selfhosted
Selfhosted andscape 3 hours ago 83%
Proxying torrent traffic to homeserver

I'm setting up a self-hosted stack with a bunch of services running on a home device. I'm also tunneling all the traffic through a VPS in order to expose the services without exposing my home IP or opening ports on my local network. Currently all my traffic is HTTP, and its path looks like this: - Caddy proxy on remote VPS (HTTPS, :80 & :443) - Wireguard tunnel - Caddy proxy in Docker on homeserver (HTTP, :80) - app containers in separate isolated subnets, shared with Caddy I want to set up qBittorrent and other torrent apps, and I want all their traffic to pass through the proxies. Proxying traffic to the WebUI is easy, there's plenty of tutorials; what I'm struggling with is proxying the torrent leeching and seeding traffic, which is the most important part since I live in a country that's not cool with piracy. Unless I'm misunderstanding, BitTorrent traffic is TCP or UDP, so I'd need Caddy to act as a Layer 4 proxy. There's a community-maintained plugin that should support this. How would I configure it though? Do I need both instances to listen on a new port? Or can I open a new port on the VPS only, and forward traffic to the homeserver Caddy over the same port as the HTTP traffic (:80)? Are there nuances in proxying TCP traffic that I should be aware of?

4
2
mtf Transfem Hi again!
Jump
  • andscape andscape 3 weeks ago 100%

    Slamming the "cute" button

    Lady Gaga pushing a button

    18
  • privacy Privacy Use a password manager
    Jump
  • andscape andscape 1 month ago 100%

    Wild ass comment.

    Unless you really really need portability between devices

    Who doesn't??? What do you do, copy 20-char randomly generated passwords manually all the time? That's the whole point of password managers...

    I use firefox's local, inbuilt manager

    Browsers are NOT a secure storage for sensitive data, if you want a local password manager at least please use KeePassXC.

    7
  • privacy Privacy Proton just joined the AI clown car show
    Jump
  • andscape andscape 2 months ago 97%

    The thing that pisses me off the most is that they are disingenuous almost to the point of lying in interpreting that survey's results. They say that 75% of users are interested in GenAI, when actually what they asked is whether people have used any GenAI at all in the recent past. And that still doesn't mean they want GenAI in Proton. That's a pretty significant sleight of hand. The more relevant question would have been the first one on what service people want the most. In that case only 29% asked for a writing assistant, which is still not the same thing as a full LLM. The most likely answer to "how many Proton customers want an LLM in Proton Mail" seems to be "few".

    39
  • protonprivacy Proton Proton Mail provided user data that led to an arrest in Spain
    Jump
  • andscape andscape 2 months ago 100%

    This is old drama at this point. I'll repeat what's been said the previous times this was posted.

    Proton did what they were legally required to do in the jurisdiction where they operate as a legitimate business. As an encrypted email provider they offer privacy but not necessarily anonymity, and they're open about that. They even have multiple blogposts about how to use their service more anonymously. If you thought that by using ProtonMail you were getting full anonymity that's your mistake.

    In both the cases mentioned the users made OpSec mistakes: not using a VPN in one and linking their personal Apple email as a recovery email in the other. In the first case Proton wasn't even logging the user's IP until the police forced them to.

    3
  • selfhosted Selfhosted Hosting a public wishlist
    Jump
  • andscape andscape 4 months ago 100%

    Thank you for the links, I had found a few of these but some are new. The basic idea is there, I'll see if any of these can work for us. I'm growing more convinced though that hosting a whole app for this super simple use case might not be worth it, I think we might pivot to just hosting a really basic static page for it.

    2
  • selfhosted Selfhosted Hosting a public wishlist
    Jump
  • andscape andscape 4 months ago 100%

    This is way too overkill for what we need. I'm sorry, I've been intentionally vague about the context for this but I guess it's too unclear. We're an activist group planning a protest. We might have to get this set up literally tomorrow and every penny comes out of (mostly my) pocket. We're also all paranoid about opsec and anonymity, which is why the requirement about avoiding corporate services is there. Perhaps I should have posted this in a privacy focused comm instead, I apologize.

    2
  • selfhosted Selfhosted Hosting a public wishlist
    Jump
  • andscape andscape 4 months ago 100%

    It's pretty overkill for what we need, and it would still fall under "corporate" for us. At that point I could just go for the static Notion page which I can get live in 5m for free.

    2
  • selfhosted Selfhosted Hosting a public wishlist
    Jump
  • andscape andscape 4 months ago 100%

    We can set up all of those but again, that's kinda expensive for us rn. What's the benefit of using a CMS like Joomla versus wishthis, or even a basic Caddy/Nginx webserver with a static page?

