Nintendo is restricting the Switch 2's USB-C port — most third-party docks and accessories won't work thanks to proprietary protocols
Nintendo has intentionally implemented measures to restrict third-party accessories, including docks, hubs, and other accessories, from working with the new Switch 2. According to two accessory manufacturers who spoke to The Verge, the console maker is making use of a new encryption method as well as an encryption chip. Previously, a similar report by GamesRadar suggested that the change in power requirements (20V) on the Switch 2 has restricted accessory makers like Jsaux, from making docks for the new handheld hybrid console. However, it seems that the real reason is that Nintendo has made changes to the USB-C protocols, which now require “re-adaptation for both power delivery and video output."Further investigation done by Sean Hollister, senior editor at The Verge, reveals more evidence. Traditionally, when a user plugs a dock or hub into a USB-C port on a laptop or tablet, a standardized set of structured instructions is sent out to enable successful communication between the host and the dock. The instructions first deliver the correct amount of power using the PD (Power Delivery) protocol and then enable other features like HDMI or DisplayPort video out, Ethernet, and so on.
The numbers are in: Democrats are fired up
The numbers are in: Democrats are fired up
A deep dive into two recent special elections in Florida shows the #Resistance is back and stronger than everJesse Richardson (Strength In Numbers)
adhocfungus likes this.
IdeaLab confirms data stolen in ransomware attack last year
IdeaLab is notifying individuals impacted by a data breach incident last October when hackers accessed sensitive information.
[Announcement] Development Stories - Who is the Originator?
The world building and lore introduced in Secrets of the Atlas has set us up for expansions to come! We asked our Audio and Narrative Director Kane, to delve into some of the intricacies of piecing all of its components together.
Hello! Kane here. You may know me previously as the Audio Lead at GGG... Well I'm still one of those, but now also narrative falls under my wheelhouse. I often pinch myself as a reminder that I'm not dreaming because this is quite literally a dream combination of things I love... and let me tell you, it brings me a great deal of joy!
Anyway, where was I? Oh yes. Secrets of the Atlas. I should mention upfront, if you want to experience Secrets of the Atlas without spoilers, perhaps don't read this. It is a bit tricky to discuss its narrative development without going into at least some of the details.
As is the case these days, Mark (Neon) and I began with some bullet points for the basic narrative of what we'd be working towards. For Secrets of the Atlas, those were something along the lines of:
- Zana.
- ... Brother?!
- ...... THREE SHAPER-ESQUE BOSSES?! OMG!
After those initial conversations, I knew we were off to a strong start and I was hyped to get started and piece together the dialogue and events for the narrative design. The initial premise here was to uncover what Zana has been doing since we lost track of her in the Atlas. That expanded into three main components to the expansion's story, with Zana's plight at the core of it all.
The first component: Eagon
Introducing Eagon, a mysterious fellow claiming to be Zana's brother, gave us a lot of interesting angles to explore Zana's mission from. Like us veteran Exiles, he knows a lot about Zana and feels a connection to her, yet she is essentially a stranger to him. He believes that she simply must have all the answers to his burning questions about his heritage... and yet life is never so simple. He has spent his life trying to uncover and realize who he is and perhaps, why he is.
Working towards unraveling who Eagon is and helping him try to piece things together makes him quite relatable as a person. Despite his rather pompous sense of entitlement (we are all flawed), he just wants to understand who he is, his place in the world and to save who he believes to be his sister.
The Voice of Eagon
When casting this character, I knew we needed a voice actor who could fully embody Eagon's unique personality and portray it correctly. One audition immediately stuck out as the right fit. Leon Wadham brought Eagon to life in a perfect way.
The second component: Zana
Interestingly for this expansion, Zana doesn't exactly occupy screen-time a great deal. It is what she has created that we are able to explore, and trying to understand why she has done so is what drives the story forward. Eagon discovers that Zana has been experimenting with the Atlas and manifesting memories, and even ideas, into reality. But why?
We are able to see what has mattered most to her, in the very areas we traverse and the figures we fight. In many ways, this exposure to Zana is more effective than even talking to her directly. Her memory threads are split into 3 groups of paired themes, based on Loneliness and Neglect, Trauma and Fear, and Reverence and Dread.
Loneliness and Neglect
This is first touched on by encountering a form of Sirus at a time unfamiliar to us, exploring the deeper part of their connection and her regrets with what became of a relationship she neglected.
