• 0 Posts
  • 90 Comments
Joined 1 年前
cake
Cake day: 2024年4月13日

help-circle
  • giving out my IP to trusted friends

    Just in case you ever get back into it: We regularly see scanners scanning the internet with a million packets per second at work these days. That means it takes them 4000 seconds to scan the entire IPv4 Internet to check who responds on port 3784. So handing out the IP selectively won’t be enough.

    I also learned that the hard way privately with my Minecraft server. It was found in a scan and listed on Shodan at some point, and I hadn’t put up a whitelist. Some shitty kids came and destroyed whatever they could find before finally putting up signs to mock me lol












  • In my org email went to shit after they outsourced it and lost the institutional knowledge. Now we suddenly have random things happen, like a second layer of quarantine appearing, and nobody can explain it. Any support request is copy pasted forward and backward to the outsourcing provider. If the outsourcing provider’s response makes no sense it’s forwarded to you internally none the less, and without comment.

    My colleagues tell me that back in the nineties we were running an X.400 email gateway in this very company before it was clear that Internet email would be the one to win the protocol wars. We were at the forefront of email developments then.

    And we’re still a god damn tech company. We’re a registry (not registrar), network provider, security services provider, cloud provider, etc. But email is now apparently too hard for us, it’s a sad state of affairs.







  • I wanted a mainstream option but not Ubuntu, and one that was preferably offered with KDE Plasma pre-packaged.

    So I ended up deciding between Debian and Fedora, and what tipped me to Fedora was thinking: Well SELinux sounds neat, quite close to what I learned about Mandatory Access Control in the lectures, and besides, maybe it will be useful in my work knowing one that is close to RHEL.

    Now I work in a network team that has been using Debian for 30 years, lol. Kind of ironic, but I don’t regret it, now I just know both.

    And fighting SELinux was kind of fun too. I modified my local policies so that systemd can run screen because I wanted to create a Minecraft service to which I could connect as admin, even if it was started by systemd.


    1. Ah that makes sense then. I was confused why you would wipe your ESP over and over when it was shared.

    I don’t know why it comes off as hostile, it wasn’t intended that way. Sorry for not expressing it better!

    If the last sentence came across badly, that was more meant to be incredulous that people accept all these workaround instead. There are other comments in here that go to ridiculous lengths to enforce separation, like using the UEFI boot menu to select a disk manually. To me even having two ESPs seems overly cautious, and against the design philosophy. Sharing one ESP is really not an issue (at least as long as you know you’re doing it, as you unfortunately found out the hard way).


  • First of all: You don’t have to reinstall Windows to get it’s bootmgr EFI and supporting files back into the ESP. Installing those from the CLI in from a booted install media is possible, I did it before. You can even install all of Windows manually if you ever need to, it’s just annoying to do with the windows command line tools.

    Secondly: I’m not familiar with all distro installers, but surely you can just not format the ESP? Worst case scenario you’d have to use manual disk formatting I guess, but it’s not that difficult.

    Thirdly: You said Grub doesn’t show the disk. If you mean the Grub command interface didn’t show the disk, then the issue is deeper, at a UEFI or hardware level. If you mean there are no boot entries for a Windows install to be selected, then it could be that they were not generated because the Windows bootmgr EFI was not found when Grub got installed. Sometimes just booting back into Linux and running os-prober again might be enough, if the Windows bootmgr EFI is still around. On my distro the os-proper is automatically run when I run grub-mkconfig -o /boot/grub/grub.cfg

    I’ve always used a shared ESP for my dual boot systems and I certainly don’t reinstall one OS as the result of a change with the other.