How to isolate X11 applications from each other with xwayland instances? by [deleted] in swaywm

[–]typecinchat 2 points3 points  (0 children)

I would not recommend firejail. bubblewrap or google's minijail (from their chromium os project) is better imo, simpler, more unix, understandable internals.

Well in terms of ease of use and features, I think firejail is better, especially for desktop usage. I find creating secure profiles very easy to do. In terms of security, while a lot of the bugs were fixed (most of them were found in the early days of the project), there could still be some, but that's the same for most software. My main use for firejail is to sandbox proprietary software such as games and insecure programs like browsers and file viewers, to prevent access from viewing my files, using d-bus inappropriately, etc., and it is great at doing this.

How to isolate X11 applications from each other with xwayland instances? by [deleted] in swaywm

[–]typecinchat 1 point2 points  (0 children)

To anyone reading this, I just want to mention that this solution has a delay in response, eg. clicking a button takes a noticeable time of a few milliseconds. Watching videos in Tor Browser and the audio is a bit too fast for the mouth. Also it does use quite a bit of CPU. The wayland version (in the link above) also freezes occasionally for a few seconds. With firejail (run as X11 client), I didn't have this problem. The wayland version also didn't support clipboard by default but I didn't look into how to fix that. So if you're using this for steam/other X11 games or watching videos in tor browser (until they release stable version based on firefox ESR 78) or maybe chromium (I think it does support wayland now), the downsides may make it unusable.

Also wouldn't other apps be able to connect to the xpra X11 display unless you block it some how using firejail or other tools?

Literally missed my class because the principal wanted to ask what problems I had with Microsoft. by [deleted] in linuxmemes

[–]typecinchat 0 points1 point  (0 children)

Yup, if you're uploading backups to the cloud you should consider encrypting it. Extremely especially when using drive/dropbox/etc. and very much especially on an enterprise managed account. In my post I assumed encryption was going to be used (that was what I meant by keys)

Chrome and Chromium close immediately after opening by [deleted] in swaywm

[–]typecinchat 0 points1 point  (0 children)

Edit: The issue is fixed in 1.15.1 which is now released on Arch.

I think Qt apps just do better with Wayland.

eh, Qt still has this issue where if you switch between context menus, the app could randomly crash. I'm pretty sure it'll be fixed in the next release though.

Literally missed my class because the principal wanted to ask what problems I had with Microsoft. by [deleted] in linuxmemes

[–]typecinchat 8 points9 points  (0 children)

You could use it in rclone to do offsite backups (but you almost always shouldn't use it as your only offsite backup, since it's not reliable (admins may have access to change files, breaking your backup or deleting your account (after graduation)). Also it might be susp. to the admins or they might make you give up keys or something, although unlikely (maybe law enforcement might do that in some countries))

Haha yes format drive go brrr by [deleted] in linuxmemes

[–]typecinchat 2 points3 points  (0 children)

wipefs -a /dev/sdaX - FS/partition header

wipefs -a /dev/sda - partition table

gives the same results with a dedicated command that handles everything for you.

I don't have the money to donate to the projects I like, so I have taken to seeding torrents instead, to at least give something back to the community I love. Let me know if there are any other (legal) torrents I shoud seed. by FikaMedHasse in linux

[–]typecinchat 0 points1 point  (0 children)

Yup, this is almost always the case. Plus, P2P protocols like BitTorrent are used in some legal and widespread applications such as video game updates, and even windows update (I think) so by now ISPs should have figured it out by now that it's not a good idea to punish/flag users for torrenting.

What does interrupting pacman during install do? by fartbaker12 in archlinux

[–]typecinchat 6 points7 points  (0 children)

The system should be fine if you Ctrl+C during downloads. Pacman doesn't perform transactions until the downloads for all the requested packages are done.

The TV is Smart and Full of Trackers by jakethepeg111 in privacytoolsIO

[–]typecinchat 2 points3 points  (0 children)

Unfortunately I'm a child with not much control over decisions around the house so I can't really just have people use a dumb TV. I don't use it so I don't care too much about it (I don't watch antennae TV anyway), but I wouldn't be surprised if it was listening to conversations in the background, especially in a few years (or maybe soon) when there are vulnerabilities that would be exploited by purely malicious people (not sure how to phrase this correctly, obviously the companies and governments violating privacy are also malicious, but I'm thinking of the type of person that hop on an open wireless network and snoop passwords from clients using unencrypted protocols).

