firmly of the belief that guitars are real

  • 0 Posts
  • 12 Comments
Joined 1 year ago
cake
Cake day: August 16th, 2023

help-circle


  • Encrypting your disk only provides at-rest protection, meaning there are entire swathes of physical attacks it provides zero protection against. Tons of stuff a malicious actor can do during runtime with physical access that you’d never notice. it quite literally only protects against thugs smashing your door in and physically walking away with the disk.

    So if you’ve painted yourself into a corner with a baby’s first config, what you can do to step up your level of data protection (until you can redo your setup properly) is creating an encrypted filesystem or filesystem image (use fallocate to create a large empty file, then connect it to a loopback device, encrypt with LUKS, and use it as a virtual filesystem), rsync your data directory to it, and then unlock/mount it at boot under the directory where Nextcloud is configured to store your data. It’s god-awful, but this should be more or less transparent to Nextcloud if you do it right, and then at least your data directory gets at-rest encryption, and tbqh if someone is smash and grabbing your hard drive they are probably more interested in your data than they are your OS config.

    I wouldn’t say this is an acceptable or preferable alternative to FDE, but it sounds like you’re still figuring out the best ways to set these things up, and this will get you more protection than none. But, realistically, you should probably not worry about it too much and should think about the security of your setup as a learning exercise/study in best practices.


  • guitars are real@sh.itjust.workstoMemes@lemmy.mlW8 wot
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    1
    ·
    edit-2
    1 year ago

    I wish more content creators would upload to PeerTube (or something like it). I get it, there’s no instances with good monetization options, it just sucks we’re all stuck in various walled gardens because of how expensive video delivery is.



  • You know, I appreciate Chomsky, but his work is mainly intended to get you reading and thinking more on your own than to give you all the answers. Not everything that happens in the news media is a distraction from something else just because he broke down that one propaganda trick really well. Sometimes, events stay glued to our screens because they really are the main propaganda event of the day, and they really do want you to spend all day and all night thinking about it.

    In this case, Israel needs tons and tons of people frothing at the mouth supporting genocide, and Palestinians are needing just as many, if not more, to consider that genocide may be wrong, and they’re playing tug-of-war in the media. That’s all I’m seeing.