🎶 Ma révolution
Porte ton nom
Ma révolution n'a qu'une seule façon
De tourner le monde
De le changer
Pour toi je ne cesserai jamais de marcher
Ma révolution porte ton nom 🎶
(Pardon)
#earworm
youtube.com/watch?v=PK5d6RmWPt…
Jenifer - Ma Révolution
Best of Jenifer: https://goo.gl/di1F8vSubscribe here: https://goo.gl/yJXWBbMusic video by Jenifer performing Ma Révolution. (C) 2004 Mercury (France)#Jenifer...YouTube
verita84
in reply to Dr. ins0mniak M.D. • • •Dr. ins0mniak M.D.
in reply to verita84 • • •verita84
in reply to Dr. ins0mniak M.D. • • •verita84
Unknown parent • • •@dcc
on my Router VM, I use AdGuard Home and set it to a few different upstreams
verita84
Unknown parent • • •@dcc
He he he ...know of any upstreams that work with DNSEC?
verita84
Unknown parent • • •@dcc
cc @dj
verita84
Unknown parent • • •@dcc
ooo that worked ty. any otthers? Good to have redundancy
verita84
Unknown parent • • •@dcc
Looks like Cloudflare and Googles support it too?
1.1.1.1, 1.0.0.1, 8.8.8.8,8.8.4.4
verita84
Unknown parent • • •@dcc @dj
I just enabled these, one is mullvad's free public DNSEC service
1.1.1.1
1.0.0.1
8.8.8.8
198.101.242.72
23.253.163.53
verita84
Unknown parent • • •@jae @dcc
of VPN your entire lan and save shekels
jae[0]™
Unknown parent • • •@dcc @verita84 dnssec can definitely work to verify tampering (or lack thereof) across the wire, but it's not for everyone. introduces latency in the request-cycle, and if by chance you have clock-skew it can cause problems.
a nice alternative is running a local resolver (pick one) and tunneling the requests over wireguard to a vps endpoint. this way
tcp/53 udp/53
are forced up the wire and xfinity/comcast/whoever can't fetch and rewrite/steer it.@ins0mniak i've got a few set and forget setups if you want it (docker, k8s, metal) where you change a couple of values and run a command to set it all up. hit me up on deltachat if you need a hand.
verita84
Unknown parent • • •@jae @dcc
I just use NFT directly versus meme software. Worth the kampf
jae[0]™
in reply to verita84 • • •@verita84 @dcc
> of VPN your entire lan and save shekels
yes, this is true. but i have multiple subnets and weird cluster setup(s). opnsense doesn't do much besides basic nat as i punch through it with my weird networking setups all the time. but for others a vpn at the edge works fine (just don't login to your bank on the stuff)
verita84
Unknown parent • • •@jae @dcc
kampf is german for Struggle. Hitler wrote a book called Mein Kampf.
Nftables, yeah the syntax is.......complicated. Miss iptable
jae[0]™
in reply to verita84 • • •@verita84 @dcc
> I just use NFT directly versus meme software.
nftables is really nice. takes a minutes to get used to vs iptables or ufw
> Worth the kampf
sorry, don't know this word
verita84
Unknown parent • • •@jae @dcc
I am not German but I know that Mein Kampf translates to My Struggle like most people
jae[0]™
in reply to verita84 • • •@verita84 @dcc
> kampf is german for Struggle.
didn't know you were german. what is the german word for hamburger?
> Hitler wrote a book called Mein Kampf.
suppose i should have known this given fedi is full of larping-wignats, although i filter most of them out. i just like computers.
> Nftables, yeah the syntax is.......complicated. Miss iptable
it's fine once you get used to it. it's like anything else (e.g. learning german)
verita84
Unknown parent • • •@jae @dcc
"This phrase is German and translates to "touch yourself" in English."
lmfao
jae[0]™
in reply to verita84 • • •i just know one phrase
fick dich
. it doesn't come in handy much.