Once we defeat this part of the thread, we can enter the 'Moment of Loneliness' where we witness Zana as a child, trying and failing, to get her father's attention. This moment then transforms into the 'Incarnation of Neglect', where a permutation of her father is presented as a monstrous creation that we must overcome on her behalf.
Trauma and Fear
These themes are explored by her residual trauma from the Templars and how they treated her and her father, exemplified by the fight with the Cardinal of Fear.
This allows us entry into the 'Moment of Trauma' where we witness young Zana making her father quite cross. This moment then becomes the 'Incarnation of Fear', a frightening imagining of someone her father never truly was.
Reverence and Dread
This theme is shown in the form of Innocence, a God, taking the main stage as a revered but deceitful figure - yet another whose promises are to be broken. This thread line shows that even with good intentions, the grip of power can subvert even divine motivations.
After beating this form of Innocence, we can enter the 'Moment of Reverence' where we witness child Zana watching her father deliver a speech in Oriath. This moment is then reshaped into the 'Incarnation of Dread', showing just how much her fathers notoriety and influence affected her.
The Voice of Zana
Zana is back, baby! It was fantastic to have Katherine Kennard back to reprise her role, and she did so quite effortlessly. It is quite amazing how actors can return to a role after some time and immediately lock-in and become the character again.
The third component: Valdo
At the core of Zana's plight is her father, as it has always been. But what do those memories mean to Zana? Moments that mean little to grown adults, but leave a permanent imprint on a child. Eagon construes these moments as mutations by the Atlas, overblown realisations of a child's memories - but are they? Or is this intentional on Zana's behalf? And why? Good questions!
The Voice of Valdo
That deep and rich presence and voice... Daryl Habraken returns, but not exactly as The Shaper. This time, we hear a little more from Zana's father, rather than who he became.
Who is the Originator?
Finally, at the end of this part of the story, we learn part of Zana's true ambitions. We learn that Eagon's situation remains further complicated. And most importantly: we learn that we have more to learn. And I for one, cannot wait to unravel these threads even further.
Hang on... who is the Originator again? It is Zana, right? Hmm...
Until next time, friends!
Daryl Habraken - Actor, Cinematographer, Visual Effects
Daryl Habraken. Visual Effects: Le Dernier Samouraï. Daryl Habraken is known for Le Dernier Samouraï (2003), Power Rangers Ninja Steel (2017) and Long Time Coming (2016).IMDb
Military leaders aghast as Meta founder Zuckerberg crashes classified Oval Office meeting on fighter jets: report
Facebook mogul’s sudden appearance is increasingly typical of freewheeling West Wing during Donald Trump’s second term, which president has reportedly nicknamed ‘Grand Central Terminal’
Air Force leaders learned that lesson earlier this year when they arrived for a top-secret briefing with Trump in the Oval Office, which according to NBC News was scheduled for them to discuss plans for America’s sixth-generation fighter aircraft, dubbed the F-47 in a nod to Trump’s status as the 47th President of the United States.
As the generals were going over the details of the super-stealthy plane, which Trump has called the most advanced, capable and lethal combat aircraft platform ever built, they were startled by the appearance of Meta CEO Mark Zuckerberg popping into the Oval Office.
According to NBC, White House officials became concerned that Zuckerberg, one of the wealthiest men in the world, lacked the security clearance required to be present for talks about such a sensitive national security matter.
like this
American Pride Slips to New Low
Fifty-eight percent of U.S. adults are extremely or very proud to be Americans, the lowest in Gallup's 25-year trend.
adhocfungus likes this.
Port Forwarding on a selfmade VPN & I2P Torrenting
Hello comrades, I recently started to selfhost my own VPN. I thought of using a regular VPN provider but I don't trust the cheap ones and the good ones are too costly for my needs. So I started to rent a cheap one core VPS (DMCA ignored of course) for 2,5€/month. Before that I tried some seedboxes from some cheap providers, but the amount of control you have there was absolutely terrible. If they have SSH access, you have no sudo permission.
One of those providers I tried just deploys docker containers and then using some fancy marketing they make a good amount of cash from something that one can do oneself with a little bit of technical knowledge. And then when something doesn't work; good luck my friend.
So that's why I choose a VPS where you have maximum control. Setting it all up including security measures and a custom OS is very fun.