    1
  • selfhosted
    Selfhosted andscape 4 months ago 100%
    Hosting a public wishlist

    I'm involved with an org that needs to set up a public wishlist for supplies for a project. The rough requirements are as follows: - Public webpage with a static URL - Can be easily edited by non-technical people - Editing requires authentication - Avoiding corporate services, especially avoiding tracking of both users and admins - As cheap as reasonably possible - As quick to set up as possible Nice to have: - Hosted under a custom domain - Supports users "reserving" items so multiple people don't all supply the same stuff One option I considered would be running something like [wishthis](https://github.com/wishthis/wishthis) in a VPS under our own domain, but this is kinda expensive, complex, and I don't trust wishthis' auth. A different option could be just having a static page in something like Notion or Github pages, which would be free but relies on corporate services we don't trust. Is there a middle ground between the two previous options? Or a better solution that fits most of the requirements?

    16
    10
    technology Technology Need tech support (android bullshit) (resolved)
    Jump
  • andscape andscape 4 months ago 100%

    I believe you need root to access those, plus a file manager that supports it (I use Mixplorer which does). Otherwise, as someone else suggested, you can access them from a computer over ADB or MTP.

    4
  • asklemmy Asklemmy Can someone explained what hexbear is?
    Jump
  • andscape andscape 5 months ago 89%

    They're insufferable commies who keep attacking other parts of the Fediverse by... uh... commenting on posts and... ehm... responding aggressively to bigoted content. They've got all these sick ass stickers that we don't and they keep flexing them in our replies which drives me crazy.

    Their instance is an authoritarian distopia where queer people feel safe and they don't waste time debating the same wrong liberal talking points every time. Also you can just call someone a dumbass if you disagree with them: a totalitarian nightmare.

    Worst of all they go around straight up bullying other Fediverse users: right now I'm locked in a bathroom stall that a Hexbear user shoved me into. I've been here for an hour missing my maths class, and I've had to drink the toilet water. My tummy is starting to hurt. Stay away from Hexbear users...

    22
  • protonprivacy Proton Proton Pass open source password manager is now available on F-Droid
    Jump
  • andscape andscape 5 months ago 100%

    Nice! Kudos to Proton for not abandoning their promise to publish their sources... Hoping to see Calendar on there soon too.

    8
  • technology Technology The invisible seafaring industry that keeps the internet afloat
    Jump
  • andscape andscape 5 months ago 100%

    This is such an amazing article, The Verge's staff is still capable of some excellent journalism.

    3
  • fediverse Fediverse Lemmy.ml is supposedly blocked in China
    Jump
  • andscape andscape 6 months ago 83%

    Even if its configured correctly to totally obfuscate the data and the final endpoint of the traffic it's still blatantly obvious that a VPN is in use.

    Which is why Chinese users don't use standard VPNs, they use obfuscated proxies with protocols like Shadowsocks and V2Ray, which mask the tunneled traffic as innocuous HTTPS traffic.

    4
  • jerboa Jerboa Custom Feeds Option?
    Jump
  • andscape andscape 6 months ago 100%

    Support for this in core Lemmy has been discussed many times. There's an open issue for it that's been gathering dust for a while. Some apps already implement this on the client side I think, not jerboa though.

    6
  • lemmy Lemmy Instance blocks and Threads
    Jump
  • andscape andscape 9 months ago 100%

    Other people in that thread have pointed out that it isn't showing posts being delivered to Threads despite the block. That should be testable with other instances, but not Threads since it's not receiving any content from Mastodon at the moment. The concerning thing there is the user still being able to view content from people they've blocked, but that seems to be a bug if it's reproducible.

    3
  • lemmy Lemmy Instance blocks and Threads
    Jump
  • andscape andscape 9 months ago 87%

    In the EU companies can't scrape personally identifiable information without consent, even if it's already publicly available. IANAL, and there's probably ways they can sneak around the GDPR, but at least it's not a free for all. It's unclear though how it works for federation. It's definitely not the same legally though.

    6
  • lemmy Lemmy Instance blocks and Threads
    Jump
  • andscape andscape 9 months ago 81%

    The reason for not directly federating content to Threads isn't so nobody there can ever see my amazing posts, it's so Meta can't easily profile me. Scraping public posts on a different platform would probably be illegal, at least in the EU, and reposts don't give them a lot of data about me. Federating content, however, would give them most of the same data that Mastodon has on me without even having to ask.

