• 1 Post
  • 343 Comments
Joined 2 years ago
cake
Cake day: June 10th, 2023

help-circle







  • More like they operate a tollroad to the playground and are concerned about why there’s so many trucks of wood chips costing them much more to maintain the road to the playground. And OP freely admitted they’re taking truckloads of woodchips from the playground.

    Except the analogy also doesn’t work because ultimately piracy isn’t taking, it’s just copying and sharing copies. There isn’t really a good analogy without directly describing digital distribution and piracy. Maybe an analogy involving a solar farm and a transmission company? Except that gets into technical details that are just as technical as just explaining it as it is



  • Personally, I don’t trust 13th/14th gen chips period. I’m sure I’m overreacting but I’ve simply seen too many dead computers due to Intel’s CPU bugs in last 12 months that no amount of microcode updates will make me feel comfortable selecting one of those processors, especially when it’s my own money on the line


  • The town I live in would run the tornado/fire siren (it was the same siren but with a different pattern for how long it would be run for to call the volunteer firefighters to the station whenever there’s a really bad emergency) as a noon whistle every day. Around 2018 or 2019 they stopped doing the noon whistle, but never instituted regular testing so we’ve had super irregular tornado sirens when they are needed. During one really bad storm half the sirens failed to go off at all (fortunately the tornados jumped over town. There were tornados west of us, then tornados east of us but somehow none in town) then the following storm the tornados for half the town failed to go off. They’ve been testing irregularly since then but I’d really prefer if they performed monthly tests



  • Physical wire tapping would be mostly mitigated by setting every port on the switch to be a physical vlan, especially if the switch does the VLAN routing. Sure someone could splice an ethernet cable, which would really only be mitigated by 802.1x like you already said, but every part of this threat model makes zero sense. You ultimately have to trust something (and apparently in OP’s case that’s a third party VPN provider that charges extra to not block LAN access while connected and they remain entirely on the free tier of)

    But at the very least, not trusting everything on the network is a very enterprise kind of threat model, so using standard enterprise practices of network segmentation, firewalling, and potentially MAC-binding and 802.1x if so desired isn’t a bad idea, if for no other reason than it might lead to a career in network administration. And honestly I mostly want to get OP to not think of VPNs like a magical silver bullet and see what other tools exist in the toolbox



  • Sounds far more likely that either someone misunderstood that residential IPs change frequently/may be shared by multiple subscribers or the ISP made an error when responding to a subpeana and provided the incorrect IP. Unfortunately both are all too common with privacy enforcement

    If you really think the ISP router is snooping and can’t by bypassed you could simply double-NAT your network with a trusted router and call it a day. Much less VPNing and much less unusual decisions of trust and threat model involved then


  • But supposing you absolutely do not want to tack on additional costs, then the only solution I see that remains is to set up a private VPN network, one which only connects your trusted devices. This would be secure when on your I trusted LAN, but would be unavailable when awat from home.

    Traditionally this would be performed by creating a dedicated network of trusted devices. Most commonly via a VLAN for ease of configuration. Set the switch ports that the trusted devices are connected to to use that vlan and badabing badaboom you’re there. For external access using Tailscale or one of the many similar services/solutions (such as headscale, netbird, etc.) with either the client on every device or using subnet routing features to access your trusted network, and of course configure firewalls as desired





  • Trainguyrom@reddthat.comtoLemmy Shitpost@lemmy.worldRelease the kraken
    link
    fedilink
    English
    arrow-up
    20
    arrow-down
    1
    ·
    13 days ago

    It’s a direct reference to At The Mountains of Madness. The penguins make exactly that call in the book and are friendly with the Ancient Ones, and really only present in the story while the humans are in the domain of the Ancient Ones.

    Although the choice of showing Cthulhu in the final panel rather than one of the Ancient Ones is inaccurate. Perhaps it’s meant to be a sculpture, since in Call of Cthulhu it was made clear that Cthulhu was specifically the shaman of the ancient ones, meant to wake them when the time is right

    Anyways I’d highly recommend reading the stories since they’re quite a unique style and dripping with a mounting, growing intensity. You can even listen on LibriVox. Call of Cthulhu is about an hour long and At The Mountains of Madness is about 4.5 hours long, so one decent car trip’s worth of audiobook basically