My distro of choice is Devuan. I'm running a Debian based distro myself and having no systemd not only boosts the startup time, but saves some system resources, which is especially important on a server with 1 GB RAM.
Installing Devuan was quite an adventure. Navigating their website to find the right download is like cruising a wild jungle. After choosing a mirror to downloaded from, one has to check the name of the latest release. After that I selected "installer-iso". In there I grabed the netinstall. From there the real adventure began. Among the "standard stuff" I had to specify the DNS and netmask, nothing wild. I didn't installed a desktop environment of course, just the ssh-server components.
I then followed Wolgangs guide to setup SSH. Managing a computer without a desktop environment is something I never had done before and while on a desktop PC this can be a horrifying experience, it's really fun to operate a remote system via command line.
For enhanced security I activated and configured ufw. Many distros comes preinstalled with gufw, so setting up ufw wasn't a big deal.
Without systemd many Wireguard install script doesn't work, so I installed Wireguard via docker-compose with the help of Christian Lempas wonderful guide. Amazing guy.
I had to enter the DNS servers manually so that the actual DNS addresses of the server are used.
I tried to route IPv6 traffic through the VPN by entering the IPv6 address in brackets into the docker-compose.yaml, adding ::/0
in the AllowedIPs, but it all didn't worked. So I had to deactivate IPv6 on my system and in the network manager. This stopped all IPv6 leaks.
As killswitch I found this easy method. I tested it and it works. No IP-leaks anymore.
To prevent DNS leaks I found these commands: sudo iptables -A OUTPUT -p udp --dport 53 -j DROP
, sudo iptables -A OUTPUT -p tcp --dport 53 -j DROP
.
I tried the ufw equivalent sudo ufw deny out 53/udp
, sudo ufw deny out 53/tcp
, but it blocks internet access.
I make the iptables persistent with iptables-save since iptables-persistent conflicts with gufw and ufw.
With this setup I started my torrent client and saw that I'm barely seeding. That's not cool. I tried to set up port forwarding with a lot of iptables and routing tables like this one but when checking the port it's always closed.
So what now? My goal is to torrent over the I2P. I see a lot of potential in the I2P. It is basically what people envisioned the internet to be in the 90s. Since the internet is a military technology, freedom was never implicated, so even with a lot of obfuscation and circumvention, there is always some trouble when using clearnet. My intention with the VPN is to port over clearnet torrents to I2P. Thus the reliance on VPNs can be decreased.
Save iptables Rules After Reboot
Learn how to save iptables rules after reboot using iptables-persistent, iptables-save, and netfilter-persistent. Fix common issues like service iptables-save not working or iptables-save permission denied.Haikel Fazzani
like this
Let's Encrypt rolls out free IP address certificates
Let's Encrypt rolls out free security certs for IP addresses
: You probably don't need one, but it's nice to have the optionThomas Claburn (The Register)
Quale strampalata mitologia si nascondeva dietro al nazismo? da Focus.it
Quale strampalata mitologia si nascondeva dietro al nazismo?
Secondo l'ideologia nazista delle origini Atlantide era l’antica civiltà degli ariani, la più evoluta al mondo, creata dalla divina razza iperborea.Focus.it
Ma quando è nato il calcio femminile? da Focus.it
Le origini del calcio femminile sono legate alla patria del football, la Gran Bretagna. Ma c'entra anche la Seconda rivoluzione industriale: le squadre di calciatrici inglesi nacquero infatti come dopolavoro per le operaie.
@calcio@diggita.com
Eurepei di calcio femminile: ma quando è nato il calcio femminile?
Scopriamo le origini del calcio femminile, proprio mentre si aprono i campionati Europei 2025.Focus.it
FairPhone AMA
FairPhone AMA is happening right now:
old.reddit.com/r/BuyFromEU/com…
Vote on questions you'd like answers to, or ask your own.
Bazzite 42 listed in June 2025 Steam Hardware Survey
cross-posted from: pawb.social/post/27451562
Seemingly for the first time, the Bazzite gaming-focused Linux distro has appeared on the Steam Hardware Survey. Well done to the Bazzite team for making such an amazing distro for gaming (and now just general usage as a while too)! Been my main choice for going on a year now for my general use distro, and I haven't looked back.
like this
Yeah, bazzite, or any atomic distro, is not something I would recommend to someone coming from windows. It's just too different in some ways.
