• 0 Posts
  • 50 Comments
Joined 9 months ago
cake
Cake day: December 27th, 2023

help-circle
  • i plan to get a similar setup (music on homeserver, synced to phone for offline use) but i dont need to sync playlists as i rarely use them, i have a streaming account with one(!) playlist with all the songs i remembered and wanted to listen to but didn’t buy as CD back then and use the radio like streaming options a lot.

    but for syncing phone with nextcloud i use FolderSync (Pro) and it works as it should. it has lots of possible sync targets and lots of options to sync one or both ways. i have folders with >8000 files that take some time to sync but it works fine in the background with no prob, i let it sync over mobile network too, cz i value a more reliable in-sync status more than bandwidth. however i didn’t really try “immediate sync” for new/changed files yet as i don’t see the need for this but its one of many options.

    however i only use nextcloud sync in one or two-way syncs and once used sftp for a one-way sync, so i cannot judge all the other options, but if your playlists are organized in files, their two-way sync might be as easy as with the songs. i bought the pro version on their website so my license is not bound to a google account.


  • we need an adblockers blockers blocker

    no, what is needed is an app that helps track who benefits from thr apps that annly you most:

    • ownership of companies pushing annoying ads
    • management of companies pushing annoying ads
    • find the connection between those and the products you maybe want to buy in shops or in internet before you buy, then instead of buying, let the app send the seller a message that you did not buy because of that connection.
    • do this in numbers with lots of people and see what happens to the advertising jungle

    the point is NOT buying because of advertising AND let them know it, so they can learn to improve themselves.

    they wanted your data? let them have it the way you want them to.

    same with any platform. ask the creator of your choice to also publish using patreon and you’ll become a member then, getting the content free of ads. better more directly pay who does the actual work, not all the big tech harvesting all the benefit inbetween.

    so what maybe is needed here could be a free or even self-hostable platform that also allows payed subscriptions.


  • really, yt stopped to play sound on the website for me (beeing logged in), there is a banner to “activate sound” but it always disappears unclickable fast, so i searched and found webtube, an app that basically loads their website, but has one feature youtube has not: “sound” *lol

    now i wonder how many of these apps really are “third” party apps and not really theirs only masked as third party for getting that gain of trust all the “others” get when it comes to big techs with their very own “public” crime records …

    would be too easy for them to create some small apps, act as if those were 3rd party software but harvest that spyoil (of the 21 century) anyway.



  • you should definitely know what type of authentication you use (my opinion) !! the agent can hold the key forever, so if you are just not asked again when connecting once more, thats what the agent is for. however its only in ram, so stopping the process or rebooting ends that of course. if you didn’t reboot meanwhile maybe try unload all keys from it (ssh-add -D, ssh-add -L) and see what the next login is like.

    btw: i use ControlMaster /ControlPath (with timeouts) to even reduce the number of passwordless logins and speed things up when running scripts or things like ansible, monitoring via ssh etc. then everything goes through the already open channel and no authentication is needed for the second thing any more, it gets really fast then.



  • The whole point of ssh-agent is to remember your passphrase.

    replace passphrase with private key and you’re very correct.

    passphrases used to login to servers using PasswordAuthentication are not stored in the agent. i might be wrong with technical details on how the private key is actually stored in RAM by the agent, but in the context of ssh passphrases that could be directly used for login to servers, saying the agent stores passphrases is at least a bit misleading.

    what you want is:

    • use Key authentication, not passwords
    • disable passwordauthentication on the server when you have setup and secured (some sort of backup) ssh access with keys instead of passwords.
    • if you always want to provide a short password for login, then don’t use an agent, i.e. unset that environment variable and check ssh_config
    • give your private key a password that fits your needs (average time it shoulf take attackers to guess that password vs your time you need overall to exchange the pubkey on all your servers)
    • change the privatekey every time immediately after someone might have had access to the password protected privkey file
    • do not give others access to your account on your pc to not have to change your private key too often.

    also an idea:

    • use a token that stores the private key AND is PIN protected as in it would lock itself upon a few tries with a wrong pin. this way the “password” needed to enter for logins can be minimal while at the same time protecting the private key from beeing copied. but even then one should not let others have access to the same machine (of course not as root) or account (as user, but better not at all) as an unlocked token could also possibly be used to place a second attacker provided key on the server you wanted to protect.

    all depends on the level of security you want to achieve. additional TOTP could improve security too (but beware that some authenticator providers might have “sharing” features which could compromise the TOTP token even before its first use.


  • My theory is that you already have something providing ssh agent service

    in the past some xserver environments started an ssh-agent for you just in case of, and for some reason i don’t remember that was annoying and i disabled it to start my agent in my shell environment as i wanted it.

    also a possibility is tharlt there are other agents like the gpg-agent that afaik also handles ssh keys.

    but i would also look into $HOME/.ssh/config if there was something configured that matches the hostname, ip, or with wildcards* parts of it, that could interfere with key selection as the .ssh/id_rsa key should IMHO always be tried if key auth is possible and no (matching) key is known to the ssh process, that is unless there already is something configured…

    not sure if a system-wide /etc/ssh/ssh_config would interfere there too, maybe have a look there too. as this behaviour seems a bit unexpected if not configured specially to do so.


