Skip to content

Piero Bosio Social Web Site Personale Logo Fediverso

Social Forum federato con il resto del mondo. Non contano le istanze, contano le persone

I'm working on some interesting stuff this morning, and I'm really enjoying it.

Uncategorized
8 4 19
  • I'm working on some interesting stuff this morning, and I'm really enjoying it. So far, no calls about yesterday's issue, which is reassuring.

    But I did get a new call, awaiting a follow-up: a few months ago, I sent a (low-cost) quote to modernize a network stuck 20 years in the past. This included new routers, 4G failover (which they currently lack), transitioning from a PPTP (!!!) based VPN to WireGuard, and using IPsec and/or WireGuard for site-to-site connectivity (which is currently handled in a way I'm embarrassed to even mention).

    I've been managing some servers for them for a few years (not in the right way, IMO, and there's a plan to fix that too), and they were enthusiastic about my project (and how cost-effective it was, thanks to choosing the right hardware).

    Today's call: a colleague who works with them told me they're reviewing a quote this morning for a "professional", "AI-powered" (and hyper-expensive, with recurring fees) firewall because my proposal is supposedly "too basic to be effective".

    If they go that route, that's their choice, but I'm always baffled by how the grass is always greener -trusting the first stranger who shows up with buzzwords and pointlessly expensive products.

    On the flip side, this afternoon I have an on-site visit with a potential new client who, and I quote, "prefers to spend money on consulting for open-source products than on useless licenses".

    Just for that attitude alone, I'm going to offer them extremely favorable terms if the premises are right.

    Anyway, it's only 9:20, but the day is already shaping up to be quite interesting.

  • I'm working on some interesting stuff this morning, and I'm really enjoying it. So far, no calls about yesterday's issue, which is reassuring.

    But I did get a new call, awaiting a follow-up: a few months ago, I sent a (low-cost) quote to modernize a network stuck 20 years in the past. This included new routers, 4G failover (which they currently lack), transitioning from a PPTP (!!!) based VPN to WireGuard, and using IPsec and/or WireGuard for site-to-site connectivity (which is currently handled in a way I'm embarrassed to even mention).

    I've been managing some servers for them for a few years (not in the right way, IMO, and there's a plan to fix that too), and they were enthusiastic about my project (and how cost-effective it was, thanks to choosing the right hardware).

    Today's call: a colleague who works with them told me they're reviewing a quote this morning for a "professional", "AI-powered" (and hyper-expensive, with recurring fees) firewall because my proposal is supposedly "too basic to be effective".

    If they go that route, that's their choice, but I'm always baffled by how the grass is always greener -trusting the first stranger who shows up with buzzwords and pointlessly expensive products.

    On the flip side, this afternoon I have an on-site visit with a potential new client who, and I quote, "prefers to spend money on consulting for open-source products than on useless licenses".

    Just for that attitude alone, I'm going to offer them extremely favorable terms if the premises are right.

    Anyway, it's only 9:20, but the day is already shaping up to be quite interesting.

    @stefano "ai"-powered firewalls >>> next-gen firewalls. Of course. Should've thought of that.

    Good luck with your leads! 😀

  • I'm working on some interesting stuff this morning, and I'm really enjoying it. So far, no calls about yesterday's issue, which is reassuring.

    But I did get a new call, awaiting a follow-up: a few months ago, I sent a (low-cost) quote to modernize a network stuck 20 years in the past. This included new routers, 4G failover (which they currently lack), transitioning from a PPTP (!!!) based VPN to WireGuard, and using IPsec and/or WireGuard for site-to-site connectivity (which is currently handled in a way I'm embarrassed to even mention).

    I've been managing some servers for them for a few years (not in the right way, IMO, and there's a plan to fix that too), and they were enthusiastic about my project (and how cost-effective it was, thanks to choosing the right hardware).

    Today's call: a colleague who works with them told me they're reviewing a quote this morning for a "professional", "AI-powered" (and hyper-expensive, with recurring fees) firewall because my proposal is supposedly "too basic to be effective".

    If they go that route, that's their choice, but I'm always baffled by how the grass is always greener -trusting the first stranger who shows up with buzzwords and pointlessly expensive products.

