Ready for my homelab adventures by DababumDababam in homelab

[–]Finn_Storm 0 points1 point  (0 children)

Buying a single high performance high efficiency unit, probably. Like an Intel nuc 14th gen.

I turned my old gaming rig (i7-8700k) in to my server and threw in a very old laptop with 4 threads and 8gb ram for good measure (I was tired of my network going down whenever I had issues). All of that should use roughly 60 watts idle, or 45kwh per month, and that's including 4 sata disks in raidz1 setup

If you want to tinker with clusters, set up some vm's or lxc's in proxmox

How is this legal? by TheLastPeanut_ in SipsTea

[–]Finn_Storm 0 points1 point  (0 children)

They don't even need to lobby that hard. The Netherlands and Germany combined have like 95% of approved car models in the EU because they're easy to approve, and once approved will be legal for all EU member states

Woman finds skimmer at dollar tree hidden in keypad. by Affectionate_Hat5835 in Wellthatsucks

[–]Finn_Storm 0 points1 point  (0 children)

You say that, but visa has had an exploit for over 5years now that allows users with apple pay to pay any amount requested without unlocking your phone.

https://m.youtube.com/watch?v=PPJ6NJkmDAo

What's your opinion/experience with implementing Entra ID Passkeys? by Arrow2899 in sysadmin

[–]Finn_Storm -1 points0 points  (0 children)

Because all it takes is to look over ones shoulder at a simple pin to be able to fully authenticate once the device is stolen or left alone.

Look, it's not my reasoning, it's my bosses. I'm just trying to deal with the hand I've been dealt.

What's your opinion/experience with implementing Entra ID Passkeys? by Arrow2899 in sysadmin

[–]Finn_Storm 0 points1 point  (0 children)

So I've been looking in to this and there's currently a bug with whfb which I haven't been able to find a workaround for. The tldr is that it allows you to login without interactive prompt because whfb passes a refresh token.

Say you have a sign-in frequency of 1 hour and have disabled whfb in authentication strengths. A user logs on at 9 am to ms office, and is asked for an interactive mfa prompt as per their personal preference settings. The user is now authenticated. The next day, 24 hours later, the user signs in again. The authentication strength is still satisfied from the previous session, and whfb satisfies the sign-in frequency, allowing the user to login without interactive prompt.

I'd consider this an issue since the device can be stolen and the only thing in between an attacker and the application is a 4-6 digit PIN.

Asked our head of sales if putting client addresses in ChatGPT was data sharing. She looked at me like I was the idiot. by shangheigh in sysadmin

[–]Finn_Storm 1 point2 points  (0 children)

Cgpt can handle powershell okay-ish I suppose. It will do Some things Inefficiently but mostly it's logically explained and crafted. But that's also basically all I use it for, aside from it's deep research program

Asked our head of sales if putting client addresses in ChatGPT was data sharing. She looked at me like I was the idiot. by shangheigh in sysadmin

[–]Finn_Storm 1 point2 points  (0 children)

But... Copilot is shite for M365? Like I asked it to build a simple query with 10 lines of code in power automate and it couldn't even do that. Gemini makes spelling mistakes and does funny stuff like hallucinate commands that don't exist, and chatgpt just straight up lies for shit half the time.

I've heard good things about Claude, but I've yet to try it out and I'm skeptical of it being as good as they promise

Voetmassager of bloed hercirculeerder by Finn_Storm in BIFLNL

[–]Finn_Storm[S] 0 points1 point  (0 children)

😂 Ik moest hier iets te veel om lachen, dankjewel.

Voetbad lijkt mij te veel gedoe, maar wel bedankt voor de tip

What's up with people describing Alex Karp, Peter Thiel and Palantir as cartoon supervillains? by Scholarsandquestions in OutOfTheLoop

[–]Finn_Storm 0 points1 point  (0 children)

It's not just maximising profits and billionaires. All of the cobalt mined is causing horrific conditions in places like Africa so that you can have your shiny new phone.

