00:16:35 | | flotwig joins |
00:21:29 | | etnguyen03 quits [Client Quit] |
00:30:50 | | Webuser287461 quits [Quit: Ooops, wrong browser tab.] |
00:50:10 | | Webuser740211 joins |
01:06:50 | | etnguyen03 (etnguyen03) joins |
01:17:40 | | ericgallager quits [Client Quit] |
01:41:45 | | pabs quits [Read error: Connection reset by peer] |
01:42:25 | | pabs (pabs) joins |
02:07:53 | | ericgallager joins |
02:27:07 | | TheTechRobo quits [Quit: upgrading servers :D] |
02:28:29 | | Pedrosso quits [Quit: Leaving] |
02:28:29 | | ScenarioPlanet quits [Quit: meow meowy meow] |
02:28:43 | | etnguyen03 quits [Client Quit] |
02:34:18 | | xarph quits [Quit: ZNC 1.8.2+deb2ubuntu0.1 - https://znc.in] |
02:37:10 | | DogsRNice joins |
02:52:42 | | BlueMaxima quits [Read error: Connection reset by peer] |
02:54:05 | | xarph joins |
03:07:27 | | HackMii quits [Remote host closed the connection] |
03:07:45 | | HackMii (hacktheplanet) joins |
03:13:56 | | DogsRNice_ joins |
03:17:56 | | DogsRNice quits [Ping timeout: 260 seconds] |
03:45:56 | | Pedrosso joins |
03:45:56 | | ScenarioPlanet (ScenarioPlanet) joins |
03:49:47 | | TheTechRobo (TheTechRobo) joins |
03:54:56 | | DogsRNice__ joins |
03:59:21 | | DogsRNice_ quits [Ping timeout: 260 seconds] |
04:08:46 | | DogsRNice__ quits [Read error: Connection reset by peer] |
04:22:30 | | pabs quits [Read error: Connection reset by peer] |
04:23:38 | | pabs (pabs) joins |
05:21:36 | | BennyOtt quits [Ping timeout: 260 seconds] |
06:10:49 | | Meli (Meli) joins |
06:25:02 | | ericgallager quits [Quit: This computer has gone to sleep] |
06:32:22 | <pabs> | https://www.tomshardware.com/pc-components/nas/synology-requires-self-branded-drives-for-some-consumer-nas-systems-drops-full-functionality-and-support-for-third-party-hdds |
06:32:25 | <pabs> | Synology-- |
06:32:26 | <eggdrop> | [karma] 'Synology' now has -1 karma! |
06:32:57 | <@JAA> | <surprised_pikachu.png> |
06:40:12 | <BlankEclair> | synology wtf lol |
07:00:13 | | BennyOtt (BennyOtt) joins |
07:07:42 | | sec^nd quits [Remote host closed the connection] |
07:08:05 | | sec^nd (second) joins |
08:04:01 | | BornOn420 quits [Ping timeout: 240 seconds] |
08:25:48 | | BennyOtt quits [Client Quit] |
08:27:12 | | BennyOtt (BennyOtt) joins |
08:55:04 | | BornOn420 (BornOn420) joins |
09:14:21 | | jinn6 quits [Ping timeout: 260 seconds] |
09:14:38 | | jinn6 joins |
09:34:56 | | Jens quits [] |
09:35:26 | | Jens (JensRex) joins |
10:02:09 | | Lunarian1 (LunarianBunny1147) joins |
10:05:41 | | LunarianBunny1147 quits [Ping timeout: 260 seconds] |
10:46:11 | | BornOn420 quits [Client Quit] |
11:02:54 | | Bleo18260072271962345 joins |
11:22:01 | <Blueacid> | That's put Synonolgy on my shit list, why can't we have nice things? :( |
11:25:01 | | ducky quits [Ping timeout: 260 seconds] |
11:34:01 | | ducky (ducky) joins |
11:40:38 | | FiTheArchiver joins |
11:57:02 | | FiTheArchiver quits [Ping timeout: 258 seconds] |
12:01:42 | | IDK (IDK) joins |
13:23:24 | | FiTheArchiver joins |
13:24:36 | | BornOn420 (BornOn420) joins |
13:36:21 | | grill (grill) joins |
13:40:39 | | FiTheArchiver1 joins |
13:43:09 | | FiTheArchiver3 joins |
13:43:51 | | FiTheArchiver quits [Ping timeout: 260 seconds] |
13:46:46 | | FiTheArchiver1 quits [Ping timeout: 260 seconds] |
14:08:11 | | sec^nd quits [Remote host closed the connection] |
14:08:31 | | sec^nd (second) joins |
