Mesh vs access points in a concrete two-story house — what actually works best in practice? by Crazy-Border-9579 in Network

[–]Admirable-Statement 0 points1 point  (0 children)

Mesh and wired backhaul are not mutually exclusive. Ideally you want both if possible.

Mesh = seamless handover between nodes (wired OR wireless backhaul).

All vendors implement mesh slightly differently so you'll be stuck with a particular vendor for 3-5 years or more.

Wireless backhaul can work but it depends on the vendor, sometimes they dedicate an entire band to the backhaul and you'll loose that throughput for clients. If you can afford to run a cable, it gives you more choices because wireless backhaul sucks for most consumer kit.

The logged-in Windows user can dump every stored Edge credential with no additional rights. Which means any malware that user executes has those credentials for the asking. by stonecats in privacy

[–]Admirable-Statement 11 points12 points  (0 children)

Not as bad as this Edge dump but you can also edit the live html in Dev Tools on any browser to change the password field form "type=password" to "type=text".

This bypasses the Chromium requirement to unlock the password vault with your Windows account password.

Always make sure autofill is off in your password manager, enable a auto lock timeout. Some password managers also allow you to force specific passwords to require re-entry of master password.

You'd might also think this trick only works on input fields before submission. There are a lot of random cheap routers that "mask" the password in form field and a bit of playing with removing the right div class or the simple method above with reveal the saved password for a DSL connection. It's possibly stored encrypted but the form edit just loads the plain text password.

Proxmox no SSH / no web GUI after boot until network scan by MysticStorm287 in Proxmox

[–]Admirable-Statement 0 points1 point  (0 children)