    On the flip side, this afternoon I have an on-site visit with a potential new client who, and I quote, "prefers to spend money on consulting for open-source products than on useless licenses".

    Just for that attitude alone, I'm going to offer them extremely favorable terms if the premises are right.

    Anyway, it's only 9:20, but the day is already shaping up to be quite interesting.

    @stefano don't work in IT but the project is technical, very large and full of people that do not understand their 'choices' have concequences on others plus long term costs etc., making the deliverable more complex, worse and the price eye watering with less functionality.

  • @stefano "ai"-powered firewalls >>> next-gen firewalls. Of course. Should've thought of that.

    Good luck with your leads! 😀

    This post is deleted!
  • I'm working on some interesting stuff this morning, and I'm really enjoying it. So far, no calls about yesterday's issue, which is reassuring.

    But I did get a new call, awaiting a follow-up: a few months ago, I sent a (low-cost) quote to modernize a network stuck 20 years in the past. This included new routers, 4G failover (which they currently lack), transitioning from a PPTP (!!!) based VPN to WireGuard, and using IPsec and/or WireGuard for site-to-site connectivity (which is currently handled in a way I'm embarrassed to even mention).

    I've been managing some servers for them for a few years (not in the right way, IMO, and there's a plan to fix that too), and they were enthusiastic about my project (and how cost-effective it was, thanks to choosing the right hardware).

    Today's call: a colleague who works with them told me they're reviewing a quote this morning for a "professional", "AI-powered" (and hyper-expensive, with recurring fees) firewall because my proposal is supposedly "too basic to be effective".

    If they go that route, that's their choice, but I'm always baffled by how the grass is always greener -trusting the first stranger who shows up with buzzwords and pointlessly expensive products.

    On the flip side, this afternoon I have an on-site visit with a potential new client who, and I quote, "prefers to spend money on consulting for open-source products than on useless licenses".

    Just for that attitude alone, I'm going to offer them extremely favorable terms if the premises are right.

    Anyway, it's only 9:20, but the day is already shaping up to be quite interesting.

    @stefano AI powered firewall… Oh my…

    btw. what setup do you generally use to do 4G backup?

  • @stefano AI powered firewall… Oh my…

    btw. what setup do you generally use to do 4G backup?

    This post is deleted!
  • This post is deleted!

    @stefano I see, so I assume that device then also acts as the router and does the failover?

  • @stefano I see, so I assume that device then also acts as the router and does the failover?

    This post is deleted!

Gli ultimi otto messaggi ricevuti dalla Federazione
  • @ed TheMovieDatabase (TMDB)? https://www.themoviedb.org/

    read more

  • Light Following Robot Does It The Analog Way

    If you wanted to build a robot that chased light, you might start thinking about Raspberry Pis, cameras, and off-the-shelf computer vision systems. However, it needn’t be so complex. [Ed] of [Death and the Penguin] demonstrates this ably with a simple robot that finds the light the old-fashioned way.

    The build is not dissimilar from many line-following and line chasing robots that graced the pages of electronics magazines 50 years ago or more. The basic circuit relies on a pair of light-dependent resistors (LDR), which are wrapped in cardboard tubes to effectively make their response highly directional. An op-amp is used to compare the resistance of each LDR. It then crudely steers the robot towards the brighter light between turning one motor hard on or the other, operating in a skid-steer style arrangement.

    [Ed] then proceeded to improve the design further with the addition of a 555 timer IC. It’s set up to enable PWM-like control, allowing one motor to run at a lower speed than the other depending on the ratio between the light sensors. This provides much smoother steering than the hard-on, hard-off control of the simpler circuit. [Ed] notes that this is about the point where he would typically reach for a microcontroller if he hoped to add any additional sophistication.

    In an era where microcontrollers seem to be the solution to everything, it’s nice to remember that sometimes you can complete a project without using a processor or any code at all. Video after the break.

    youtube.com/embed/ikTkOXu1th4?…

    youtube.com/embed/tPZAZ0fSK8M?…

    hackaday.com/2026/01/28/light-…

    read more

  • "OK, Google. Navigate to Osaka Grill."

    There is a restaurant named "Osaka Grill" that is 11 minutes away from my home.

    There is a restaurant named "Osaka" that is 29 minutes away from my home.

