Avatar

BoofStroke

knobbysideup@lemm.ee
Joined
2 posts • 29 comments
  • mountain biker
  • whitewater kayaker (freestyle, creek, river)
  • snowboarder
  • infosec and DevOps nerd
  • small feline lover
Direct message

“protection” to sell all that data to advertisers. Seems secure.

permalink
report
reply

As with all things infosec (and life in general), best practice is to not get yourself into the mess in the first place vs. trying to clean up the mess later. You should have already not had personal data “in the cloud” and should have been using unique identifiers and authentication for every service that you use.

permalink
report
reply

Custom per-folder themes in Nemo with drag/drop templating like os/2 had. Extend to all apps, actually.

permalink
report
reply

Rutter’s peanut butter chocolate milk ftw!

permalink
report
reply

You might want to check the errata for the packages your scanning tools complained about. Rhel will keep stable versions at the same release version, but backport security fixes in.

Many security scanners are stupid about this.

Since it is rhel, you have a support contract, right? What do they say?

permalink
report
parent
reply

Each individual package is also signed.

permalink
report
reply
  • use pfsense for a firewall. Using nftables, firewalld, etc should only really come into play if on an untrusted network. Firewalls on servers can cause more problems than they solve and are easy to misconfigure.
  • run lynis on your Linux servers to help get them compliant with CIS benchmarks
  • be careful with your reverse proxies
  • keep things patched
  • run only necessary services
  • configure needed services conservatively
  • no root logins
permalink
report
reply

How are you trying to install things? Use the graphical package manager or apt. Don’t just try to download things from wherever.

Also, maybe try Linux Mint (Cinnamon Edition) instead of Ubuntu. Things there “just work”, and the UI is more similar to what you are used to with windows.

permalink
report
reply

Tidal for its seamless Plex integration.

permalink
report
reply

Me today getting pnp running under naemon after migrating to Alma 9.

permalink
report
reply