"Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearLE
Jump
Is it possible to move to another domain?
  • terribleplan terribleplan Now 100%

    I think it would need to be a mechanism similar to how user moves are handled where the old thing sticks around forever but has a field that says "the new one is over here" and then the new one has a field that says "yes, I am the same as that old one". At least I think that's how e.g. mastodon handles moves of users (just the person/actor, not any of their content. AFAIK nothing in the fediverse can do something like this with anything other than a person/actor at the moment)

    2
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearLE
    Jump
    Is it possible to move to another domain?
  • terribleplan terribleplan Now 100%

    The problem is the thing has already been federated. Changing the ID in the db will appear to the rest of the fediverse as new things, not as those same things.

    1
  • What are people using for webmail software these days?
  • terribleplan terribleplan Now 100%

    Snappymail is simple and awesome if you want better webmail than roundcube, I switched and didn't look back. I am also a big fan of native apps, I'm using thunderbird on my PCs and and Fair Email on Android, both of which I am quite happy with.

    1
  • What is your machine naming scheme?
  • terribleplan terribleplan Now 100%

    Laptops/desktopes: no real naming scheme, they use non-static DHCP leases anyway.

    Physical servers: NATO phonetic alphabet. If I run out of letters something has gone terribly wrong right.

    VMs: I don;t have many of these left, but they are named according to their function and then a digit in case I need more. e.g. docker1, k3s1. This does mean that I have some potential oddities like a k3s cluster with foxtrot, alpha, and k3s1 as members, but IMO that's fine and lets me easily tell if something is physical or virtual. I am considering including the physical machine name in the VM name for new things as I no longer have things set up such that machines can migrate... though I haven't made a new VM in some time.

    Network equipment: Named according to location and function. e,g, rack-router, rack-10g, rack-back-1g, rack-ap, upstairs-10g, upstairs-ap. If something moves or is repurposed it is likely getting reconfigured so renaming at that point makes sense.

    3
  • So, this just happened -- GWAR: Tiny Desk Concert
  • terribleplan terribleplan Now 100%

    Quoted because those were the first paragraphs from Wikipedia, just sucked to try to credit properly on mobile.

    2
  • So, this just happened -- GWAR: Tiny Desk Concert
  • terribleplan terribleplan Now 100%

    Identified by their distinctively grotesque costumes, Gwar's core thematic and visual concept revolves around an elaborate science fiction-themed mythology which portrays the band members as barbaric interplanetary warriors, a narrative which serves as the basis for all of the band's albums, live shows and media. With over-the-top violent, sexual, and scatological humor typically incorporating social and political satire, Gwar has attracted both acclaim and controversy for its music and stage shows, the latter of which notoriously showcase enactments of graphic violence that result in the audience being sprayed with fake blood, urine, and semen. Such stagecraft regularly leads Gwar to be labeled a "shock rock" band by the media.

    Tiny Desk Concerts is a video series of live concerts hosted by NPR Music at the desk of All Songs Considered host Bob Boilen in Washington, D.C.

    Magic.

    5
  • Gitea 1.20 is released | Gitea Blog
  • terribleplan terribleplan Now 100%

    I switched to Fogejo just by swapping out the image. So far gitea hasn't been malicious with its trademarks now being owned by a private company, but I feel better using software that is more closely tied to a nonprofit. I see no reason to switch back.

    3
  • GitHub PAT in docker-compose file?
  • terribleplan terribleplan Now 100%

    Pretty sure it needs to be https://$user:$pat@github.com/username/repo.git#branch.

    1
  • Advantages to selfhosting a Lemmy instance?
  • terribleplan terribleplan Now 100%
    1. You host it yourself
    2. You can get a cool domain name
    3. It's pretty low maintenance
    9
  • Thoughts on server/network racks?
  • terribleplan terribleplan Now 100%

    I have owned and otherwise dealt with a few different Startech 4-post open racks and have been very happy with them. I currently use one of their 25U racks for my lab, but am running out of space...

