I use QubesOS with detached boot partition on 2 duplicated USB drives with any data that rests on the SSD/HDDs being encrypted with LUKS2. Whonix gateway is proxied through a VPN qube to hide Tor IPs (can't hide communication patterns) without bridges since bridge IPs can be farmed. Sometimes Tor through I2P outproxy or vice-versa or with different anonymizing network overlays. Clients used for browsing are only opened in on-RAM ephemeral qubes with no access to permanent storage. Attack surface is quite minimum since no extra things added like USB mouse and no PV qubes (aside from sys-usb and sys-net) are used for launching HVM qubes with qemu stub domains unless very necessary and every other qube on the system gets shut down first to keep information leakage minimum. A veracrypt volume with hidden storage on a permanent qube for data storage and plausible deniability.what's your setup like?
>>107668404>also, isn't it fairly safe running a pirated game inside flatpak bottles/wine application since it's a sandboxed environment, regardless if it's a VM?flatpak uses bubblewrap which uses namespaces. safeness depends on how well it's sandboxed. never used flatpak more than once because I used to sandbox everything my own with bubblewrap / seccomp filters manually in the past on linux so I can't comment on that but I heard it's not so good.https://madaidans-insecurities.github.io/linux.html#flatpakso, I recommend learning how to use bubblewrap. it's pretty easy when you know how to, but setting up an isolated network namespace and then forwarding packets with custom nft rules isn't as straightforward unless you script it.namespaces by themselves are relatively secure I think since they're the defacto sandboxing apis in linux and battletested by real software, as long as you make sure unprivileged user namespace creation permission is not set and you don't give exposure to more kernel apis by creating uid 0 inside user namespace (eventhough it's not real root, it can access more kernel code than a non-root user).the main problem is it won't be a perfectly good sandbox unless you run a headless program. you will have to give it gpu device node and xorg/wayland access to run it in native performance and it exposes many attack surface. Also networking with network namespaces exposes more attack surface than doing it with Xen netback/netfront. Even if you don't create any network device in the sandbox at all supposedly. it's why qubes or another type 1 hv approach is more secure, the isolation is more ground up. GUI on QubesOS is passed with their own libvchan based proxy that has smaller attack surface than even a setup with VNC over network running in a headless vm with virtual Xorg framebuffer. I stopped using vanilla Xen for that reason.
>>107671002>>107669564kicksecure from the community templates is whonix without the whonix. same base and it's being developed by the same person. you can also use *-minimal templates.
>>107670985go back to le'reddit
>tfw thinly veiled pedo discussion and technical opsec discussion go hand in handyep, this is a proper /security and privacy/ thread.
>>107670544peaked at 7
and enjoy freedom
>>107670006>and enjoy freedomFreedom of what? To spend hours doing what could be done in minutes on Windows?
I didn't know Parabola was still around, that used to be shilled hard here like 10 years ago or whatever. I don't use /g/'s flavor of the month distros. Fedora Plasma is my comfy place.
>>107670006I'm waiting for hyperbola to release their BSD, it seems promising
>>107670069You could use NixOS without blobs and nonfree software by assigning variables related to that.
>>107670006I couldnt get the installer to work, it just drops me to a shell and expects me to do it all by hand.
mornin' retards and alikeprev >>107602756
Merry CHRISTmas and happy holidays
Happy holidays from my warm slippers to yours
>>107666910>>107647336I messed something up, first time on github. Downloading the files zipped gets them uncorrupted but I'm figuring out a fix
unc:https://elfurro.s-ul.eu/desktops/3ITRmb7jfirst time trying to show my desktop with my multi-monitor setup, still getting used to it and trying to make good use of the space.
>>107667339I have 40" 3840x2160 display and it has 1:1 same size stuff like some old 20" 1920x1080 monitors people had no trouble using. I use 96 dpi and same font sizes that Windows 7 had (Liberation Sans/Serif/Mono). After using this for over 10 years, I might switch to three 42" to make it same size as 24" 1920x1080 so that I can have them further back.
You're telling me, the entire infrastructure of the Internet that relies on this single service ran by a bunch of pajeets while also already proving that the entire service is not stable and has demonstrated that it can crash at a moment's notice, and NO ONE has decided to make an alternative?
>>107663230Diversity hire. Any non-indian at any FAANG company including whites are diversity hires.
Ofc its curry. They are trying to abstract the hard stuff away from retarded devs.
>>107661599Please understand, we've already fired all the people who could maintain our on prem servers. Now, no matter how much Amazon squeezes our balls by increasing prices and lowering SLAs from 99.99999% to 99.2%, there's simply nothing we can do but to use them even more.
