• 0 Posts
  • 22 Comments
Joined 9 months ago
cake
Cake day: July 20th, 2024

help-circle
rss
  • For so many Linux server packages I find the manual to be more of a reference than a guide, so not very useful if you’re just getting started and aren’t sure what to do, but Shorewall is an exception, its manual is wonderful and Tom the creator really goes into detail about how to fit it into many different setups.

    https://shorewall.org/GettingStarted.html

    You’ll probably want to follow the two interface guide, the two interfaces in your case are your public IP interface, and the virtual interface connected to the Podman network side. You’ll essentially treat shorewall as a firewall/router for your Podman containers which will act as your “LAN” in this case. The warning about not installing Shorewall on a remote system is not to be ignored, you’re generally fine to install the package, but do not start the shorewall service without first setting up some rules to allow SSH. The safest way is to log in via your VPS console instead of SSH to keep you from getting locked out. Most VPS providers have some sort of out-of-band connection utility like VNC or a simple console access you’ll want to use.


  • If you really want to stick to UFW, you can ignore me, but this looks like a situation where finding another firewall may be best. UFW is a front end for IPtables and is mostly meant for desktop or simple server app usage. I’d recommend Shorewall, which is also a front end for IPtables but implements a zone based firewall and allows for more complex setups to be handled easier than with UFW. You can put your podman containers into a zone and define all of the network access you need for that zone separate from the host system.





  • I found a way to use my old Nikon as a webcam using an HDMI capture card. Hooked it up to the camera’s mini HDMI port and wham! had a working webcam!

    But after thirty minutes, it would always switch off the live view, so i was left with a camera feed of the menus. Turns out this is an import restriction so it can be imported as a “still camera” and not a “movie camera” for significantly less taxes.

    Enter some wonderful soul who found a way to hack the firmware to allow live view to stay on continuously, so now it works great as a webcam!



  • Can confirm. For the curious: wing mirrors should be set wider than you might think. You shouldn’t see any part of your car in each one, you should only see what’s in the lanes next to you. Someone walking behind your car should appear in one wing mirror, then your rear view, then the other wing mirror, and not in any two of them at the same time.

    Still, I glance over my shoulder when changing lanes :)





  • There is an episode of Mind Field on youtube, it’s their halloween episode that explored the source of fear in humans. It had a campy feel to it but also contained a lot of good information.

    The conclusion made in the video is that there are very few “universal fears”, things that cause fear in every human test subject regardless of race, culture, age, etc.

    They were able to find one though: humans universally do not like the feeling of suffocation, specifically we are pretty sensitive to the ratio of oxygen and CO2 we are inhaling.

    The brain interprets an increase in the CO2 concentration in the blood as “suffocation” and activates the fear response to try to protect us.

    What have been dumping absolute metric fuck loads into the atmosphere in the past centuries? Countless amounts of CO2. And the concentration is only going up and up and up.

    All of us are experiencing elevated amounts of CO2 in the blood, and all of us are universally feeling some level of the fear response because of it. Might explain what seems to be a lot of really bad decision making across all of society, people are scared, don’t know where it’s coming from, and are seeking anyone and anything that can help fix it immediately, whether or not it’s actually helping.

    Fear is the mind killer.