14:09:31 | | FiTheArchiver3 quits [Client Quit] |
14:10:13 | | IDK quits [Client Quit] |
14:10:39 | | FiTheArchiver joins |
14:32:17 | | grill quits [Ping timeout: 258 seconds] |
14:34:11 | | grill (grill) joins |
14:36:41 | | IDK (IDK) joins |
15:29:22 | | ericgallager joins |
15:32:21 | | grill quits [Ping timeout: 260 seconds] |
16:03:51 | | grill (grill) joins |
16:20:11 | | grill quits [Ping timeout: 260 seconds] |
16:22:02 | | grill (grill) joins |
16:31:23 | | DogsRNice joins |
16:40:13 | | IDK quits [Client Quit] |
16:49:21 | | Meli quits [Ping timeout: 260 seconds] |
16:52:35 | <nukke> | Synology has a TON of competition now though, so this isn't a bad thing |
16:53:39 | <nukke> | UGREEN has a very solid NAS line, Minisforum is coming out with a 5-bay one soon, there TerraMaster and Asustor also have competitive solutions |
16:54:12 | <nukke> | plus (chinese) NAS motherboards are pretty common nowadays, and NAS cases like the Jonsbo ones are cheap |
16:54:53 | | grill quits [Ping timeout: 258 seconds] |
16:55:30 | <nukke> | let me rephrase: it sucks that Synolgy is going this route but it's not the end of the world |
16:55:46 | <nukke> | oh and I forgot about the Unifi NAS too |
16:55:58 | <katia> | i like the ugreen nas. runs windows 7 like a champ |
16:57:20 | | Meli (Meli) joins |
17:01:26 | | grill (grill) joins |
17:07:28 | <that_lurker> | katia: oh now I have to get one |
17:07:48 | <that_lurker> | though minisforum one sounds interesting as well |
17:08:08 | <katia> | i am not attached to the ugreen one. it was just on a good deal, and has good specs, and i can install what i want on it |
17:09:41 | <that_lurker> | well being broke helps me not to buy stuff :-) Need to save money so I can go to the next c3 with my frined |
17:11:25 | <katia> | ! |
17:14:49 | <that_lurker> | ¡ |
17:23:09 | <katia> | that_lurker at 39c3 that_lurker at 39c3 |
17:23:52 | <that_lurker> | that is the plan |
17:30:09 | | DogsRNice quits [Ping timeout: 258 seconds] |
17:31:09 | | DogsRNice joins |
17:41:25 | <nukke> | Yeah the ugreen I got is pretty good, though I can't get TrueNAS to read the temperature |
17:42:52 | <katia> | cpu-z.exe |
17:43:04 | <katia> | which one you got nukke? |
17:53:02 | <nukke> | dxp8800+ |
18:02:17 | <katia> | i got the 6 bay one |
18:04:57 | <that_lurker> | im looking into that one too. My current synology has 2*4tb in raid 0 so kinda anything would be better :-P |
18:14:16 | | linuxgemini (linuxgemini) joins |
18:14:29 | | linuxgemini quits [Remote host closed the connection] |
18:16:12 | | ericgallager quits [Client Quit] |
18:16:55 | | grill quits [Ping timeout: 258 seconds] |
18:58:51 | | Juest quits [Ping timeout: 260 seconds] |
19:23:35 | | Lunarian1 is now known as LunarianBunny1147 |
19:32:03 | | Juest (Juest) joins |
19:38:29 | <nukke> | I like mine a lot. I replaced the stock SSD with an Optane boot drive. |
19:38:58 | <nukke> | very easy to take apart too |
20:11:11 | | Snivy quits [Ping timeout: 260 seconds] |
20:16:34 | | Snivy (Snivy) joins |
20:45:03 | | LunarianBunny1147 quits [Quit: WeeChat 4.6.1] |
20:52:50 | | LunarianBunny1147 (LunarianBunny1147) joins |
21:10:16 | | SootBector quits [Remote host closed the connection] |
21:11:28 | | SootBector (SootBector) joins |
21:42:02 | | midou quits [Read error: Connection reset by peer] |
21:42:10 | | midou joins |