Been running bazzite myself as a fairly experienced linux user and love it though.
Google loses $314 million lawsuit over data transfers when Android phones are idle
Google loses $314 million lawsuit over data transfers when Android phones are idle
A group in California alleged that these transfers were harming users - and the jury agreed. Now there is a separate lawsuit for the other 49 US states.Peter (GSMArena)
Australians to face age checks from search engines
Australians using search engines while logged in to accounts from the likes of Google and Microsoft will have their age checked by the end of 2025, under a new online safety code co-developed by technology companies and registered by the eSafety Commissioner.Search engines operating in Australia will need to implement age assurance technologies for logged-in users in "no later than six months”, under new rules published on Monday.
While only logged-in users will be required to have their age checked, many Australians typically surf the web while logged into accounts from Google, which dominates Australia’s search market and also runs Gmail and YouTube; and Microsoft, which runs the Bing search engine and email platform Outlook.
If a search engine’s age assurance systems believe a signed-in user is “likely to be an Australian child” under the age of 18, they will need to set safety tools such as “safe search” functions at their highest setting by default to filter out pornography and high impact violence, including in advertising.
Currently, Australians must be at least 13 years of age to manage their own Google or Microsoft account.
Australians to face age checks from search engines
Logged in to Google or Microsoft? Age assurance is coming.Information Age
I can backup an entire VM snapshot very quickly and then restore it in a matter of minutes. Everything from the system files, database, Jellyfin version and configs, etc. All easily backed up and restored in an easy to manage bundle.
A container is not as easy to manage in the same way.
How not?
If a lxc container is in a btrfs subvolume or in a zfs dataset (those are created easily like a directory, it's not a partition), you can do a full 1:1 copy in less than one second via a snapshot, keeping all the system files, database, version and configs
All Likud Ministers Urge Netanyahu to Annex Entire West Bank This Month | Common Dreams
All Likud Ministers Urge Netanyahu to Annex Entire West Bank This Month
The 15 ministers said that Israel's "strategic partnership, backing, and support of the U.S. and President Donald Trump" make this a "propitious time" to formally steal most of Palestine.brett-wilkins (Common Dreams)
The Israeli Plot to Extinguish the Journalists Documenting Genocide
The Israeli Plot to Extinguish the Journalists Documenting Genocide
Palestinian journalists live through the same brutal conditions they cover — and describe a pattern of direct targeting by Israeli forces.Neha Madhira (The Intercept)
Rate my one year old homelab.
How it started:
I bought a MiniPC (Blackview MP-80) to run Home Assistant and some lights etc. to go with it.
It's now exactly one year later this is what my setup looks like now:
BMAX B2 Pro --> Home Assistant OS
Blackview MP-80 --> Proxmox --> Nextcloud-AIO & Immich
ODROID H4+ --> Proxmox --> TrueNAS
How it's going:
With the heatwave in Europe I've now installed cooling to keep my HDD's from heating up.
I know it's Janky as hell, but I love it. The plan going forward is to buy a 3D Printer so that I can 3D Print a custom 10" rack, and I'll build my own cooling and temperature monitoring system with ESP32 and create a dashboard for it in Home Assistant and sorting out networking.
It's a work in progress, having a lot of fun learning and adding new things.
adhocfungus likes this.
Yeah, it's fine ... wait, IronWolves in a living space? Paired with that acoustic desk it must be like a train yard, but with more vibrations 😁.
Edit: wrote this before I saw your comment acknowledging the same.
\
Well, with HDD there is the noise of the drive itself (the constant one & the searches, spin-ups), and the vibrations which can get acoustically amplified. For the former you need a case, any case, maybe a case in a case (ventilated ofc), for the latter I've always (since late 90s) had my HDD on full rubber, no non-rubber connection to the case.
My current NASies all use these (in desktop cases, I don't like server hardware if it isn't necessary, like with disks):
(They cost like 2 monies with shipping.)
So if going the 3D-print way, as you mentioned, I would def add the suggestion of incorporating thicc rubber pads or rubber straps into your design, like these ones (I've used them a lot decades ago, the only commercial option for silent PC enthusiasts at the time, but I've built then myself too):
(It's rigid, the disks won't fall out.)