>>107665047I know what he meant. My point is he's wrong and so is>99% of seevers are aws instances
is there any way to reverse the endless flow of indians
>>107594789Don't buy anything OTHER THAN IBM/Lenovo ThinkPad T, X, and W/P Series if you want the Real Business Experience™>Other business laptops are welcome in /tpg/ (Dell Latitude/Precision, HP EliteBook/ZBook)Why ThinkPad?>Used machines are plentiful and cheap>Excellent keyboards, tactile feel and quiet + the TrackPoint>Great durability: magnesium roll cage for structural integrity, with high quality plastic body panels>Utilitarian design: e.g. indicator LEDs, 7 row keyboard layout on older models>Docking stations that easily turns your laptop into a desktop>Easy to repair (most models), upgrade & maintain thanks to readily available service manuals for every model, spare parts easy & cheap to obtain>Excellent Linux & *BSD supportThinkWiki - General info about ThinkPads/specshttps://www.thinkwiki.org/wiki/ThinkWikiComment too long. Click here to view the full text.
Seriously anyone still use older thinkpad in this day and age?I mean the hardware is obsolete now to do anything meaningful unless you just do simple text editing and very basic web site browsing.
Anyone having issues with the latest mesa driver (1:25.3.1-2) and kernel (6.18.2) on Intel HD Graphics 3000 ?I keep getting these weird glitches when using HWDec on mpv, and even firefox keep crashing.And after the last update moonshine doesn't even work anymore, and I just get blackscreen.
>>107655260i have high hope for someone to resurrect mod thinkpad x320 and x330
>>107659730dang anon, what part of europe?update, the guy sold the T480s but is offering me a T480 for $50
>>107665534>do you have any specific grievance?Other than limitation of maximum ram that can be solved with ssd and swap/pageThe old hardware (CPU/chipset) and constant worry it might drop from the bleeding edge distros and the no support for the bugs that comes from it.Also most of these can't be used for media consumption with the new constant format since there's no HW decoding.My X220 struggle with 4K HEVC, and AV1 is just not something it can do.I'm using it as jellyfin server.>>107667120Why lie? convertible is far superior to detachable.>>107670486>one touchscreen X seriesWhich one do you recommend?
>made full offline backups of all my video games and software>canceled Spotify and went back to downloading music>forgot I already have ~6000 songs that are completely unsorted, some have low bitrates, ripped from Youtube, downloaded from Kazaa, screen recorded, etc. and need to be renamed, metadata'd, and in some cases redownloaded in higher qualityFuck. How was your detransition back to the old ways?
>>107668301>>107668312Yes, i see how you're doing it.Don't know the Strawberry player but looks nice.I'm sure you can add genre and year also to be shown in the player's metadata list, but you already have it in the album folders name as it seems.
>>107668390it is like this for any band, genre and artist if you pirate entire discographies, you just use directories, everything is 2 clicks away
>>107668410Folderstructure wise, i have it very similar. The only difference is that i have not only the albums but also compilations demos, singles in the same artist folder lumpsummed without having separate subfolders for albums, singles and such.Since i have the tags filled in, the player can sort them this way.
>>107640773>nobody mentioned beetshttps://github.com/beetbox/beets
>>107668312>want to play a different song from the same band>first I need to remember if it was part of a compilation or was a single (or both, but live)Silly. The compilation/live/etc. can be tags, playlists, or just dumb smlinks.
soju editionprevious: >>107602013READ THE (temp)WIKI! & help by contributing:https://igwiki.lyci.de/wiki/Home_server/hsg/ is about learning and expanding your horizons. Know all about NAS? Learn virtualization. Spun up some VMs? Learn about networking by standing up a OPNsense/PFsense box and configuring some VLANs. There's always more to learn and chances to grow. Think you’re god-tier already? Setup OpenStack and report back.>What software should I run?Install Gentoo. Or whatever flavor of *nix is best for the job or most comfy for you. Jellyfin/Emby/Plex to replace Netflix, Nextcloud to replace Googlel, Ampache/Navidrome to replace Spotify, the list goes on. Look at the awesome self-hosted list and ask.>Why should I have a home server?De-botnet your life. Learn something new. Serving applications to yourself, your family, and your frens feels good. Put your tech skills to good use for yourself and those close to you. Store their data with proper availability redundancy and backups and serve it back to them with a /comfy/ easy to use interface.Comment too long. Click here to view the full text.
I have an unraid server and my current setup has>Intel i5 13th 13400F (no iGPU)>MSI PRO B660M-A CEC WIFI DDR4 V2 (no video outputs)>Nvidia Quadro P2200And I run it headless if that matters. My question is:>Can I upgrade the CPU to something with an iGPU and use it for transcoding and use the GPU for VMs? The motherboard has no video outputs. I currently use the GPU for transcoding. No monitor connected unless I need to do something in bios. Almost all of my stuff plays directly, the gpu is idle 99% of the time. The CPU/motherboard was a combo that I never got around to returning after finding out it wouldn't be adequate.
>>107670874Yes. Intel UHD and their Quick Sync stuff is good enough for home transcoding. If you start transcoding more than 2 though then you might want to keep the GPU.If you can get an i5 13000 then it's good enough.
>>107669513whats a good way to mirror a website?rightclick and save as html?is there a self hosted thing i could use?