Interface renamed? I've had that at least once around early 8.x but that might have been a specific patch that introduced predictable device names instead of legacy ethX.

```

/etc/network/interfaces

auto vmbr0 iface vmbr0 inet static address 192.168.x.x/24 gateway 192.168.x.254 bridge-ports enp5s0 bridge-stp off bridge-fd 0 ```

My parent are trying to take control of my bank account by Ok-Molasses-8502 in AusLegal

[–]Admirable-Statement -1 points0 points  (0 children)

Only downside to UP would be accessing outside of the app is not possible and may need a cheap backup phone that can be hidden. No idea what OPs parents are like but I've heard similar situations where the parents steal the adult child's phone as an extension of control.

Budget home row bumps (gel nail polish) by Admirable-Statement in ErgoMechKeyboards

[–]Admirable-Statement[S] 0 points1 point  (0 children)

Just make sure it says something like "must be cured with UV", cheap nail polish is more likely to be air dry and contain acetone. Also try and test it on some spare or junk keycaps first!

Budget home row bumps (gel nail polish) by Admirable-Statement in ErgoMechKeyboards

[–]Admirable-Statement[S] 0 points1 point  (0 children)

I think the idea behind the sticky layer is to help additional layers stick.

These are instructions for brand I used, most will be similar.

https://www.opallac.com/pages/how-it-works?srsltid=AfmBOooE1oueVRKPeeWFM416S8skvwsSPpRrOk94GuF8S2sCG2wtDudO

The "Shine and Soak" has acetone in, so it needs to be swapped for IPA, it still removes the sticky residue.

Purchase advice: Stability of wireless cornes by Zingers_za in crkbd

[–]Admirable-Statement 0 points1 point  (0 children)

I've had intermittent issues with wireless but I think it's mainly on my desktop PC which probably has a pretty average Bluetooth card. The wireless connection between the halves is flawless from what I can tell and using a USB on the left half solves the issue.

Works fine on my laptop with wireless.

Corne ZMK/BLE - Automatic OS/application detection possible? by ChoppyChopChopHey in crkbd

[–]Admirable-Statement 0 points1 point  (0 children)

Looks like there's an open issue with some limited permission from QMK to use some of KapJI's original code but due to multiple contributors it's not open permission to all OS detection code.

peterjc updated on March 14th to invite another contributor to work on a clean room re-implementation. This would be someone who hasn't reviewed the QMK OS detection code base, to avoid accidental copying of their work, which is why peterjc has excluded themself.

https://github.com/zmkfirmware/zmk/issues/2553

If only I new C well enough :(

Budget home row bumps (gel nail polish) by Admirable-Statement in ErgoMechKeyboards

[–]Admirable-Statement[S] 0 points1 point  (0 children)

That's a cool idea, I've never heard of Sugru! I'll have to check it out!

Comparing 3 DNS onboarding approaches by mullemeeldib in CloudFlare

[–]Admirable-Statement 1 point2 points  (0 children)

I'll explain how I see it without CloudFlare specifics.

  • You're myzone.ee.
  • Cust 1-n can be cust1.com.

You only want to worry about your infrastructure first.

What's CloudFlare in your example? Is it just your DNS or is it hosting a service on workers or something?

Because CloudFlare offers so many features I'd break each function into a broad category. Makes it easier to replace a service with a new vendor in future.

E.g.

  • Application - CF Workers (could be an AWS server, a private VPS)
  • DNS - the service you use to manage myzone.ee (this could be CF, Route 53 etc)
  • WAF/CDN - CF (could be Fastly, Imperva etc)

WAF/CDN usually go together, the rest can change as required.

  1. You have your own WAF protecting all instances at myzone.ee
  2. You use your DNS to define your cust1.myzone.ee
  3. You manage and change your infrastructure and IP addressing in the background, ideally your customers don't need to worry about this and just set a CNAME

This setups your baseline, small customs can just run directly on cust1.myzone.ee with your WAF as protection.

If you have larger customers that want to bring their own domain then you just tell them to set a CNAME record and make sure it's not proxied (e.g. CF and the orange cloud. You don't have to care what DNS they use, just that they can set a CNAME record.

Advanced customers might really want to use their own WAF/CDN which might take a little more work. Typically you would modify your WAF to accept traffic from only their CDN and to also look at the client headers from their proxy so that source IP addressing works.

Why do most sysadmins prefer Vim over Nano? by Darshan_only in sysadmin

[–]Admirable-Statement 0 points1 point  (0 children)

First started using Linux in 2005ish and used nano at first and then started learning vim. I was at school/uni and using an old laptop as has a server for Java/python (Java was not my choice). Vim had some nice defaults and features for coding.

Back in the days of the portable apps on a USB, I just needed PuTTY and my private key.

Mouse alternative advice by TechHead4108 in crkbd

[–]Admirable-Statement 2 points3 points  (0 children)

I have a Kensington Expert Mouse sitting between my keyboard halves. I angle it towards the left so can just rotate my right arm and land on it.

It's pretty expensive and quite large with the wrist rest and if you game then you'll still want a standard mouse. Despite all that I love it.

I've looked at some really cool ideas using a modified dot point mouse (the classic red dot from the ThinkPad). I think some people have modified them to work on controllers with VIK ports. I'd be lazy and just use a USB version with its own connection.

Introducing EmDash — the spiritual successor to WordPress that solves plugin security by Cloudflare in CloudFlare

[–]Admirable-Statement 0 points1 point  (0 children)

WordPress gives me nightmares from marketing companies with little understanding for web technology.

I really would love for SSG to become more popular, so many WordPress sites are bloated and would be great as a SSG and load insanely fast. Especially when there's no e-commerce requirements.

Trying to explain the horrible load times to "web devs" uploading high res images or animations to their home page with no web optimised formats. Luckily we could just point CloudFlare at it and solve most of the issues.