China boosts tech outreach to Global South as US collaboration dips: analysts
China boosts science, tech outreach to Global South as its US collaboration dips: analysts
Washington is said to be missing out on ‘big’ opportunities while Beijing reaches agreements with ‘dozens and dozens of countries’.Bochen Han (South China Morning Post)
Technology reshared this.
GROTTESCA, mostra di Roberto Coloma Nadal al Fontanone di Faenza (Ra)
Giovedì 3 luglio alle 18.30 inaugura al Fontanone di Faenza GROTTESCA, mostra personale di Roberto Coloma Nadal a cura di Enea Mazzotti. L’artista propone un viaggio visivo tra mondi surreali e ironici, ispirato alla pittura a grottesche riscoperta nel Rinascimento. Le sue opere, dense di simbolismo, sono popolate da diavoletti esili, creature antropomorfe e architetture fluttuanti, in un linguaggio decorativo rielaborato con sguardo giocoso e personale.
Le composizioni sono abitate da piccoli personaggi e visioni bizzarre che intrecciano ironia e meraviglia. La pittura diventa così uno spazio onirico, dove lo spettatore è invitato a perdersi lentamente nei dettagli.
A seguire, alle 19.30, il Trio La Rosa proporrà Mediterraneo d’Amore, concerto che attraversa le sonorità e le lingue delle coste mediterranee. Un repertorio che celebra emozioni e storie d’amore, con brani da Grecia, Turchia, Egitto, Spagna, Balcani e Nord Africa, eseguiti con strumenti tradizionali.
La mostra rientra nella rassegna estiva La Prospettiva estiva per il Fontanone, a cura dell’associazione Fatti d’Arte con direzione artistica di Veronica Bassani.
📅 Eventi in calendario:
Giovedì 10 luglio, ore 18.30 – Parole e movimento: presentazione del libro Buio Dentro di Edoardo Lughi con musica di Alex Bertozzi e performance di danza a cura di Anna Clara Conti per WAM! Festival.
Giovedì 17 luglio, ore 18.30 – Finissage: visita guidata con l’artista e il curatore Enea Mazzotti, seguita dallo spettacolo teatrale Sogno Today degli allievi di Fatti d’Arte.
📍 Fontanone, Faenza
🎟 Ingresso libero
📧 infofattidarteassociazione@gmail.com
📱 Instagram: @fatti_darte – Facebook: Fatti d’Arte
Fatti d’Arte, attiva dal 2015, promuove la cultura con progetti che intrecciano teatro, pittura, fotografia e riflessione sociale. Dal 2022 anima il Fontanone con eventi estivi dedicati alle arti.
GROTTESCA, mostra di Roberto Coloma Nadal al Fontanone di Faenza (Ra) - ViaggieMiraggi
AL FONTANONE DI FAENZA ARRIVA “GROTTESCA” LA MOSTRA DI ROBERTO COLOMA NADAL TRA ARTE, MUSICA E VISIONI ONIRICHE Giovedì 3 luglio alle ore 18.Redazione (ViaggieMiraggi)
They don't want people to pirate, but this is the service they want people to pay for.
Crunchyroll Uses AI Translations Months After CEO Claimed “No AI”
Despite public assurances that AI wouldn’t touch creative content, fans spot ChatGPT in Crunchyroll’s latest anime release.Ben Gryce (The Phrasemaker)
like this
If anyone trusted Crunchyroll after they removed comments and reviews, it's honestly kind of their fault, as much as I hate victim blaming. They have shown who they are time and time again, it's not hard to believe them.
Though, I think anyone in this community very likely already knows exactly who they are.
The orange one is not so bad, but nothing really good either. Right after bottling, I still discerned the chemical orange flavour, which was kind of nice, but after a few weeks of aging in bottles, I have a hard time telling what it tastes exactly. I can tell it's gatorade-based, but without a particular, recognizable gatorade flavor. The color is nice, though. It kept the clear, distinguishable orange from the gatorade. Just a bit darker.
Taste-wise, it's definitively the worst batch I've made so far. Otherwise, I didn't get any headache from it and the orange one is still drinkable. 4/10 because it's got electrolytes.
Maestro likes this.
NYT to start searching deleted ChatGPT logs after beating OpenAI in court
NYT to start searching deleted ChatGPT logs after beating OpenAI in court
What are the odds NYT will access your ChatGPT logs in OpenAI court battle?Ashley Belanger (Ars Technica)
How to critique a photo? What is a good photo?
