Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)M
Posts
15
Comments
361
Joined
9 mo. ago

  • Just lol at Synology trying to do an Nvidia

  • There's plenty of N100/N350 motherboards with 6 SATA ports on AliExpress, grab them while you can

  • Synology is like Ubiquity in the self-hosted community: sure it's self-hosted, but it's definitely not yours. End of the day you get to deal with their decisions.

    Terramaster lets you run your own OS on their machine. That's basically what a homelabber wants: a good chassis and components. I couldn't see a reason to buy a Synology after Terramaster and Ugreen started ramping out their product lines which let you run whatever OS you wanted. Synology at this point is for people who either don't know what they're doing or want to remain hands-off with storage management (which is valid; you don't want to do more work when you get home for work). Unfortunately, such customers are now out in the lurch, so TrueNAS or trust some other company to hold your data safe.

  • Thanks

  • Alpine isn't exactly fortified either. It needs some work too. Ideally you'd use a deblobbed kernel with KSPP and use MAC, harden permissions, install hardened_malloc. I don't recall if there's CIS benchmarks or STIGs for Alpine but those are very important too. These are my basic steps for hardening anything. But Alpine has the advantage of being lean from the start. Ideally you'd compile your packages with hardened flags like on Gentoo but for a regular container and VM host that might be too much (or not - depends on your appetite for this stuff).

  • Your complaint is genuine and I assure you that the sentiment is shared amongst many people here. I do not like that sub for its excessively tight policies. You must also consider that Reddit has its eye on that sub since it might spread awareness to other Reddit users and harm Reddit's bottom line.

    Either way, I stick to Lemmy and Kbin. Reddit doesn't let me create accounts over TOR and I2P anymore, which means I'm not going to be able to participate anyway.

  • I'm looking at buildbot

  • I don't get it. Where is the idea that "Fedora focuses on security" coming from? Fedora requires an equivalent amount of work like other distros to harden it.

    I personally use Alpine because I trust busybox to have less attack surface than normal Linux utils

  • Not if you're running a FOSS ROM (at least you'd hope that is the case) unless the firmware is compromised (which if true would affect EVERYONE so I'm sure somebody had their eye on such things)

  • Unfortunately, you're done here. You're going to need a new number if you value your privacy. I can never trust any big company; you can try waiving GDPR in their faces all you want but with a spineless EU and too much power in such companies, you have to trust them to delete your data. I'm sure you realise that this is a silly venture.

  • As long as you can trust Apple, sure

  • Deleted

    Permanently Deleted

    Jump
  • I wish they did. I can't believe non-profits are suing each other.

  • Regardless, the fact is unless you're going through the code, you're not sure if the tracking and telemetry is really disabled. LibreWolf does that for me, so I use it over plain Firefox

  • Because they said so in their updated ToS. They might not be as bad as Google but they're not saints

  • Oh I get it. Auto-pull the repos to the master nodes' local storage for if something bad happens, and when that does, use the automatically pulled (and hopefully current) code to fix what broke.

    Good idea

  • Downvoted. You didn't read the rules of the sub. Yes, you should be allowed to do it, morally speaking. But if you red their notice you'll realise exactly why you aren't allowed to do so. Anyway welcome to Lemmy

  • Firefox is spying on you, so a derivative is the only option. I also user Ungoogled Chromium because it's really nice and works well after a couple of tweaks

  • Well it's a tougher question to answer when it's an active-active config rather than a master slave config because the former would need minimum latency possible as requests are bounced all over the place. For the latter, I'll probably set up to pull every 5 minutes, so 5 minutes of latency (assuming someone doesn't try to push right when the master node is going down).

    I don't think the likes of Github work on a master-slave configuration. They're probably on the active-active side of things for performance. I'm surprised I couldn't find anything on this from Codeberg though, you'd think they have already solved this problem and might have published something. Maybe I missed it.

    I didn't find anything in the official git book either, which one do you recommend?

  • Selfhosted @lemmy.world

    How to self-host a highly available git server cluster?

  • Linux @lemmy.ml

    Comprehensive guide to hardening RHEL clones?

  • Selfhosted @lemmy.world

    How to use GPUs over multiple computers for local AI?

  • Selfhosted @lemmy.world

    Basic networking/subnetting question.

  • Selfhosted @lemmy.world

    XCP-NG vs PROXMOX security hardening?

  • Selfhosted @lemmy.world

    On email privacy: can I store my own email and relay them through an email provider?

  • Selfhosted @lemmy.world

    Consumer GPUs to run LLMs

  • Privacy @lemmy.ml

    Is it possible to redirect WhatsApp and Signal calls to a landline?

  • Privacy @lemmy.ml

    Rooting and privacy on Android

  • Technology @beehaw.org

    AI companies should be charged percentages of their net worth for infringements

  • Selfhosted @lemmy.world

    How do I fit a network card with a physical x4 slot into an x1 slot?

  • Linux @lemmy.ml

    Why do we hate SELinux?

  • Linux @lemmy.ml

    What's with the move to MIT over AGPL for utilities?

  • Linux @lemmy.ml

    Email client for Linux

  • Linux @lemmy.ml

    Newsletter/RSS/general resource to keep up-to-date with DNS innovations?