>>107668511i do it manually every couple of weeks, there are hardly any updates since it's debian and i virtualize most things
>>107669489they get sued a lot but they also seem to be weirdly resilient. if you feel comfortable doing it there's no real downside to uploading there>>107670991depends on the website. the archive sites seem to just save the page as an html but that's not so useful if you want to archive the entire website. maybe there's a spider (ie what search engines use) like tool you can use?
why did the kurobaex guy fuck up the entire app?
>>107658491>Noit did though
Trying Kuroba Ex Beta rn, the captchas work fine and have apt descriotions but the search function for board is basically ctrl+f and not a filter like it used to be, sadge. That needs fixing, and my keyboard has like ⅓rd of a second of lag before it comes up in the search bar.
Honestly he's really based for coming back and working on it. A true hero.
Holy shit it works, it is a Christmas miracle.
anyone else getting this? I can still post on my PC
Merry Christmas, from your /g/irlhttps://www.youtube.com/shorts/QI3htyAbMgc
>>107666788imagine the taste of her eggs
>>107668153Jokes aside, could she be a psyop? I mean you never know with the telaviv bros.
>>107668153Nigga, you been living under a rock or something? There are OF models making trillions off of their simps. Women live on easy mode, if you got a pussy/you're a tranny like in the OP you can make bank relatively easy, there is even some easter european dude that dresses up as a woman and goes out hunting IRL simps and he makes millions.
>>107670995POST MOAR LAURIE-PIT...
Day 263 of making a thread every day until I get a CGF.
>>107671089Yep
>>107671103Epstein hate is kinda forced
>>107671107So true!
>>107671089Not even close, but it has its own dedicated social media called Pedi. It's a section of the fediverse for people with all sorts of paraphilias. Incidentally, one of the bigger instances (baise-moi) has recently re-opened registration for the holidays.
>>107671107>epstein was a horrible person translation:>i didn't get invited to the island
Don't ask me how I know, but Airpods along with Apple Music track your volume changes, head bobbing and the lyrics you sing for their recommendation algorithms.
>>107670899>head bobbinggood morning sir *headbobs*
>>107670907What is this insect saying?
>>107670899Fox IEM doesn't have this problem.
>>107670899How do you know ?spill the beans anon
>>107670907Bobs in bagena :DDDD
>Read the sticky: >>105076684>GNU/Linux questions >>>/g/fglt>Windows questions >>>/g/fwt>PC building? >>>/g/pcbg>Programming questions >>>/g/dpt>Obsolete laptops >>>/g/tpg>Cheap electronics >>>/g/csg>Server questions >>>/g/hsg>Buying headphones >>>/g/hpg>How to find/activate any version of Windows?https://rentry.org/installwindowsPrevious: >>107610179
>>107670905Bitlocker is FIPS approved for classified US gov't use. There are many requirements, but in short, it cannot have a 'backdoor' and its source code has to be reviewed by NIST approved evaluators. Cease with your shitty argument.
>>107670842the only way a dedicated heater could be more efficient is if it was a heat pump/reverse cycle aircona pc is generally more efficient simply because it can do something useful while making that heat, while a resistive heater just makes heat. my pc does an excellent job heating my room (which is why i'm capping my framerates atm because it's summer and i don't need any more heat in here)
>>107670940ehh it's my choice and I'll stick with luks and linuxwe don't even know we're getting the same version
>>107670906probably mixing up "efficiency" and "effectiveness". a computer pulling 600W vs. a space heater pulling 2,000W isn't going to heat a room as quickly as a space heater, even though it's no less efficient at turning electricity into heat
>>107670806KDE Connect has this functionality.
& yes I have reverted the imageserver back to i.4cdn.org
>>107670157Reverted due to the death of. I'll literally miss uploading bigger than 4mb and that's it.>>107670167Cheers.
>>107670182>Reverted due to the death ofOh no, it's le unmaintained, quick let's switch to a shittier version that is still getting updoots!retard
>>107670195Kinda... But more:>Hmm, the use case for me using xt (unmaintained now) over x (still maintined regularly and i can still install/update with the js rather than an addon or extension) is... uploading pics bigger than 4mb and webp>How many times have I done that again?Btw not everything needs to be 4chan vs plebbit, mac vs windows, Drumpf vs... anyone with greater than room temp iq tribalism m8.
>>107669672
>Hiro once again breaks site functionality just to make more shekels for third party advertisesGuess I can say goodbye to ever seeing thumbnails again. The fix is a huge security vulnerability.
How do they have so many packages? Do they compromise on security?
>>107670009They're auto generated and nix has tooling to pull directly from git. Look at the build scripts they're all the same.
Most of the packages don't actually work since they auto generate most of them and don't do any code review or testing. They focus on quantity over quality in order to attract new users with the sheer number of packages.
Why are they still allowed to do this?
>>107667259>Buy 8tb ssd>it shows up at 7.27tb
>>107671012except where it says "2TB" in big text which is the thing you're specifically looking for when picking one, which is short "2 Tera Bytes" which means 2 trillion bytes
>>107671012>>107671068also for extra disambiguity, most packaging i see has on it somewhere something like "1TB = 1,000GB" or "1MB = 1,000,000 bytes", etc
>>107668996many do
>>107669044that's gross, anon!