I know I can google this, but I wanted to hear from the people as well. If someone shows you an album and asks your opinion, what would you look for?
My take:
I know it is subjective to a degree.
I know principles in composition are important
But I am not sure I could be part of a discussion on the topic and it would be cool to!
Thanks
Legal Actions in L.A. Highlight Harsh Tactics of Immigration Crackdown
Separate challenges by immigrant rights groups and an American detained by federal agents accuse officers of racial profiling, brutality and unlawful detentions.
If the budget bill passes, as seems likely to happen in the next couple hours, these abuses are going to go national.
Stop Killing Games update: 1 Million in the EU!
Stop Killing Games is an European Citizens Initiative aiming to keep games playable even after their developers and publishers have stopped supporting it.
To get the initiative onto the EUs agenda so it has the chance to become EU law, it has to both reach 1 million signatures total and minimum thresholds in at least 7 countries. Now both of those goals have been reached.
But that's no reason to stop signing! Some signatures will get thrown out in the validation phase because the signee made a mistake. So keep signing and show the world just how many people are in favour of saving videogames.
like this
PNG has been updated for the first time in 22 years — new spec supports HDR and animation
PNG has been updated for the first time in 22 years — new spec supports HDR and animation
The demand for subtitles in HDR content led to this update.Jowi Morales (Tom's Hardware)
RFK Jr.’s plan to put ‘AI’ in everything is a disaster
In a 92-minute interview with Tucker Carlson on Monday, RFK Jr. drilled down on his vision for the US Department of Health and Human Services (HHS). Artificial intelligence — arguably, a uselessly vague umbrella term — came up multiple times. (As did conspiracy theories and disinformation on vaccines and autism, the medical establishment, and covid-19 deaths.)As the head of HHS, Kennedy said his federal department is undergoing an “AI revolution.” He implored viewers to “stop trusting the experts,” as highlighted by Gizmodo, and, presumably, put their trust into AI instead of decades of scientific consensus.
RFK Jr.’s plan to put ‘AI’ in everything is a disaster
Drug testing and the tracking of vaccine side effects could be affected.Lauren Leffer (The Verge)
The EU initiative for Stop Killing Games has reached the goal of 1 million signatures!!!
Mannivu likes this.
Fnuy little conversation in Svobenian
Translation:
[image of a svobenian google search result saying earth's age is 4.543 billion years]A: how is it
A: (that) the earth is 4543 [sic] billion years old but the year is (only) 2025
B: idiot 🤦
Also a bit of a context, Svobenian is my Germanic conlang with strong Slavic influence (basically a descendant of Proto-Germanic with Slavic sound changes and many proto-slavic borrowings). I made this joke to demonstrate the difference between “vėtar” (year, cognate to English winter, used only as a time unit, e.g. 4.543 mlrd vėtř, meaning 4.543 billion years) and “jero” (cognate to English year, used in other contexts, e.g. jero 2025 “year 2025”)
This word also exists in Polish, Lithuanian, and Russian, as a loanword from French. Because I imagine speakers of Svobenian living somewhere in central Europe (i even have the whole althist thing where i made Svobenia, country of Svobenians, being located in what is now Kaliningrad oblast), i find it sensible that they'd also borrow this word.
And yeah, it's a Germanic language, developing separately from probably originally Eastern Germanic branch, somewhere in what is now Mecklenburg-Vorpommern, Germany, but then got heavily influenced by some early West Slavic language. I'm gonna elaborate on the whole history of svobenes once i actually "finish" the language
Promuovere il fediverso nel fediverso è inutile
Promuovere il fediverso nel fediverso è inutile
namirblog.altervista.org/promu…
Promuovere il fediverso nel fediverso è inutile - Namir Blog
Sono passati 3 anni dal mio primo approdo nel fediverso, e credo che sia abbastanza per farmi un idea generale su cosa sia e delineare dei pregi e difetti.Peppe Namir (Namir Blog)
like this
reshared this
Re: Promuovere il fediverso nel fediverso è inutile
Non avevo letto il tuo post namirblog@namirblog.altervista.org (ti menziono anche come peppenamir@www.foxyhole.io perché non so se funziona il commento a wordpress) ma mi è capitato di vederlo ora, a poch ore dal lancio di questo nostro progetto citiverse.it
Sono d'accordo con la tua analisi: il Fediverso va promosso fuori dal Fediverso e, possibilmente, bisognerebbe anche evitare di chiamarlo Fediverso 😀
Chissà se il nostro citiverse riuscirà ad avvicinare un po' di gente?