    7
  • lemmy Lemmy Instance blocks and Threads
    Jump
  • andscape andscape 9 months ago 100%

    This post from Eugen Rochko mentions that blocking Threads at the user level "stops your posts from being delivered to or fetched by Threads". Basically, the user-level instance block is bidirectional.

    Limited federation mode is a different feature, at the admin level. It doesn't really affect the delivery of posts in either direction, it just hides the blocked instance's content from the global feed. Defederation on the other hand is indeed bidirectional, but again it's on the admin level rather than users'.

    5
  • lemmy Lemmy Instance blocks and Threads
    Jump
  • andscape andscape 9 months ago 100%

    Mastodon instance blocks are already bidirectional AFAIK: if you block an instance your content does not get federated with them. I was actually surprised that this does not seem to be the case for Lemmy. I don't think this break any core abstraction of AP...

    8
  • lemmy
    Lemmy andscape 9 months ago 90%
    Instance blocks and Threads

    With debate raging in the Fedi about Threads' federation, I was having a discussion with another user about the recently implemented instance blocks. They pointed out that, blocking an instance simply hides their content from your feed but doesn't prevent your posts from being sent to them. Firstly, is this correct? Is this how instance blocks are implemented in Lemmy? If not, has this been discussed before? I couldn't find such a discussion in Github issues... It seems that many people have concerns about Meta's use of their data, and would like to opt out of sharing their content with Threads. Is there any way to do this in Lemmy right now, or any plan to implement such a feature?

    36
    13
    fediverse Fediverse Erik Moeller on Mastodon: There's a common false dichotomy about Threads [...]
    Jump
  • andscape andscape 9 months ago 100%

    Ah ok this I'm not sure about. I mean, Lemmy added instance blocks as well in the latest release (0.19), but it seems that, unlike Mastodon, this only hides the content from you and doesn't prevent your content from being sent to that instance. It does seem like a pretty big oversight, but I haven't found a discussion about this. There might be good reasons why it's this way.

    1
  • fediverse Fediverse Erik Moeller on Mastodon: There's a common false dichotomy about Threads [...]
    Jump
  • andscape andscape 9 months ago 100%

    I don't think Lemmy does either...? It pushes updates to subs that at least someone on the receiving instance subscribes to (at least that's how it worked last time I checked). That's why there are scripts going around for new instances to automatically follow a bunch of popular subs to populate the All feed.

    I think Mastodon works in the same way with users, where it sends updates for accounts that someone on the receiving end follows. So if nobody follows you from Threads it wouldn't send any of your posts there.

    4
  • fediverse Fediverse Erik Moeller on Mastodon: There's a common false dichotomy about Threads [...]
    Jump
  • andscape andscape 9 months ago 81%

    a long form nuanced take

    interesting, however have you considered pee pee poo poo

    Truly a worthy contribution to the discourse, thank you...

    7
  • fediverse Fediverse Erik Moeller on Mastodon: There's a common false dichotomy about Threads [...]
    Jump
  • andscape andscape 9 months ago 100%

    ActivityPub doesn't just push everything on a server to every federated instance like a fire hose. In the first place, as Masimatutu@mander.xyz said, it only feeds your content to an instance if somebody on that instance follows you, which you can set to require your manual approval. Your posts could also get pushed if somebody else boosts your post and they have followers on the other instance.

    However, if you set an instance block, none of your posts get sent to the instance, period. They would have to resort to scraping. In other words, if you don't want to give meta your data, just set an instance/domain block.

    10
  • privacy Privacy Privacy-preserving solution for managing subscriptions
    Jump
  • andscape andscape 11 months ago 100%

    Oh yeah, you're right on that. If I'm looking for privacy from the subscription manager signing up with a service like this is a terrible choice, because it is fully a financial institution.

    2
  • privacy Privacy Privacy-preserving solution for managing subscriptions
    Jump
  • andscape andscape 11 months ago 100%

    I wish they were all on the same day of the month...

    Dates aren't a big concern though. What I was hoping for is something that would update automatically to some extent if (say) some amounts change, or a payment is missed. But I guess indeed that's basically impossible without access to my payment data.

    Given that I have to update it manually though, I would at least like it to be synced remotely. So that I can, say, check it from my laptop on a webpage or desktop app without redoing all the manual data input.

    3
  • android Android WhatsApp is rolling out a new revamped interface for the Android beta app!
    Jump
  • andscape andscape 11 months ago 100%

    I thought I heard they were rolling out some material you theming in beta a while ago. Did they revert it?

