Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)E

Err(()).unwrap()

@ rtxn @lemmy.world

Posts
9
Comments
473
Joined
3 yr. ago

Partisanship is a cancer. Inaction is a choice.

Singular they. Or whatever you like, I won't take offence.Proud member of the Banned By Tesseract Club.

  • hosting their videos on their own website

    I love that entrepreneurial attitude. If an online service is unsatisfactory, just develop your own software from the ground up and provision the infrastructure from your pocket. Car industry sucks? Just build your own car! GPU prices high? Grab a soldering iron and a handful of sand, how hard could it be?

    Things are always more complex than they appear. The whole point of services like Youtube and Patreon is to offload that complexity onto the provider in exchange for a fee (or some other form of compensation) from the user. Just look at how many early Lemmy instances have gone offline because of the overwhelming financial or administrative burden. Hate the companies all you like, and by all means look for independent solutions, but don't pretend they offer no value whatsoever.

  • What if you try reaching it through your public IP?

  • Stupid question, but is the service reachable at all? What if you map 81 to 81? Or whichever port the other, confirmed-to-work service uses? What if you map that other service to 8100?

  • It's based on hole punching, but with extras. The clients punch a hole in their respective firewalls then the service connect the holes so the clients end up communicating directly with each other. They have a lengthy blog post about NAT traversal.

  • Tailscale. It does some UDP fuckery to bypass NAT and firewalls (most of the time) so you don't even need to open any ports. You can run it on individual hosts to access them directly, and/or you can set it up on one device to advertise an entire subnet and have the client work like a split tunnel VPN. I don't know about OpenWRT, but both pfSense and OpnSense have built-in Tailscale plugins.

    People are freaking out about their plan to go public, but for the moment, it's a reliable, high quality service even on the free tier.

    I've also used Ngrok and Twingate to access my LAN from outside, but they simply use relay servers instead of Tailscale's black magic fuckery.

  • Surely this won't upset people.

  • Ansible is an abstraction layer over system utilities, shell, and other programs. You can specify what you want to happen, and it will figure out how to do it. For example, you can use the ansible.builtin.package module to specify which packages you want to be present, and Ansible will decide which specific package manager module should handle it and how.

    Ansible tasks are also idempotent -- they are concerned with the end state instead of the action. Many of the modules (like the package module above) take a state parameter with the possible values of present or absent (instead of the more common "install" and "remove" actions). If the system's state satisfies the task's expected end state (e.g. the package is already present), the task will be skipped -- unlike a shell script, which would simply re-run the entire script every time.

    Ansible also implements strict error checking. If a task fails, it won't run any subsequent tasks on the host since the end states would be unpredictable.

  • I'm on that authentic STALKER diet. Bread, salami, sometimes canned meat, and pills to silence the voices.

  • That's unfortunate, I have no idea how Tailscale does routing on Windows. Try running the client without accepting any subnet advertisements.

    I've also found this: https://tailscale.com/kb/1023/troubleshooting#lan-traffic-prioritization-with-overlapping-subnet-routes The solution might be to advertise a larger subnet (e.g. 192.168.1.0/23) to make the route advertisements on the tailnet less specific than on the LAN. Advertising a larger subnet won't cause any additional issues because it's in a private IP range.

  • How did you set up subnet advertisements on the router, and which subnets? Did you touch the ACL in the tailnet's admin console?

    On the home PC, did you accept advertised routes with the Tailscale client?

    What happens when you ping a host on the LAN using tailscale ping ADDR? What happens when you try to tracert or tracepath to it?

  • The exif data says that it's 4000x3000 pixels, but with an upper-right orientation. Looks like the camera always records the image data in landscape orientation and simply changes which corner represents the (0, 0) pixel.

    It also means that Catbox doesn't re-encode the image and preserves its metadata (for better or worse), which is good to know.

  • Why did this image load from right to left? It's bothering me more than it should.

  • Perhaps there was an easier lighter-weight way of doing this?

    sshuttle does exactly that. It's basically a VPN that uses SSH tunnelling. If you have a host in the same network as the target machine, and you can SSH into it, sshuttle can route all TCP traffic between you and the target (or a subnet) through the host without having to bind local ports manually.

     bash
        
    sshuttle -r ssh_server <hosts/subnets...>
    
      
  • Minio is about to get Redis'd.

  • I use self-hosted services in the following categories as much as possible...

    That question could really use a "not applicable" option. I don't operate any home automation solutions, so any answer from me would be invalid, and neutral answers because the item is not relevant will appear the same as neutral answers because I use both self-hosted and externally hosted solutions (e.g. Mullvad for privacy and Tailscale to get around CGNAT).

  • It's the other way around. Parallel capacitors boost capacitance to the sum of the individuals. It's like increasing the plates' area. Serial connected capacitors do the reverse: decreased capacitance with greater breakdown voltage, like the dielectric's thickness is increased.

  • No.

    The local machine boots using PXE. Clonezilla itself is transferred from a TFTP server as a squashfs and loaded into memory. When that OS boots, it mounts a network share using CIFS that contains the image to be installed. All of the local SATA disks are named sda, sdb, etc. A script determines which SATA disk is the correct one (must be non-rotational, must be a specific size and type), deletes every SCSI device (which includes ATA devices too), then mounts only the chosen disk to make sure it's named sda.

    Clonezilla will not allow an image cloned from a device named sda to be written to a device with a different name -- this is why I had to make sure that sda is always the correct SSD.