Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)E

Err(()).unwrap()

@ rtxn @lemmy.world

Posts
9
Comments
472
Joined
3 yr. ago

Partisanship is a cancer. Inaction is a choice.

Singular they. Or whatever you like, I won't take offence.Proud member of the Banned By Tesseract Club.

  • The problem is that syncing between devices is not implemented in KeePass itself but through an external tool (Nextcloud, Syncthing, or whatever else). The sync client will only see the ciphertext and won't be able to tell which records have been changed, only that two different binary files have a common ancestor and are in conflict.

    The most obvious solution is to lock and close the database when it's not in use (which is a good practice from a security perspective too), and to sync immediately when it is changed.

  • tl;dr: yes, credentials are cached locally. https://github.com/dani-garcia/vaultwarden/discussions/4676

    The major downside to the single file storage used by Keepass is that it's easy to accidentally create a conflict between files on different devices if they're not synced immediately. Conflicting files have to be merged manually or data might be lost. I've run into this several times with Keepass + Nextcloud. In comparison, a central master database with local cache can resolve conflicts between individual records.

  • Tailscale should work. It uses Wireguard and does some UDP fuckery to get around the firewall and NAT (including CGNAT). I can stream Jellyfin through it at 1080p native with no significant buffering, it'll work for music.

  • Uh... kinda? Powershell has many POSIX aliases to cmdlets (equivalent to shell built-ins) of allegedly the same functionality. rmdir and rm are both aliases of Remove-Item, ls is Get-ChildItem, cd is Set-Location, cat is Get-Content, and so on.

    Of particular note is curl. Windows supplies the real CURL executable (System32/curl.exe), but in a Powershell 5 session, which is still the default on Windows 11 25H2, the curl alias shadows it. curl is an alias of the Invoke-WebRequest cmdlet, which is functionally a headless front-end for Internet Explorer unless the -UseBasicParsing switch is specified. But since IE is dead, if -UseBasicParsing is not specified, the cmdlet will always throw an error. Fucking genius, Microsoft.

  • Never let perfection be the enemy of getting it to work.

  • Is this what normies feel like when Linux users tell them to just use Linux? I have some apologies to make.

  • POW is a far higher cost on your actual users than the bots.

    That sentence tells me that you either don't understand or consciously ignore the purpose of Anubis. It's not to punish the scrapers, or to block access to the website's content. It is to reduce the load on the web server when it is flooded by scraper requests. Bots running headless Chrome can easily solve the challenge, but every second a client is working on the challenge is a second that the web server doesn't have to waste CPU cycles on serving clankers.

    POW is an inconvenience to users. The flood of scrapers is an existential threat to independent websites. And there is a simple fact that you conveniently ignored: it fucking works.

  • Interface configuration and DNS resolution are managed by different systems. Their file structures are different. It's been like this for many decades, and changing it is just not worth breaking existing systems.

  • No numbers, no testimonials, or even anecdotes... "It works, trust me bro" is not exactly convincing.

  • That's a poython constructah, __init__?

  • If this is as significant an issue as you imply, please link some credible sources.

    As far as I can tell, the "Chinese server" (or EU server) is just a public ID and Relay server, and necessary for the application to function unless a self-hosted server is used.

  • You can host the open-source ID and Relay servers for simple remote access at no cost. The pro subscription is mainly about account and device management.

     yaml
        
    services:
      hbbs:
        container_name: hbbs
        image: rustdesk/rustdesk-server:latest
        command: hbbs
        volumes:
          - ./data:/root
        network_mode: "host"
        depends_on:
          - hbbr
        restart: always
    
      hbbr:
        container_name: hbbr
        image: rustdesk/rustdesk-server:latest
        command: hbbr
        volumes:
          - ./data:/root
        network_mode: "host"
        restart: always
    
      
  • That is probably the second worst outcome. People suck.

  • 23:22? Nah mate, my work phone turns off the moment I step through the gate. If someone chose to wait until after 16:00, they can wait until next morning to be told to fuck off.

  • Why split physical and data link when they are so closely related?

    You can run Ethernet on any medium that has the capacity to transmit digital signals. It can be copper, optical, over-air laser, radio, on top of an analog carrier wave (ASK, FSK, PSK). The Ethernet traffic can be completely independent from the physical medium by using encapsulation (L2TP or any other protocol that encapsulates Layer-2). It can be pigeons carrying printouts of the Ethernet frames, scanned and reassembled at the destination. The same can be said about most Layer-2 protocols.

    As long as the proper interfaces are present, the physical layer is completely transparent to the data link layer.

    (edit) I should point out that Ethernet, specifically, transmits extra data before and after the frame (the preamble and inter-packet gap) that are used to configure the Rx circuit for reception, but the Layer-2 frame will be identical regardless of the medium.

  • It's possible that, when the ISP revokes the public address and assigns a new one, the DNS record isn't updated immediately and still points to the old address. Then every new request would be sent to the old, invalid address.

    And this is where I start shilling for Tailscale. It's a Wireguard-based mesh VPN that is designed to work from behind firewalls, NAT, and CGNAT. It has its own internal split DNS provider, and probably some mechanism to handle public address changes that is transparent to the tunnelled traffic. You can use it to share the server with only the devices that have the client installed, or expose the server to the internet.

    I've got it set up on my OPNSense firewall as a subnet router that advertises the subnet where my servers are, and often stream from Jellyfin over it. There's some overhead, but it's never been disruptive.

  • Verifying that the code doesn't contain regressions, bugs, or vulnerabilities, that it doesn't conflict with whatever the owner is actively developing privately, in addition to making sure it wasn't vomited out by a goddamn clanker, is a huge burden on a solo developer. They are free to decide whether to take on this responsibility.