    1
  • What do you recommend to selfhost code repositories?
  • terribleplan terribleplan Now 100%

    I started on Gitlab, which was a monster to run. I moved to Gitea, until the developers started doing some questionable things. Now I'm on Forgejo (a fork of Gitea).

    7
  • Legal concerns with self-hosting
  • terribleplan terribleplan Now 50%

    Yeah, all I know is that I am definitely seeing images loaded in from domains other than that of my instance as I load/scroll pages, which I want to be loaded via my instance for privacy reasons.

    0
  • Legal concerns with self-hosting
  • terribleplan terribleplan Now 100%

    I believe the Pictrs is a hard dependency and Lemmy just won't work without it, and there is no way to disable the caching. You can move all of the actual images to object storage as of v0.4.0 of Pictrs if that helps.

    Other fediverse servers like Mastodon actually (can be configured to) proxy all remote media (for both privacy and caching reasons), so I imagine Lemmy will move that way and probably depend even more on Pictrs.

    1
  • Legal concerns with self-hosting
  • terribleplan terribleplan Now 100%

    IIRC Lemmy preloads all thumbnails for posts in communities you subscribe to into pictrs to be cached for like a month or something. So, yeah...

    7
  • If anyone is near MN MyPillow is aucioning off some server equipment
  • terribleplan terribleplan Now 100%

    The servers aren't even identified in the listing as R610s (or E01S, they misread that as "EOLS"), so who knows...

    8
  • Self-hosted lemmy without serving arbitrary federated content?
  • terribleplan terribleplan Now 100%

    Lemmy has a feature/setting called "Private instance" that I think could be used to achieve this, but I think that got broken at some point because it got tied to turning federation off... not sure what the current state is but may be worth looking into.

    1
  • plex or Jellyfin?
  • terribleplan terribleplan Now 100%

    I switched from Plex to Jellyfin several years ago and haven't really looked back. Overall I just didn't like the direction plex kept going (pushing shit streaming services, central auth, paywalling features), and dropped it even though I grabbed a lifetime plex pass back in the day. The only thing I miss about plex was the ease of developing a custom plugin for it since you could pretty much just drop python scripts in there and have it work, though their documentation for plugin development was terrible (and I think removed from their site entirely).

    15
  • Do you have perticular reason for choosing Tailscale over ZeroTier or vice versa?
  • terribleplan terribleplan Now 100%

    I love tinc, it's so simple. I wish there were something just as easy that leveraged wireguard instead of whatever custom VPN/tunneling stuff tinc uses, as using it scares me with how seemingly little maintenance tinc gets. Like if tailscale/headscale and tinc had a baby, haha.

    Is there a way to run tinc on your phone or similar? To me that's another bonus of tailscale at least.

    1
  • Has vlemmy.net lost its domain name?
  • terribleplan terribleplan Now 100%

    Docker isn't super necessary, there are some scripts out there that hide a good bit of how it works like the official ansible playbook or lemmy-easy-deploy.

    I use docker to easily run many pieces of software in isolation from each other, it's like VMs if you're familiar with those, but different in some key ways that don't really matter for this discussion.

    6
  • Curious about Mastodon. How should I pick a server?
  • terribleplan terribleplan Now 100%

    I would still go with one that isn't one of the biggest. My general advice is to find one that fits the vibe you're going for, communities you're interested in (e.g. some are focused on art or cybersecurity, etc), or is somehow tied to your locality. It shouldn't matter that much, though some servers will be a little more (or less) strict with things like federation, content warnings, alt text, etc. Usually the server will have some info telling you some of this, and their admin should be linked and likely has a post or two pinned to their profile explaining some of this as well.

    I am partial to kind.social, though have opted to run my own instead of joining up anywhere.