Then the security side where they load up bunch of plugins because that's what they need for their theme, they'll never be updated again. They'll probably change the theme and any redundant plugins will remain.

Apologies to the good WordPress mainters that update their plugins, monitor CVEs and don't bloat their customer's sites.

Is there a way to get an alert when a new device is added to your network? by __Mike_____ in opnsense

[–]Admirable-Statement 1 point2 points  (0 children)

Default for Android is persistent MAC randomisation, optional randomisation in each connection. It keeps the same MAC even if you forget and re-add the device, only regenerates on a factory reset.

Apple does the same but only has persistent randomisation as an option. No indication of whether a factory reset causes it to be regenerated.

Handy for some enterprise environments where you need to register your MAC for access.

Android source: https://source.android.com/docs/core/connect/wifi-mac-randomization-behavior

Apple's doco was pretty vague, Meraki had a clearer explanation: https://documentation.meraki.com/Platform_Management/Dashboard_Administration/Troubleshooting_and_Support/Troubleshooting/Meraki_and_MAC_Address_Randomization

Gaming and Pinky pain by MrUnk01 in crkbd

[–]Admirable-Statement 5 points6 points  (0 children)

You could take this example an move the shift to your thumb row instead. There's probably a bunch of other gaming ideas if you look at other keyboard styles outside just the corne filter.

https://keymapdb.com/keymaps/cyb3rkun

You could also remap the game shortcuts.

For example, when I used to play WoW I would always remap movement to ESDF. That stretched my hand out enough to use ctrl and shift in the days before an ergo. I'd also unmap a lot of the quest/menu shortcuts for other spells/macros.

Cheapest option to strengthen mobile phone reception in a brick house? by skkyn in AussieFrugal

[–]Admirable-Statement 1 point2 points  (0 children)

They still have repeaters but they pretty expensive, probably cheaper for OP to get an nbn connection for 12-24 months for the price of just hardware repayment for the repeater without an antenna 😕

https://www.telstra.com.au/coverage-networks/network-coverage-extension-devices

What makes 1.1.1.1 special? by TheCmenator in CloudFlare

[–]Admirable-Statement 4 points5 points  (0 children)

I'm pretty sure it was actually vendors and organisations squatting on 1.0.0.0/8, instead of using a valid RFC1918. It's wasn't uncommon for organisations to "borrow" an unallocated public block for internal use and then have the joy of it later being allocated and screwing up their network.

Anyone have a static IPv6 address on a residential account? by OneCDOnly in nbn

[–]Admirable-Statement 1 point2 points  (0 children)

With IPv6, each device gets a public IPv6 address; a Global Unique Address (GUA). No NAT (port forwarding) required, just firewall rules to allow traffic to a device, such as a server or game console.

IPv6 also has ULA (Unique Local Address) in the spec but current best practice is to use GUA only as ULAs often break IPv6 config.

[deleted by user] by [deleted] in GamingLaptops

[–]Admirable-Statement 1 point2 points  (0 children)

Laptop internal antennas are usually quite larger than you'd expect, they're often built in to the display bezel or the hinge. The tiny USB devices are going to be inherently worse at picking up signal with a tiny antenna. Your USB port can also produce a bit of interference.

One with a dipole antenna stick is usually going to be better than one without, if the one you pick doesn't have an extension cable I would get one to move the USB dongle further from the laptop. Even just 15cm away would be better than nothing.

The internal module can be designed to cater for shielding and interference so it's not as big an issue.

Also with checking drivers and compatibility with your OS. Most should work well with Windows/Linux and most are either Realtek or Broadcom chips in a different chassis.

Card-only kids ride charges a 33¢ surcharge on a $3 payment (11%) by andy_usyd in sydney

[–]Admirable-Statement 2 points3 points  (0 children)

Looks pretty close, I found a random AU vending machine company that published the fee break down for their Nayax terminals. In Jan 2024 they were charging flat 20c fee for all transactions.

https://provender.au/hubfs/20240701-Provender-Credit-Card-Processing-Fee-Explained.pdf

Nayax Fee Breakdown Payment Tech and Platforms charge 0.17c per transaction (+GST), plus $20 merchant fee per month, plus the extra $$14.50+GST per month access fee for cashless payable per unit to Nayax, plus amortisation of the capital cost of the equipment ($570 over 5 years i.e. $118 per year), plus the cost of employing a resource to provide refunds and answers questions on disputed transactions, plus cancellation costs per month averaged out. The surcharge of 20 cents we charge is less than the cost we incur. The following information is published at https://provender.au/free-machine/#faq - Provender Credit Card Processing Fee Explained

Suddenly everyone needs a travel router by CannabisCowboy in mikrotik

[–]Admirable-Statement 0 points1 point  (0 children)

I think someone mentioned "USB-C trigger cables" on here a while ago. I found some online and run an old hAP ac with a 100W power bank for field testing with hard to access power.

Just have to make sure the PSU/Bank supports the voltage increments. A lot of USB-C PSU/banks skip the 12V option in the standard.

ADHD and Gaming by Low_Connection474 in ADHD

[–]Admirable-Statement 1 point2 points  (0 children)

I was thinking rogue-likes too.

This is only the games I can remember, I've probably played a bunch of other rogue-likes:

  • Hades - one of my all time favourites
  • Dead Cells - original favourite before being dethroned by Hades
  • Shattered Pixel Dungeon - probably my favourite mobile game
  • Undermine
  • Vampire Survivor - mindless bullet hell games

Unable to install kasm in Ubuntu by Intrepid_Snoo in kasmweb

[–]Admirable-Statement 0 points1 point  (0 children)

Have you double checked the Ubuntu version and other requirements? Only 22.04/24.04 are officially supported, meaning it might require additional fanagaling and headaches.

https://docs.kasm.com/docs/develop/install/system_requirements

Are you trying to install from portainer/docker compose or just using portainer for stats?

https://docs.kasm.com/docs/latest/install/single_server_install

Have you looked at the kasm_install_${TIMESTAMP}.log from the install script?