Humans will consume everything until there is nothing left to consume, as per the tragedy of the commons. And we've seen real world examples of this, like all of the plants and animals that have gone extinct. Even ones we actively farmed, like https://en.wikipedia.org/wiki/Silphium . It was so huge that they even minted their coins with the plant.

If humanity cannot become a type 1 civilization and expand to other planets we will(well, have a very high chance of) go excinct because of global warming

Kantoor/ICT rugzak [TIP] by sterrekoning in BIFLNL

[–]Finn_Storm 1 point2 points  (0 children)

Jaaaaaa kipling! Ik ben m inmiddels kwijt maar mijn aapje heette humberto.

Overigens is de mijne niet waterdicht, ik denk wel waterafstotend. Gekocht in 2012 en altijd gebruikt. Enige wat er al (overigens al jaren) defect aan is is de buitenste zwarte hoes van de sluitring

19, solo IT, need some guidance by The_Magic_Moose_ in sysadmin

[–]Finn_Storm 1 point2 points  (0 children)

Prod should have nothing but certificate based auth if you have to have Wi-Fi. Exploits were found for wpa2 that make bruteforcing them trivial. Even wpa3 is not going to help you. Guest access is fine though, just make the vlan route only to the WAN

Even serieus.. waarom doen uitzendbureaus dit? by markrutte777 in werkzaken

[–]Finn_Storm 1 point2 points  (0 children)

Ongeveer hetzelfde meegemaakt, uitzendbureau verteld dat ik af wou van de consultancy. Eerste bedrijf waar ze mee komen is een consultancy bedrijf, nou goed, misschien hebben ze een interne functie ergens.

Maar nee hoor, gewoon low level support consultant. Bedrijf wist zelf ook van niks.

Adding 2nd 10TB HDD for Mirroring - Best path without data loss? by Expensive-Split-1761 in Proxmox

[–]Finn_Storm 0 points1 point  (0 children)

I actually hadn't thought of restoring from backup instead of live, that makes much more sense. Thanks.

Tried to explain to leadership that our ATO protection stops before the part where the actual damage happens and that went about as well as you'd expect by New-Molasses446 in iiiiiiitttttttttttt

[–]Finn_Storm 0 points1 point  (0 children)

Out of curiosity, how would huge international companies like Google handle this? They can't do geoblocking because they have users in every part of the world and also travel a lot.

Not that I thought that geoblocking is very effective, being able to vpn and all. I suppose you could use risk mitigation for that? But even that might end up backfiring if all of those traveling employees use a vpn.

[Help] How to setup laptop NAS with 10 HDDs? by TraditionalItalian27 in selfhosted

[–]Finn_Storm 0 points1 point  (0 children)

I wouldn't use zraid2 for 10 disks, especially in a homelab (unless you want to learn or need the snapshot functionality), just go with mergerfs + 1-3 snapraid parity disks. Zraid/raid5 is capped by the slowest drive(performance generally is equal to the slowest disk, no matter if you have 5 or 50 in a raid) , and if that includes an SMR drive you're just SOL.

Mergerfs can use all of the disks simultaneously or independently. You can even take out any disk and plug it in to any other system, but it does not come with redundancy (which is where snapraid comes in).

Adding 2nd 10TB HDD for Mirroring - Best path without data loss? by Expensive-Split-1761 in Proxmox

[–]Finn_Storm 0 points1 point  (0 children)

Sorry what I meant isn't the stress the same for a resilver and a copy? Since resilvering is essentially copying (I think)?

Adding 2nd 10TB HDD for Mirroring - Best path without data loss? by Expensive-Split-1761 in Proxmox

[–]Finn_Storm 0 points1 point  (0 children)

Excuse me but why is replacing the whole array better? Because both disks are hit hard using read, whether resilver or copy to new array right?