowing them to reset passwords on other more secure services hosted outside the country. The police now have the second factor (something you have), but can’t use it because it’s locked.





  • Definitely scrambled. If you freeze as-is, the yolks will gel and remain that way when thawed.

    Your other option is water glassing rather than freezing, but that only works with fresh, unwashed egs (not store bought). Also be aware most recipes you will find on the internet are wrong! Proper waterglassing should use Sodium Silicate, not lime lye (Sodium Hydroxide).

    Edit: Corrected - see below. Also, be aware that “lye” in older recipes can refer to any basic (as opposed to acidic) solution, and was more commonly potassium hydroxide leached from wood ash rather than sodium hydroxide.




  • For a privacy friendly OS, surprised nobody has mentioned Freedombox

    It’s designed explicitly for your use case, along with an easy path to other self hosted services. When you’re ready for more than it offers through the web interface, it’s a full Debian install under the hood - so you can install whatever you need to. Privacy friendly and super stable, with smooth upgrades to new releases and security updates for old versions several years after the new one is available.

    As far as hardware, your old computer is probably more powerful than a Pi and can support more drives, but the Pi will be more power efficient. As others have mentioned, if you care about your data long term then backups are a must, so a separate NAS or a Pi with a large drive for backup storage is a good idea as well, whatever OS you choose.







  • The problem with apps is they put my phone in front of my face, opening up FAR too many options for distraction.

    Honestly, a bullet journal was a game changer for me. the fancy ribboned, decorated, instagram-ready craziness people make pictures of, but the basic system created by a person with ADHD for their own of index, monthly calendar with not more than two habit trackers, daily task list, future (more than a month), and a new spread (page) for whatever random thing I need when I need it.

    The right notebook makes is a LOT easier. My Leuchtturm1917 A6 lives in my right pocket, with a pen twisted in the elastic. Prenumbered pages, preprinted index, good paper when my fountain pen habit surfaces, and no distractions.

    Most of the websites about it are so into beautifying it that the system gets lost, so if it sounds useful try this: https://libgen.is/search.php?req=Bullet+journal&lg_topic=libgen&open=0&view=simple&res=25&phrase=1&column=

    The useful information is in parts 2 and 4 - the rest is motivation and fluff.