21:44:25 | | PredatorIWD25 quits [Read error: Connection reset by peer] |
21:46:08 | <@JAA> | Hmm yeah, the Minisforum NAS look interesting (once you ignore the 'AI-ready' crap). Maybe it'll even come out before the end of 2026. |
21:47:50 | | PredatorIWD25 joins |
21:53:59 | <nicolas17> | plug some disks into a dozen SBCs and run ceph :P |
22:02:36 | | arch quits [Remote host closed the connection] |
22:02:57 | | arch joins |
22:09:19 | <that_lurker> | "Full Text Search of US Court records" https://www.judyrecords.com/ https://news.ycombinator.com/item?id=43731552 |
22:10:15 | <that_lurker> | only one match for archiveteam |
22:10:58 | <@JAA> | Where bulk download? :-) |
22:16:25 | | ericgallager joins |
22:17:37 | <nicolas17> | https://groups.google.com/a/groups.cabforum.org/g/servercert-wg/c/bvWh5RN6tYI |
22:17:38 | <nicolas17> | starting 2026 CAs will no longer be able to issue certificates longer than about a month |
22:19:31 | <that_lurker> | yay |
22:24:25 | <@JAA> | 2029, if I'm reading it correctly. 2026 is when the transition starts. |
22:24:52 | <nicolas17> | interesting to see who abstained |
22:25:34 | <@JAA> | https://sectigostore.com/blog/47-day-ssl-certificate-validity/ has a timeline, though not sure whether that's part of the proposal or just Sectigo's plan. |
22:26:45 | <that_lurker> | slowly going down to the session only certs |
22:32:49 | <Barto> | digicert has a blogpost too |
22:33:16 | <Barto> | https://www.digicert.com/blog/tls-certificate-lifetimes-will-officially-reduce-to-47-days |
22:33:33 | <@JAA> | Hmm yeah, same timeline there. |
22:33:56 | <Barto> | also, i've been telling that at work for the longest time, stop with your certificate pinning |
22:34:29 | <Barto> | we're heading to world with short lived keys, adding more process and complexity upon rotation will not help :( |
22:34:51 | | katia pins Barto |
22:35:03 | <nicolas17> | for reverse-engineering stuff on iOS, I found it really annoying to bypass certificate pinning so I can mitm, each app seems to do pinning in a different way and no patch covers all cases |
22:35:38 | <nicolas17> | so I made my own hook to log the session keys instead |
22:35:56 | | Barto deflates |
22:35:56 | <Barto> | you still have to give back my nose katia btw :( |
22:37:22 | <that_lurker> | https://github.com/cabforum/servercert/pull/553 |
22:37:36 | <Barto> | i also wonder how we're gonna do with the clients where we send them the csr :-) That's going to be fun |
22:40:27 | | ahm258760 joins |
22:41:59 | <katia> | Barto, :--) |
22:42:06 | <Barto> | you thief! |
22:42:51 | | ahm25876 quits [Ping timeout: 260 seconds] |
22:42:51 | | ahm258760 is now known as ahm25876 |
22:46:11 | <that_lurker> | we need 47day ssh keys :-P |
22:46:27 | <that_lurker> | renew or lose access to your system |
22:46:51 | <@JAA> | 47-day client certificates for IRC SASL! |
22:47:51 | <nicolas17> | that_lurker: that's a thing, but with certificates |
22:48:34 | <that_lurker> | nicolas17: true |
22:48:35 | <nicolas17> | so the server can trust the ssh CA |
22:48:43 | <nicolas17> | instead of each individual short-lived cert |
22:49:56 | <Barto> | lol |
22:49:57 | <katia> | short-lived CA |
22:50:36 | <Barto> | how old is my ssh key? 10 years? :p |
22:50:59 | <Barto> | we've a client with ssh certs signed through vault, works quite well actually |
22:51:14 | <nicolas17> | I never understood the point of vault |