    3
  • privacy Privacy Privacy-preserving solution for managing subscriptions
    Jump
  • andscape andscape 11 months ago 100%

    For my use case yes, that would defeat the purpose, but for what it's trying to do it kinda makes sense... At least, they have to do it to comply with payment regulations. And you're still only exposing your identity to one service with a decent reputation, rather than plenty of possibly shadier ones. It seems like a fair tradeoff if what you're looking for is privacy from services you want to pay for.

    7
  • privacy Privacy Privacy-preserving solution for managing subscriptions
    Jump
  • andscape andscape 11 months ago 100%

    I'm not American, it seems to be available in the US only...

    3
  • privacy Privacy Privacy-preserving solution for managing subscriptions
    Jump
  • andscape andscape 11 months ago 100%

    I guess you're right, yeah. I was hoping someone had figured out a different solution, perhaps integrating directly with the individual subscription providers. But I guess that's way too broad of a scope, integrating with countless individual services.

    At least a cross-platform, cloud backed "spreadsheet" would be nice to have though.

    3
  • privacy
    Privacy andscape 11 months ago 94%
    Privacy-preserving solution for managing subscriptions

    I'm looking for a way to keep track my recurring subscriptions. I just want a nice overview of recurring payments and where they come from, I don't need a solution to actively go and manage the subscriptions for me. Unfortunately my bank, despite being a trendy digital bank, does not have a good built-in tool for this. There's a plethora of third party services I found for this (Truebill, TrackMySubs, Hiatus, etc.) but they require you to give them unrestricted access to your bank account activity which seems like a privacy nightmare. I've also found some less invasive apps, such as Subby for Android, but they're basically just nice views over manually entered data. The ones I've found also seem to be single-platform only: even if you can sync your data (not always the case) you can then only view it from the app on the same platform. Do you have a good solution for this? Something that's a middle ground between giving your entire payment history to some random company and a good-looking local-only spreadsheet?

    32
    12
    askandroid Ask Android Samsung A526B no system and booting to TWRP Recovery
    Jump
  • andscape andscape 12 months ago 100%

    I don't have the same phone and it's in general pretty difficult to fix a brick without being able to tinker with it. I can give you some pointers though...

    First off, this guide is for a model A525F, but your title says your phone is an A526B. If that's correct there's a chance the files you tried to flash were for a different model number and that's what went wrong. Make sure you download the right files for your exact model number rather than trusting the ones your guide provides.

    Secondly, to be honest, this guide does not seem very trustworthy. When doing this kind of thing every little step matters, a single misplaced reboot might screw up the whole process. Also, you're downloading and installing on your phone some files from some random website, that's a big risk. The thing is: you don't need a shitty guide for your exact model. For future reference, you're better off with a good, detailed guide for your general vendor (Samsung). XDA forums are usually the place to look. Always find the files you need by yourself, don't just flash whatever some random website makes you download. Go to the official download pages for Samsung stock OS or TWRP and get the files from there, making sure they match your exact model number.

    If you're 100% sure that the firmware you're trying to flash is the correct one for your model, you can try avoiding Odin and use adb flash directly. There's plenty of guides on how to do that going around. You might not need TWRP either at that point. Getting familiar with adb is always useful.

    1
  • worldnews World News Anti-China Rhetoric Is Off the Charts in Western Media
    Jump
  • andscape andscape 12 months ago 100%

    Oh sure, didn't mean to imply that Chinese people weren't smart enough to think for themselves. I was just making the point that neither western media nor Chinese media is helping at all to create space or goodwill for critical exchange and debate across boundaries and firewalls (which, to be fair, is not surprising).

    Glad to see there are actually Chinese netizens on Lemmy, by the way.

    1
  • privacy Privacy How much of this should I believe?
    Jump
  • andscape andscape 12 months ago 96%

    [...] I set up a cloud service where my VPN service would be located on Amazon’s web services, a reputable and widely trusted cloud provider. [...] After about an hour, I set up a VPN that worked flawlessly. The best part? Not only is it free to use [...]

    Sorry, what? Last time I checked AWS VPSs were very much NOT free to use, and I'm pretty sure the lowest tier is still more expensive than your average VPN.

    Also, this article seems to be arguing against its own points: "you probably don't need a VPN, but I have one anyway"...

