• 0 Posts
  • 200 Comments
Joined 2 years ago
cake
Cake day: June 18th, 2023

help-circle




  • Encrypting the connection is good, it means that no one should be able capture the data and read it - but my concern is more about the holes in the network boundary you have to create to establish the connection.

    My point of view is, that’s not something you want happening automatically, unless you manually configured it to do that yourself and you know exactly how it works, what it connects to and how it authenticates (and preferably have some kind of inbound/outbound traffic monitoring for that connection).


  • Ah, just one question - is your current Syncthing use internal to your home network, or does it sync remotely?

    Because if you’re just having your mobile devices sync files when they get on your home wifi, it’s reasonably safe for that to be fire-and-forget, but if you’re syncing from public networks into private that really should require some more specific configuration and active control.



  • NaibofTabr@infosec.pubtoSelfhosted@lemmy.worldWhat do I actually need?
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    4
    ·
    2 months ago

    My main reasons are sailing the high seas

    If this is the goal, then you need to concern yourself with your network first and the computer/server second. You need as much operational control over your home network as you can manage, you need to put this traffic in a separate tunnel from all of your normal network traffic and have it pop up on the public network from a different location. You need to own the modem that links you to your provider’s network, and the router that is the entry/exit point for your network. You need to segregate the thing doing the sailing on its own network segment that doesn’t have direct access to any of your other devices. You can not use the combo modem/router gateway device provided by your ISP. You need to plan your internal network intentionally and understand how, when, and why each device transmits on the network. You should understand your firewall configuration (on your network boundary, not on your PC). You should also get PiHole up and running and start dropping unwanted inbound and outbound traffic.

    OpSec first.







  • It is an absolute PITA to keep an email server on the “nice” list so your company’s email traffic doesn’t get spam filtered by every service provider, and the major services (gmail, outlook, etc) are all federating their spam filter lists so many times if you get blocked on one you get blocked on all. There is so much spam to deal with that the filtering is highly automated and there’s little human oversight.

    The point being, it could only take a handful of incidents reporting a company’s email as spam to ruin their reputation and result in email from their domain getting automatically filtered everywhere. So, you know, if they don’t support an easy way to unsubscribe then they are in fact behaving like spammers, so flag them and let them deal with having their domain blacklisted.







  • I’ve read a bit about Teflon. My understanding is that the big health hazard is during the application process, primarily for the factory workers - you really don’t want to breath aerosolized uncured Teflon, or get it in your eyes. It’s not the most hazardous industrial chemical out there, I don’t think there’s any particular ethical issue with manufacturing products with Teflon as long as workers are provided PPE. If it’s a sweatshop product well then there are obviously a lot of ethical issues.

    Once it’s cured it’s chemically inert (which is kind of the whole point) - I’m not aware of any research showing that the human body can absorb any harmful chemicals from cured Teflon - basically your stomach acid and digestive tract bacteria can’t do anything to it. You shouldn’t worry overmuch about being harmed by cooking in a Teflon-coated pan, it’s not a heavy metal or anything like that.

    That said, a deteriorating Teflon coating can be a hazard. The material is fairly stiff and again, your digestive system can’t break it down. Any small particles should (hopefully) pass through, but larger flakes could get stuck somewhere and then… well your body can’t break it down. It’s going to be there causing a blockage until something dislodges it, it’s not going to bend very much, and it might have sharp enough edges to irritate or damage the surrounding tissue.

    And yeah, nothing breaks it down naturally, so it is just going to be in the world forever, gradually eroding into smaller and smaller particles along with all of the other plastic pollution, so yay.

    I can’t point to any specific sources on this, it’s from reading various articles over two decades, I’m definitely not an authority.