PS: intanto sono molto contento di aver potuto "prendere" il tuo post di Wordpress e averlo "spostato" all'interno della categoria "Discussioni sul Fediverso"
All Likud Ministers Urge Netanyahu to Annex Entire West Bank This Month | Common Dreams
All Likud Ministers Urge Netanyahu to Annex Entire West Bank This Month
The 15 ministers said that Israel's "strategic partnership, backing, and support of the U.S. and President Donald Trump" make this a "propitious time" to formally steal most of Palestine.brett-wilkins (Common Dreams)
skankhunt42
in reply to ejizar • • •I want to call out one thing in case you didn't know.
The idea of a public VPN is to hide your traffic with other users who also use the VPN. If you're renting a VPS you don't get all the "benefits" of a public VPN. All you're doing is adding an extra hop to the internet, you're not mixing your traffic with others using the same IP. It's all you.... In fact, you're probably making it easier to isolate the things you do online because at home you could say a guest you had over must have downloaded it. If its the VPS, its all you.
ejizar
in reply to skankhunt42 • • •skankhunt42
in reply to ejizar • • •ejizar
in reply to skankhunt42 • • •Apollo2323
in reply to ejizar • • •ejizar
in reply to Apollo2323 • • •Apollo2323
in reply to ejizar • • •ejizar
in reply to Apollo2323 • • •originalucifer
in reply to ejizar • • •ejizar
in reply to originalucifer • • •PolarKraken
in reply to ejizar • • •ejizar
in reply to PolarKraken • • •Mordikan
in reply to ejizar • • •As mentioned in the comments, the VPN isn't really viable here. That being said, your DNS iptable statements don't work for two reasons:
1. TCP 53 isn't going to be used unless something like EDNS or zone transfers occur which is like never.
2. The first statement blocks any traffic on the output chain (leaving your network) that is destined to a remote UDP port 53. This kills your access to any off-device DNS server.
You would have to have an ACCEPT statement to allow the DNS traffic through the VPN. Something like:
iptables -A OUTPUT -o tun0 -p udp --dport 53 -j ACCEPT
ejizar
in reply to Mordikan • • •Why do you think that a VPN isn't viable?
I don't understand it, why doesn't these commands block internet access when they block DNS traffic like the ufw command?
Mordikan
in reply to ejizar • • •The problem here is that it sounds like you think torrenting traffic is using the self-hosted VPN, but that wouldn't be true.
Here is how it sounds like it is currently working:
Torrent Client -> VPN interface -> Default interface -> Torrent Users
You could probably confirm that with mtr/traceroutes and bmon.
The reason your internet goes done when you run your iptable statements is because you're preventing DNS resolution which uses UDP 53 from leaving the device. Even if you are running your own DNS server on that VPS, unless you have trackers' statically mapped, DNS recursion has to be allowed for your VPS to determine host IPs.
ejizar
in reply to Mordikan • • •Nope, I checked the traffic with mtr and it connects directly to the internal IP address of the server. Also I've bound the torrent client to the network interface of the VPN to ensure the traffic goes through the VPN.
I understand. The problem with the rules above though is that it would block my regular network interface even after the VPN goes down. That's why I created some postup and postdown rules for the Wireguard config.
PostUp = iptables -I OUTPUT -o %i -p udp --dport 53 -j ACCEPT && iptables -A OUTPUT ! -o %i -p udp --dport 53 -j DROP
PreDown = iptables -D OUTPUT -o %i -p udp --dport 53 -j ACCEPT && iptables -D OUTPUT ! -o %i -p udp --dport 53 -j DROP
This only activates the rules while the VPN interface is on.
Mordikan
in reply to ejizar • • •curl ipinfo.io
then does that show an IP address present inip addr
?ejizar
in reply to Mordikan • • •curl ipinfo.io
andip addr
doesn't match. The first command contacts a server outside the network, so it shows a public IP address while the other shows the internal IP addresses of the network interfaces.Mordikan
in reply to ejizar • • •ejizar
in reply to Mordikan • • •Mordikan
in reply to ejizar • • •ejizar
in reply to Mordikan • • •stupid_asshole69 [none/use name]
in reply to ejizar • • •That’s stupid.