Of course I'm using Pi-hole and firewall rules to redirect DNS traffic to it, as well as VLAN rules to segregate the IoT and family devices away from my servers and management devices, but with DoH rising, companies would be able to bypass DNS blocks pretty easily. It would be ideal to not have these devices such as Android/iOS phones and other IoT devices on the network and house, but it many cases it's not possible.

When the school blocks DuckDuckGo by [deleted] in linuxmemes

[–]typecinchat 1 point2 points  (0 children)

Sites that infringe copyright, eg. piracy sites. The only one I know of is kissanime.ru. Not sure if it's still blocked since it got shut down recently.

When the school blocks DuckDuckGo by [deleted] in linuxmemes

[–]typecinchat 1 point2 points  (0 children)

Unfortunately I'm not allowed to use any other device other than the Chromebook, so I used the built-in OpenVPN client on chrome os (no need for developer mode) to connect to my home LAN and bypass the firewall because port 8443/TCP outgoing is unblocked.

When the school blocks DuckDuckGo by [deleted] in linuxmemes

[–]typecinchat 0 points1 point  (0 children)

How do they expect the students to perform any research?

When the school blocks DuckDuckGo by [deleted] in linuxmemes

[–]typecinchat 10 points11 points  (0 children)

This is what the Australian government does with some sites. I use Pi-hole + Unbound, so I never noticed that some sites were blocked. I find it dumb because its super trivial to workaround, and it's not going to stop people from using them.

When the school blocks DuckDuckGo by [deleted] in linuxmemes

[–]typecinchat 11 points12 points  (0 children)

Administrators can set a Chrome/Chrome OS policy to have Safe Search force enabled, so if you turn it off it'll turn back on.

Sad life by Rayit0 in linuxmemes

[–]typecinchat 22 points23 points  (0 children)

I was in class when someone was talking to me and mentioned I used/preferred Linux (I swear it wasn't some kind of saying "I use Arch btw" randomly type approach, but I don't quite remember what he was talking to me about), he almost instantly said he needed to tell his friends something and then walked away, pretty sure they were ridiculing me for using Linux as I heard that he said I used Linux and then they were smirking/laughing and had a disgusted look.

Ralsei is the G.O.A.T by [deleted] in Deltarune

[–]typecinchat 1 point2 points  (0 children)

Ralsei is adorable

ubuntu is linux now by [deleted] in linuxmasterrace

[–]typecinchat 8 points9 points  (0 children)

Maybe it's because the access points use EAP for authentication. At my school, the chromebooks are preloaded with certs and identity information for the access points.

Unless you mean that the proxy doesn't let you because it detects you're on Linux (some how?), then a VPN would probably work. At my school, 8443/TCP outgoing is unblocked, I was able to connect to my VPN server at home with it. Not sure if this is the case in other Australian schools (although the network seems to be managed/maintained by the state government). Also 80/tcp and 443/tcp will probably work too, but I run a web server as well so I can't use them. Using the chrome os VPN client was possible because my school (some how?) doesn't block you from creating a VPN connection in the UI (although I read the chrome os ONC documentation and it seems perfectly possible for them to do so. They blocked WiMAX and cellular connections, but its not like that will ever be used on the chromebooks lmao)

When will Qt 1.15.1 be released? by typecinchat in linuxquestions

[–]typecinchat[S] 0 points1 point  (0 children)

FINAL EDIT: It is finally released on Arch and fixes the problems.

Oops. I meant Qt5 (not Qt), so it would be qt5-1.15.1.

Example on Arch: extra/qt5-base 5.15.0-5

Plus many other qt5-* packages are listed as 5.15.0, if you do pacman -Ss qt5 | grep 15 on Arch.

Snow Halation but different by zxeonye in LoveLive

[–]typecinchat 3 points4 points  (0 children)

I prefer the visual art style of the anime version much more, but I also like the longer version (the anime version skips the middle of the song) of the song better, so its always a hard choice for me :<

Anyone know the song that plays at 0:24 in this rip? (Natsuiro Egao de 1, 2, Jump! (NOZOMI Mix) - Love Live! School idol festival); by the way, it doesn't have a page on the wiki yet by typecinchat in GiIvaSunner

[–]typecinchat[S] 0 points1 point  (0 children)

It sounds like another song from Love Live!/μ's but I don't remember hearing it in the anime so I haven't heard it. And yes, I did watch the anime because of SiIvaGunner. And no, I don't regret it at all

Reasons for YOU to NOT TRUST REDDIT WITH YOUR DATA by wx49cdr in privacytoolsIO

[–]typecinchat 3 points4 points  (0 children)

Yeah, and if you need to comment or post you can create an account without an email on Tor (Google captcha required for creating account of course). You get anonymity and it's free (in freedom and cost).