Skip Navigation
Posts
2
Comments
14
Joined
11 mo. ago
  • Joplin. I have it as a sync server. But have it tucked away in a cloud server for the times when I'm traveling so j always have a way to access data in case my phone gets stolen/confiscated.

  • This is pretty neat!

    https://storyteller-platform.gitlab.io/storyteller/docs/intro/what-is-this

    Sounds like you need both the audio and the ebook to make it work?

    I typically only have one or the other.

  • Privacy Guides @lemmy.one
    Tablaste @linux.community

    GitHub - bugfishtm/bugfish-nuke: A Windows tool for emergency privacy: instantly deletes sensitive data and active logins to protect my information during unexpected searches or house warrants.

  • Lots of comments here saying it feels like work. And yet all the simulator games exist? People literally build rigs on their living room to play Truck Simulator games.

    I don't work with rest apis enough and looks great. My only concern is that like everything I do, I end up building a UI and automation. Which might be the point!

  • Permanently Deleted

  • "excessive promotion", right.

    You're doing great work.

  • I'm pretty sure they assumed if you bought their service, you have the competency to properly set it up.

    And I proved them wrong.

  • Ah not to discount devops, I mean that in a good way.

    Devops made me lazy in that for the past decade, I focus on just everything inside the code base.

    I literally push code into a magic black box that then triggers a rube goldberg of events. Servers get instanced. Configs just get magically set up. It's beautiful. Just years of smart people who make it so easy that I never have to think about it.

    Since I can't pay my devops team to come to my house, I get to figure it all out!

  • I shared it because, out there, there is a junior engineer experiencing severe imposter syndrome. And here I am, someone who has successfully delivered applications with millions of users and advanced to leadership roles within the tech industry, who overlook basic security principles.

    We all make mistakes!

  • Haha I'm pretty sure my little server was just part of the "let's test our dumb script to see if it works. Oh wow it did what a moron!"

    Lessons learned.

  • The latter. It was autogenerated by the VPS hosting service and I didn't think about it.

  • You're not wrong! Devops made me lazy

  • Now that you mentioned it, it didn't! I recall even docker Linux setups would yell at me.

  • I published it to the internet and the next day, I couldn't ssh into the server anymore with my user account and something was off.

    Tried root + password, also failed.

    Immediately facepalmed because the password was the generic 8 characters and there was no fail2ban to stop guessing.

  • linuxmemes @lemmy.world
    Tablaste @linux.community

    I didn't know you were supposed to disable root user...

    Background: 15 years of experience in software and apparently spoiled because it was already set up correctly.

    Been practicing doing my own servers, published a test site and 24 hours later, root was compromised.

    Rolled back to the backup before I made it public and now I have a security checklist.

  • Well to be fair, American companies did that too. They expand their services internationally "for free" and then get other countries hooked on it.

    China is just taking a page from that playbook.

  • Explain how good trains will help our precious CEOs?

    Unless you mean a private train line paid with government funds. Now we're talking!