    Before Gemini, Google Assistant was smart enough to figure out that I meant the place with the stated name that is closer to me, not the place with a similar name that is farther away.

    The more AI they add, the dumber it gets.

    read more

  • In a pagan folk band AND a pagan metal band? I have doubts about Biko.

    read more

  • I think one of the things I like about this show is that I enjoy planning and preparing for trips (or any activity, really) possibly more than I enjoy the trip itself. Planning for a survival situation? 🤌

    read more

  • @aeva Put the ubuntu iso image on a usb key and insert it into the computer is all it takes, should be similar on other distros.

    netboot.xyz is nice. It's a bootable image which brings up a menu of linux distros to try or install, fetching them over the internet. Install it on a usb key, boot drive, or network boot file.

    read more

  • @informapirata@www.informapirata.it

    Grazie ho letto la prima parte, spiegazione molto interessante, mi sono venuti dei dubbi, magari mi si chiariranno leggendo il resto.

    @poliverso@www.informapirata.it @fediverso @poliverso@feddit.it @Informapirata@lemmy.ml @macfranc @test

    read more

  • Alone season 8 watch thread. I hope there are less dead mammals, especially big ones, than in season 7. Not only is it nearly always a suboptimal strategy, it's depressing.

    read more
Post suggeriti
  • 0 Votes
    1 Posts
    6 Views
    New blog post: GeoIP-Aware Firewalling with PF on FreeBSDRunning a mail server means constant brute-force attempts. My solution: geographic filtering. SMTP stays open for global mail delivery, but client ports (IMAP, Submission, webmail) are restricted to Central European IP ranges only.Result: ~90% reduction in attack logs, cleaner signal-to-noise ratio, smaller attack surface.Using MaxMind GeoLite2 + PF tables with ~273k CIDR blocks.https://blog.hofstede.it/geoip-aware-firewalling-with-pf-on-freebsd/#FreeBSD #InfoSec #SysAdmin #pf #DevOps
  • I found this funny.

    Uncategorized sysadmin technology life jobs
    2
    1
    0 Votes
    2 Posts
    3 Views
    I found this funny. credit https://www.threeboy.com/#sysadmin #technology #life #jobs
  • 0 Votes
    6 Posts
    22 Views
    @stefano @christopher I am not sure if I'd say #Linux is becoming like #Windows. I do recall similar statements made on the Debian-User mailing list on a previous release when xorg introduced autoconfiguration. A lot of people were pissed that it was making choices for you instead of manually configuring the xorg.conf file.Honestly, that was a good thing. Painful doesn't begin to describe it but users were unaware they could still hand-configure the file.There has been, however, more stuff added to Linux over the last several years. Call it bloat, call it whatever you want. OSes change. But it has been gradually moving away from simplicity.I miss the simplicity.However, to reply to your original post, coming from COTS solutions, sometimes the vast amount of choice can be overwhelming. For instance, when it comes to #FreeBSD #jails it used to just be jails. Now, it's thin, thick, classic, networking. I understand they have their places but it would be helpful to provide more detailed explanations, tutorials, or best practices for each. The FreeBSD Handbook is good but just scratches the surface but often leaves more questions. It would help with learning and in part...marketing.On a side note: The FreeBSD Handbook is a great resource but there are opportunities to improve it, like tailoring it to new users (better empathy), best practices, architectural examples, and links to additional resources and info.
  • 0 Votes
    2 Posts
    11 Views
    Finalmente il mio #Mastodon cammina da solo, sul nuovo server di #snowfan.it!Con #masto.host è stato un percorso fantastico, lo consiglierò sempre, ma arriva quel momento in cui vuoi capire davvero cosa succede dietro le quinte.Ora niente più limiti da 200 GB o processi contati, abbiamo oltre 1 TB di spazio, 24 GB di RAM, 6 core e la libertà di gestire ogni dettaglio… anche gli errori, perché sì, se rompo qualcosa la colpa è solo mia 😅Il #self-hosting non è per tutti: serve studio, pazienza e voglia di imparare ogni giorno.Chi preferisce la tranquillità, meglio restare su masto.host.Ma chi vuole spingersi oltre e dominare la propria istanza…benvenuto nel lato oscuro dei #sysadmin. ⚡