  • smb@lemmy.mltoAsklemmy@lemmy.mlWhat's your favourite country and why?
    link
    fedilink
    English
    arrow-up
    48
    arrow-down
    1
    ·
    1 month ago

    antarctica:

    • no bad politics
    • no wars so far
    • people there are mainly interested in science
    • no economic abuse or exploitation
    • pinguins!
    • no air conditioning needed to survive the summer.
    • winter is offline time, visitors won’t arrive or leave then.
    • last place to stay cool during boomers heritage “heat death of our planet”

    well sure, it has downsides too. Next Rollercoaster park is -tbh- unreachable, internet connection is sloo.oo…oow (or did they already finish the submarine fibre cable?) and sunbathing basically only brings you frost bites (if you’re lucky).

    However i am not planning to migrate there.




  • we are a tech company. we had several floors in two near but separate buildings. we had as many toilets for woman as we had for men. basically each floor had one for woman and one for men which had a pissoir too. as we had > 90% men, mens toilets always had a waiting line after lunch time (not for the pissoir, however). on one floor the only woman was a trainee who (normal here) often had to go to school for 3weeks in a row, that was when men just used womens toilet as there was no woman to use it on the floor and the other woman on the other floor of that building literally had her very own toilet to share with no one. (rest of all the woman happened to work in the other building)

    then the company started to build its own building to leave the rental situation and at the same time to better longterm meet some necessarities that come along with the market niche that the company serves. (there are some laws regulating some physical aspects of the building for our services.)

    one if the promises was, that the “toilet situation” would be improved with the new building.

    the new building then had larger toilets on each floor. the space was then used to still have one toilet for men, but now there were two pissoirs! and two large sinks just for washing hands. yay! womens bathroom now have 3 toilets on each floor each and also the large sinks too. same amount of toilets for 90% of empleyee, the 10% have now triple number toilets they had before and double the space for washing, using mirror etc.

    The woman basically gets her own.

    exactly, and when men don’t have enough toilets, women actually gets build more of them to “statistically” solve the problem !! 🤣




  • there is in fact only regulation as long as it is legal. how do you regulate if it is illegal? it only gets hidden then. and literally everywhere it went bad when it became illegal. everything you claim to want to achieve (regulation and workplace security) is completely lost and things get worse, more victims, less control, violence cannot be prosecuted cause none would go to police when anything happens, etc etc. , that is until it becomes legal again, but until then making it illegal even short time would cause way more damage than is possible to “fix” in a decade or two. just read about what happened where govs already took that path. if you want it to get out of control and destroy health and lifes, and create ground for forced prostitution (aka slavery), then yes, making it illegal is the way you get exactly that result.

    and for the relationship thing… as far as i know (which is not much) the mayority of such customers already are in a relationship (mostly the one called marriage) while singles way less do such.


  • until planes have some magic build-in that turns cleptomans into normal people and hinders underpayd in-flight staff from ensuring their already due income upgrade by other means, i’ld say every unobserved bag is prone to theft, everywhere.

    if you know such a theft-preventing magic, pls tell, so we can also build it into regular streets in big touristic cities and into all buildings in the wallstreet, that would help the world a lot.


  • i did say that health care professionals follow suggestions which is 100% true for the suggestions they get from (known health damaging) pharma corporations. and these suggestions are mainly for profit. maybe let me note the opioid crisis here, that did not even touch my country directly (that is until this becomes officially maybe), but assumingly yours. if you don’t know what happened there and who followed who’s suggestions, maybe start reading. same happens in other countries too and for the same purposes.

    a fact that is official here (as in there was a need for a law that currently helps) is that you get different diagnoses from different doctors and NEED to go to at least two different ones to have a chance for a correct diagnose. it took me >30 years to find a doctor that also tells me what is maybe less probable but also maybe a correct diagnose. the others just ignored all facts that were noncomplient to their diagnose and either were silent about it or incapable of also assuming other things with slightly similar symptomes.

    the system is that prone to do wrong diagnoses while not paying for real treatment that some patients and doctors silently agree to do some extra things that are paid better to finance the things that are not paid in one go as a compromise to circumvent the harmful system. this is not public as in news, but when you go to a doctor that you know and need something that is not paid and offer something else at the same time that actually gets paid like a scan for something that could be important for symptoms you might have, chances are very good to get better real help than when strictly following the laws without such offers. i’ve talked about this with a doctor where i was not patient and i observed this once from little distanze.

    i did not say that healthcare professionals intentionally harm for profit but follow guidelines made for profit-only that cause harm.

    also maybe ‘interesting’ to read: https://blogs.bmj.com/bmj/2021/07/05/time-to-assume-that-health-research-is-fraudulent-until-proved-otherwise/

    i tend to say that some shamans with true intention to help might often be better than a socalled healthcare system that truely is based on profit-only directors. while healthcare professionals depend on intentionally wrong informations (see opioid crisis) from profit-only corporations, their actions effects can highy contradict what their true intentions are. but for patiens really the outcome is what counts.

    so even if someone says that treatment from healthcare professionals harms the patient this does not at all include evil intent from that professional.