    28
  • worldnews World News Anti-China Rhetoric Is Off the Charts in Western Media
    Jump
  • andscape andscape 12 months ago 75%

    This is just straight up true. Besides the belligerence and racism it pushes, it also makes it near impossible to have an actual, reasonable and critical comparative discussion of Chinese and Western societies. It closes any space that might exist for Chinese people to take part in any discussion of international affairs, since the attitude is so strongly against them. This pushes any open minded Chinese netizen back into the arms of their own government's propaganda, rather than inviting them into an open discussion of the good and bad sides of their and other societies.

    6
  • android Android Publisher-focused Twitter alternative Post comes to Android, adds newsletter support | TechCrunch
    Jump
  • andscape andscape 12 months ago 100%

    Backed by who?

    Andreessen Horowitz (a16z), a Silicon Valley venture capital firm with a recent history of questionable investments...

    11
  • andscape andscape 12 months ago 96%

    Bold of an English speaker to accuse any other language of unpredictable spelling...

    Funnily, Italian is almost completely phonemic, meaning it's trivial to both spell and read words if you know the rules. English can only dream of that.

    50
  • internetisbeautiful InternetIsBeautiful Umami: You never say its name, yet you taste it every day
    Jump
  • andscape andscape 1 year ago 100%

    Funny that the map includes garum, a food that hasn't been popular in a couple millennia

    12
  • privacy Privacy I am subject to intrusive monitoring by the government because I posted on an incel honeypot forum
    Jump
  • andscape andscape 1 year ago 100%

    God I hope this is a bit

    31
  • asklemmy Asklemmy GAMERS, USING ONLY CAPITAL LETTERS, WHAT'S YOUR FAVORITE VIDEO GAME QUOTE? SCREAM IT INTO THE VOID.
    Jump
  • andscape andscape 1 year ago 100%

    Are these from a video game or Terry Pratchett's Night Watch books?

    3
  • programming Programming IBM’s generative AI tool aims to refactor ancient COBOL code for its mainframes
    Jump
  • andscape andscape 1 year ago 100%

    I'm aware they're not using a generic model, but that's not much better. Current custom-made models still fuck up significantly more than humans, and in less predictable ways.

    Even if their custom model is slightly incorrect 1% of the time, that's still a major problem in critical systems like those.

    4
  • programming Programming IBM’s generative AI tool aims to refactor ancient COBOL code for its mainframes
    Jump
  • andscape andscape 1 year ago 100%

    Legacy COBOL code is largely used in critical systems like those of banks and airlines. What could go wrong with having that code rewritten by stochastic parrots who get programming answers wrong half of the time?

    25
  • feddit
    Defederare istanze neonaziste

    Segnalo che tra le istanze federate con feddit.it ce n'è almeno una con contenuti apertamente neonazisti, e francamente rivoltanti. ::: spoiler ATTENZIONE: razzismo, omofobia, e odio in generale detroitriotcity.com ::: Apprezzo che la nostra istanza abbia generalmente una policy di federazione rilassata, ma esporsi a contenuti simili è un rischio serio. E penso che la maggior parte di noi sia d'accordo sullo starne lontani. Intanto, possiamo defederare da quello schifo di posto? E poi, abbiamo un canale stabilito per proposte di defederazione o no? È questa la comunità giusta per farlo?

    17
    16
    piracy
    How To Torrent Software Safely (For Dummies) andscape.notion.site

    I wrote this post for a friend, I'm sharing it here for anybody it might help. I got asked multiple times how I download cracked music software so I figured it'd be easier to write it down once. It's meant for people with very low technical skills who just want to start torrenting software without major risks, and it includes a bunch of safety tips that are already known in this community. If you have feedback, let me know and I'll update the post.

    271
    88
    feddit
    Opinioni sul bot lemmit.online?

    L'istanza lemmit.online è un bot che riposta contenuti da Reddit a Lemmy, con comunità corrispondenti a vari subreddit, popolate automaticamente dal bot con link ai post su reddit. Vorrei capire se qualcuno, qui su feddit.it, segue le comunità di lemmit.online o trova utile questo strumento. Personalmente io trovo che sia solo spam: i post sono più frequenti di qualsiasi altra istanza, sempre deserti perché nessuno ci interagisce, e sono tutti comunque link a Reddit che preferirei evitare. Purtroppo a Lemmy manca ancora un'opzione per bloccare un'intera istanza, il che vuol dire che devo bloccare le singole comunità quando vedo i loro post nella feed globale. Il che, però, è praticamente come *Acchiappa La Talpa*, visto che nuove comunità vengono continuamente aggiunte all'istanza su richiesta. Questo sarebbe meno un problema se non fosse che la feed globale al momento è il miglior modo per esplorare Lemmy e scoprire nuove comunità. Cosa ne pensate?

    4
    8