    3
  • javascript:alert('<3')// Hello_Hackers

    I tried what another user reported [and it worked](https://lemmy.nrd.li/post/155147). I submitted a [github issue](https://github.com/LemmyNet/lemmy/issues/3505) as the security email seems to be unmonitored based on me trying to contact it (regarding a different issue) for over a week now. Be careful about links you click in Lemmy, I guess. cross-posted from: https://sh.itjust.works/post/774797 > **What is XSS?** > > Cross-site scripting (XSS) is an exploit where the attacker attaches code onto a legitimate website that will execute when the victim loads the website. That malicious code can be inserted in several ways. Most popularly, it is either added to the end of a url or posted directly onto a page that displays user-generated content. In more technical terms, cross-site scripting is a client-side code injection attack. > https://www.cloudflare.com/learning/security/threats/cross-site-scripting/ > > **Impact** > > One-click Lemmy account compromise by social engineering users to click your posts URL. > > **Reproduction** > > Lemmy does not properly sanitize URI's on posts leading to cross-site scripting. You can see this working in action by clicking the "link" attached to this post on the web client. > > To recreate, simply create a new post with the URL field set to: `javascript:alert(1)//` > > **Patching** > > Adding filtering to block `javascript:` and `data:` URI's seems like the easiest approach.

    122
    13
    "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearSA
    lemmy.ca - Why is a millennium old fossilised human poop on display at the Archaeological Resource Centre in the UK? | because it "may be the largest example of fossilised human faeces ever found"
    https://archive.ph/E0tNo

    Apparently someone on lemmy.ca feels the need to make clickbait out of [a very short wikipedia article](https://en.wikipedia.org/wiki/Lloyds_Bank_coprolite). And they didn't even answer their clickbait in the post body. smh. For added fun archive.org seemingly breaks the Lemmy UI, indicating that the community lives @web.archive.org for some reason. > Created: 9th century > "This is the most exciting piece of excrement I've ever seen ... In its own way, it's as irreplaceable as the Crown Jewels"

    4
    0
    "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearSA
    Scientific American - Is Fukushima Wastewater Release Safe? What the Science Says | probably
    https://web.archive.org/web/20230623183439/https://www.scientificamerican.com/article/is-fukushima-wastewater-release-safe-what-the-science-says/

    The operator of the plant is confident it is safe, some say there are other risks that make not releasing the wastewater worse, most opposition is limited to saying hasn't been enough study, one scientist in particular says it is unsafe. We'll see what ends up happening later this month. > “a lack of adequate and accurate scientific data supporting Japan’s assertion of safety”. > “The risk of another earthquake or a typhoon causing a leak of a tank is higher, and they’re running out of space.” > “The concept of dilution as the solution to pollution has demonstrably been shown to be false, [...] [t]he very chemistry of dilution is undercut by the biology of the ocean.” > “I think it is important to evaluate the long-term environmental impact of these radionuclides,” > “We have confirmed that the tritium concentrations in the bodies of marine organisms reach equilibrium after a certain period of time and do not exceed the concentrations in the living environment,” [...] The tritium concentrations then decrease over time once the organism is returned to untreated seawater. > The IAEA [...] is expected to release a final report on the site and the plan for the wastewater release later in June.

    3
    0
    "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearSA
    Slate - Here’s How Many Years in Prison Trump Would Be Facing if He Were Treated Like Any Other Defendant | 12.5 to 22
    https://archive.is/4nuH5

    > For a defendant with no prior criminal convictions, an offense level of 37 yields 210 to 262 months (17 1/2 to almost 22 years). A defendant who accepted responsibility could reduce that range to 151 to 188 months if the prosecution agreed to deduct the third point.

    2
    2
    www.youtube.com

    KNOWER is currently one of my favorite bands. Anyone else dig their vibe?

    9
    2
    lemmy.nrd.li

    Starting up a fan community here on Lemmy for my favorite internet comedy troupe. Currently mostly just linking to new videos of theirs I particularly enjoy. [!loadingreadyrun@lemmy.nrd.li](https://lemmy.nrd.li/c/loadingreadyrun)

    4
    0
    terribleplan Now
    6 284

    terribleplan

    terribleplan@ lemmy.nrd.li

    DevOps as a profession and software development for fun. Admin of lemmy.nrd.li and akkoma.nrd.li.

    Filibuster vigilantly.