You have a computer with your name on it in a country where what you’re doing is legal and you’re connecting to it using a process that authenticates with a shared secret from another computer that most likely has your name on it in a country where what you’re doing is illegal.
You’re not fooling anyone and by creating your own crime tunnel with your name on both ends of it and I’m gonna hesitate to use specific legal language to describe the new, more serious type of crime you are now committing because it’s different all over but there’s almost always a type of wire fraud that covers this because banks all tried to do it when different kinds of electronic transfers popped up.
Just use air like a normal person.
ejizar
in reply to stupid_asshole69 [none/use name] • • •stupid_asshole69 [none/use name]
in reply to ejizar • • •Again, you’re making what reads like an incredibly stupid decision.
You have a computer with your name on it, the vps you set up, in a country where your actions are legal and another with your name on it in a country where you reside and your actions aren’t legal.
You connect to the vps using a protocol that authenticates your identity.
Let me just walk through the steps to prosecute you for piracy or a different crime with much more serious consequences:
Through leaky dns, a tipoff, some transformer or just the usual 24/7 isp traffic analysis someone realizes you’re doing a piracy.
They get logs from the isp and if your bad dns doesn’t give you up immediately then they see the outlier ip of the vps. ISPs always cooperate, often the special relationship between companies that are allowed to operate critical infrastructure and law enforcement is enshrined in law.
Whois points them at the vps company, whose policies may require them to get a warrant or equivalent in order to allow law enforcement into your actual running vps but will absolutely comply with kyc aligned requests and laws.
As an aside, you may think that the vps provider could stand up against the cops for you, but they’re not doing that. No one is keeping their mouth shut for $3/mo unless that’s their literal whole business model. They’ll just find new tenants.
Anyway so now they know it’s you on each end and have an airtight piracy case. If that seems like a lot of work to do through for someone whose downloading SpongeBob, it is! Piracy investigations are often not worthwhile as crimes in and of themselves.
The cops will have a strong incentive to get you on other charges, so when they search your house they’ll be looking not only for the computer with your name on it but for anything that could be misconstrued as illegal or prohibited. Hope you’re clean.
But assuming you don’t have an unregistered firearm and pile of illicit drugs next to your computer they’ll still take the computer in for a snoopin. Assuming again that nothing is found but wholesome episodes of SpongeBob on your computer they will without any doubt find your /etc/WireGuard folder with all the config files. Oh, they go to the vps you rented. Imagine that!
In America the crime of setting up a telecommunications system for the purpose of doing something illegal is prosecuted as wire fraud. It might be called different things in different countries but the basic conditions for the creation of law around those actions were about the same everywhere: big money stealin’ using new telegraph technology. The specific technology may have changed but the law inevitably didn’t, so they’ll pile the wire fraud equivalent charge onto you.
I don’t know your country but piracy is probably a low level crime there compared to wire fraud. So instead of facing a fine or a few months for downloading a soccer game now you’re facing a big monetary penalty and many years in jail for creating a system of wire fraud.
Even the often times not very smart police can figure out how to do this. You can check this out by looking in your own countries cop arrest records and see what they’re jamming people up for when it comes to computer crimes. It’s usually the local equivalent of wire fraud when they can get it because the newer, computer specific laws are harder to convict under or have more lenient penalties proscribed.
So anyway, instead of literally building an illegal crime tunnel which is a much worse crime than piracy, spend the money on air or one of the other piracy vpns. You’ll be saving yourself a lot of headache and protecting yourself much better than you did with a home built system.
I took the time to write this out much more explicitly after being told to fuck off because you’re making an incredibly stupid decision. I don’t want you to feel stupid, but I want you to recognize that you’re pursuing a more difficult path that opens you up to much more serious charges and which you are not even capable of getting up and running at the moment.
Just think on that for a second.
You can’t get your illegal crime tunnel working right and you’re asking for help with it on a public forum.
It’s good to try things for the sake of learning. I would strongly advise against trying to learn by doing illegal things and asking for help in public in the strongest possible terms.
Go get a piracy vpn service instead. It accomplishes your goals and keeps you safer than your home grown would if it were working.
ejizar
in reply to stupid_asshole69 [none/use name] • • •stupid_asshole69 [none/use name]
in reply to ejizar • • •