Skip to content

Piero Bosio Social Web Site Personale Logo Fediverso

Social Forum federato con il resto del mondo. Non contano le istanze, contano le persone

I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

Uncategorized
8 5 5
  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

    @stefano Disgusting! Today it's a luxury to have a real and untempered internet connection. About 16 years ago I saw Vodafone compressing my images which I uploaded to an FTP server. It's just stupid...

  • @stefano Disgusting! Today it's a luxury to have a real and untempered internet connection. About 16 years ago I saw Vodafone compressing my images which I uploaded to an FTP server. It's just stupid...

    @finn I agree. I don't need Vodafone to sniff my traffic and decide if it's "secure" or not. Years ago that service wasn't Active by default. Then something changed and I started to see, from time to time, those "this site isn't secure" pages. I asked to disable it and they did it. But I remember that I read somewhere they're reenabling it and now it cannot be disabled as "it's for our security".

    All I ask is that they stop messing with my traffic.

  • stefano@mastodon.bsd.cafeundefined stefano@mastodon.bsd.cafe shared this topic on
  • @finn I agree. I don't need Vodafone to sniff my traffic and decide if it's "secure" or not. Years ago that service wasn't Active by default. Then something changed and I started to see, from time to time, those "this site isn't secure" pages. I asked to disable it and they did it. But I remember that I read somewhere they're reenabling it and now it cannot be disabled as "it's for our security".

    All I ask is that they stop messing with my traffic.

    @stefano Amen brother! Just give us pure unfiltered internet. If someone wants any "security extras" they can opt-in for that.

  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

    @stefano

    > I even briefly asked an AI (I know, I know...)

    LLMs being used as a search engine "on steroids" is actually a good use case, IMHO.

    You don't have to blindly trust the output, but instead have something to keep searching for an answer.

  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

    This post is deleted!
  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

    @stefano I've been in your exact place! It's so frustrating! That reminds me, I need to tell my ISP to set my static IP via the ethernet port in my protectli and switch the Eero 6+ to bridged mode so I can control the firewall properly again. I've just been lazy. 😂

  • I’ve been losing my mind for almost 4 hours, and I feel like an idiot.

    At first I couldn't understand why the TLS handshake was always taking more than 300 milliseconds. I thought it was a local or server-side issue. Only after about an hour did I test google.com and saw the exact same behavior.

    That's when I realized that with my other WAN connection, the timing drops significantly.

    So I started going crazy over my MikroTik configuration, convinced it had to be something related to multi-WAN. I even briefly asked an AI (I know, I know...), which said the problem was probably my neighbor, who had eaten too much pizza.

    At that point, I kept spiraling.

    Then it hit me that the Vodafone Station has its built-in Wi-Fi disabled, since I manage the network behind it. I could enable it and bypass the MikroTik. I enabled it and ran a direct test.

    Bingo. Same problem.

    So the issue is upstream. I suspect it’s "Vodafone Rete Sicura", some awful thing I never wanted and that probably does some kind of traffic inspection.

    I really can't wait for FTTH to arrive so I can finally get rid of this stuff.

    I'll try to replace their router with a generic VDSL2 one I have around. I think it might be the router that will try to use that "feature".


Gli ultimi otto messaggi ricevuti dalla Federazione
Post suggeriti
  • 0 Votes
    23 Posts
    101 Views
    @stefano @ricardo the article mentioned the FreeBSD subreddit and The FreeBSD Forums. Yorick Peterse shared his post in the sub, where it was very well-received. Pictured: insights that are not visible to the public (I very rarely share such things, doing so seems harmless on this occasion). No mention of Discord, Twitter, or X. Also pictured: the wiki for FreeBSD Discord very recently cautioned that the FreeBSD Community Code of Conduct can not be enforced. I do not imagine that this caution relates to any recent misconduct there …<https://www.freebsd.org/internal/code-of-conduct/><https://wiki.freebsd.org/Discord/DiscordServer><https://yorickpeterse.com/>#FreeBSD #Reddit #forums #Discord #community #conduct #misconduct
  • 0 Votes
    1 Posts
    13 Views
    Does anyone know of an easy way to run #Anubis in front of a small static site? It should be straightforward, low maintenance and affordable for someone who has no experience running anything that's publicly accessible I'm imagining the standard scenario is a rented VPS and manually configuring Anubis + nginx + SSL/TLS but I'm looking for something simpler#AskFedi #webhosting #sysadmin #selfhosted #nginx #vps #AntiAi
  • 0 Votes
    4 Posts
    11 Views
    This picture is hilarious
  • 0 Votes
    1 Posts
    13 Views
    The client has a terrible, unreliable FTTC connection. So, this morning, I've been testing several devices and 4G carriers to find a reliable alternative when the FTTC is full/down.The good, old LTE12 Chateau is the best for this task, giving a stable and reliable 220/50 Mbit/sec thanks to carrier aggregation.The newer but smaller hAP ax lite LTE6 is still giving a good result, around 100/50 - expected, as it's "only" a LTE6. This will probably come to my office, while I'm waiting for the Chateau 5G (LTE20) to arrive - probably not before middle of November.Now, I need to create proper queues and rules to manage the two connections - at the moment, I've implemented only the failover and some simple queues on the FTTC.Lunch time.#Mikrotik #IT #SysAdmin #MorningFun