22:51:35 | <nicolas17> | keeping credentials on the client is unsafe, put them in vault instead! okay how do you authenticate into vault? |
22:51:38 | <Barto> | well, at least it's not on a piece of paper |
22:52:06 | <katia> | nicolas17, vault has ways to generate short lived credentials |
22:52:32 | <katia> | https://openbao.org/docs/secrets/databases/postgresql/#usage |
22:52:40 | <nicolas17> | how do you authenticate into vault? |
22:52:45 | <Barto> | that reminds me the road i took last work spring with role ids and secret ids in the CI :-) |
22:52:50 | <katia> | an app token |
22:52:50 | <Barto> | sprint* |
22:53:17 | <katia> | https://openbao.org/docs/secrets/kubernetes/#generating-credentials |
22:53:18 | <nicolas17> | is that a long-lived credential? |
22:53:20 | <katia> | this token can also be shrot lived |
22:53:46 | <nicolas17> | what's openbao? fork of vault? |
22:53:49 | <katia> | yeah |
22:53:59 | <Barto> | i can agree that there are things in vault that makes me scratch my head a little bit, but that's down to the glue around it |
22:54:31 | <Barto> | i didnt know about openbao, it was created after the acquisition of hashicorp by ibm? |
22:54:41 | <katia> | yeah |
22:54:51 | <Barto> | okay, just like opentofu, nice |
22:54:57 | <Barto> | we've got backup plans |
22:55:17 | <that_lurker> | Linux Foundation++ |
22:55:17 | <eggdrop> | [karma] 'Linux Foundation' now has 1 karma! |
22:55:25 | <Barto> | Linux Foundation++ |
22:55:25 | <eggdrop> | [karma] 'Linux Foundation' now has 2 karma! |
22:55:28 | <Barto> | fireonlive++ |
22:55:28 | <eggdrop> | [karma] 'fireonlive' now has 955 karma! |
22:55:33 | <katia> | fireonlive++ |
22:55:34 | <eggdrop> | [karma] 'fireonlive' now has 956 karma! |
22:55:48 | <that_lurker> | fireonlive++ |
22:55:49 | <eggdrop> | [karma] 'fireonlive' now has 957 karma! |
22:56:11 | | that_lurker tries to tab completed that everytime :( |
22:56:21 | <Barto> | :'( |
22:58:21 | <nicolas17> | D: |
23:04:17 | <nukke> | TIL https://github.com/systemd/particleos |
23:04:29 | <nukke> | immutable distro by the systemd folks |
23:04:49 | <nukke> | systemd++ |
23:04:50 | <eggdrop> | [karma] 'systemd' now has 0 karma! |
23:11:22 | <katia> | nukke, are you feeling well? |
23:13:57 | <nukke> | always |
23:19:14 | <that_lurker> | do you need a nice systemctl daemon-reload |
23:32:22 | | ericgallager quits [Client Quit] |
23:41:20 | | cmlow joins |
23:41:46 | | fionera quits [Ping timeout: 260 seconds] |
23:44:26 | | fionera joins |
23:44:26 | | fionera is now authenticated as Fionera |
23:44:26 | | fionera quits [Changing host] |
23:44:26 | | fionera (Fionera) joins |
23:45:54 | <@JAA> | By the way, formal ballot results: https://groups.google.com/a/groups.cabforum.org/g/servercert-wg/c/9768xgUUfhQ |
23:46:35 | <that_lurker> | always interesting to see the voter companies |
23:49:21 | | fionera quits [Ping timeout: 260 seconds] |
23:49:33 | | fionera joins |
23:49:33 | | fionera is now authenticated as Fionera |
23:49:33 | | fionera quits [Changing host] |
23:49:33 | | fionera (Fionera) joins |
23:52:07 | <katia> | ur face is interesting |
23:53:03 | <@JAA> | ω̈ |
23:53:35 | | katia pets JAA |
23:55:52 | <that_lurker> | how is it 3am already. damn I messed up my sleep schedule fast |
23:56:14 | <katia> | me too thanks |
23:56:52 | <@JAA> | Same |
23:58:41 | | fionera quits [Ping timeout: 260 seconds] |