home.social

#hardened — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #hardened, aggregated by home.social.

  1. @threatchain general purpose siem, malcolm ids, debian server, opnsense - good combo imo, good licensing,. I may just refactor and use 500gb drives so cost will not be the limiting factor, you can use debian blends too but even some of these specialized apps won't have included forensics-full and this has a ton of super usefull sw, when you have the persistence partition going corner case use cases can be covered better than say something like a bootable iso #rational clear case #mw #smw #yacy 3jenkins #ntop-ng #misp #cms #lamp server #sbom #addons #app armor #selinux #ufw #fail2ban #hardened debian #pentoo

  2. @threatchain general purpose siem, malcolm ids, debian server, opnsense - good combo imo, good licensing,. I may just refactor and use 500gb drives so cost will not be the limiting factor, you can use debian blends too but even some of these specialized apps won't have included forensics-full and this has a ton of super usefull sw, when you have the persistence partition going corner case use cases can be covered better than say something like a bootable iso #rational clear case #mw #smw #yacy 3jenkins #ntop-ng #misp #cms #lamp server #sbom #addons #app armor #selinux #ufw #fail2ban #hardened debian #pentoo

  3. @threatchain general purpose siem, malcolm ids, debian server, opnsense - good combo imo, good licensing,. I may just refactor and use 500gb drives so cost will not be the limiting factor, you can use debian blends too but even some of these specialized apps won't have included forensics-full and this has a ton of super usefull sw, when you have the persistence partition going corner case use cases can be covered better than say something like a bootable iso #rational clear case #mw #smw #yacy 3jenkins #ntop-ng #misp #cms #lamp server #sbom #addons #app armor #selinux #ufw #fail2ban #hardened debian #pentoo

  4. @threatchain general purpose siem, malcolm ids, debian server, opnsense - good combo imo, good licensing,. I may just refactor and use 500gb drives so cost will not be the limiting factor, you can use debian blends too but even some of these specialized apps won't have included forensics-full and this has a ton of super usefull sw, when you have the persistence partition going corner case use cases can be covered better than say something like a bootable iso #rational clear case #mw #smw #yacy 3jenkins #ntop-ng #misp #cms #lamp server #sbom #addons #app armor #selinux #ufw #fail2ban #hardened debian #pentoo

  5. Just installed a new proxmox vm (arch linux template) which includes linux hardened kernel.

    `passwd` command failed.
    See bug gitlab.archlinux.org/archlinux

    If you run into the same issue just downgrade pam package:
    `pacman -U archive.archlinux.org/packages `

  6. Just an update regarding this issue here.

    The [bug](gitlab.archlinux.org/archlinux) is closed and we can confirm it as well.
    Even the newest kernel 6.6.7.hardened1-1 is working fine on several servers and laptop/desktop pcs.

    So it's save to upgrade if you haven't done it yet.

  7. Just a heads up!

    If you are using the hardened kernel on Arch Linux, you may experience a kernel panic with the new 6.5.13 release. Go back to 6.5.12.

    Basically:
    - start iso
    - mount / and /boot
    - arch-chroot /mnt
    - pacman -U /var/cache/pacman/pkg/linux-hardened-6.5.12.hardened1-1-x86_64.pkg.tar.zst
    - don't forget docs and headers, if you have installed it

    Check gitlab.archlinux.org/archlinux

  8. I made a mistake and i think it's only fair to admit it.
    In previous posts, i acted like #firefox is the only choice you have when it comes to #privacy, which is not the case. Also, my posts were provocative and i'm sorry.

    A #chromium based browser is also a good choice. #Librewolf is just #firefox but #hardened out of the box and you can achieve pretty much the same with a chromium based browser and some hardening.

    I am not in hate with #google. In fact, google did a lot of good stuff for the #opensource community for which i am very thankful.

    I will not delete these posts because i stand to my mistake.

  9. @jabato
    No me sorprenderia que Meta esta buscando el camino para unificar a todas sus soluciones bajo un unico hilo conductor: Lo de thr3ad es el primer paso para conectar inzta + f4c3 + w4pps y quien sabe que otras cosas

    El problema de la #privacidad creo que ya se ha comentado en otras partes.

    Para conseguir mas privacidad debes tener conocimientos, invertir tiempo y luchar contra una buena cantidad de barreras, que el 99,9999% no puede y no ve la necesidad de saltarse, ya que al final es que tampoco es que vean beneficios significativos.

    Cuantos de los que usan SailfishOS o #eOS o cualquiera de los otros sistemas #hardened no se quejan que sus bancos no les dejan acceso a sus datos porque las benditas apps simplemente dejan de funcionar por "problemas de #seguridad".

    Estoy plenamente seguro que si los sistemas amigables con la seguridad y la privacidad se hicieran tan faciles de instalar y consiguieran sortear las barreras que intentan imponerle muchas de esas apps, que hasta el mas alejado de las TI o normal de los mortales consiguiera hacerlo sin romperse la cabeza, de seguro el escenario cambiaria radicalmente.

    Y otro de los temas que tambien afecta a todos es ¿por que esos OS estan unicamente disponibles para moviles que son carisimos y no para los mas baratitos? ¿O sea la privacidad es un privilegio de quienes pueden pagarlo?

    * Soy usuario de eOS, pero me ha costado lagrimas instalarlo... de hecho perdi una tablet samsung haciendolo.

    @ElenaMusk @BlackAzizAnansi
  10. CW: Mentions of several triggering subjects

    News hardened
    They turn past the carnage
    To the comics

    No image today. Any image I could think of would be too triggering. Whether it be gun violence, voter suppression, depots running amuck, or the violation of minority rights. Let's turn to the comics.

    #575Prompt @aethelshane #hardened
    #Haiku #Senyru #FreeHaiku #Haibun @freehaiku
    #Poliical

  11. Hm, does anyone know why #Bottles on Arch #Linux #Hardened (github.com/anthraxx/linux-hard) in full #Lockdown mode in #Flatpak spews

    ```
    00f0:err:unwind:install_bpf Native libs are being loaded in low addresses, sc_seccomp 0x1234567890ab, syscall 0xcdef01234567, not installing seccomp. 00f0:err:unwind:install_bpf The known reasons are /proc/sys/vm/legacy_va_layout set to 1 or 'ulimit -s' being 'unlimited'.
    ```

    and similarly installed #Steam #Proton doesn't? I have set

    ```
    $ sysctl kernel.unprivileged_bpf_disabled
    0
    ```

    What's the difference?

  12. Put a Hardened Edge on Mild Steel with Just a Drill Bit. Sort of. - People have been working metal for so long that the list of tips and tricks is now nearly infinite... - hackaday.com/2020/12/27/put-a- #hard-facing #toolhacks #hardened #welding #drill #edge #tig

  13. #hardened : made hard, or compact

    - German: verhärteten

    - Portuguese: endurecido

    - Spanish: endurecido

    ------------

    Thank you so much for being a member of our community!