But absolutely none of the issues you listed are issues with iptables.
- 1 Post
- 822 Comments
point is, firewalld and iptables is for amateur hour and hobbyists.
Which is weird for you to say since practically all of the issues you list are mistakes that amateurs and hobbyists make.
Containers run “on bare metal” just as much as non-containerized applications.
atzanteol@sh.itjust.worksto
Politics@sh.itjust.works•Science journal retracts widely cited study that claimed Roundup is safe--meanwhile, the Republicans aim to shield its manufacturer from lawsuits.English
2·3 days agoBasically what you said. A partisan news source isn’t a great source of science news.
atzanteol@sh.itjust.worksto
Politics@sh.itjust.works•Science journal retracts widely cited study that claimed Roundup is safe--meanwhile, the Republicans aim to shield its manufacturer from lawsuits.English
5·4 days agoHere’s a link to a source that’s less “Mother Jones”.
atzanteol@sh.itjust.worksto
Politics@sh.itjust.works•'All of Them Constitute Murder,' Amnesty Says of Trump Boat BombingsEnglish
3·4 days agowhen someone dies due to the deliberate actions taken by another to kill them, that’s a murder.
“Murder is the unlawful killing of a human being with malice aforethought.”
atzanteol@sh.itjust.worksto
Politics@sh.itjust.works•The Supreme Court will decide whether Trump's birthright citizenship order violates the ConstitutionEnglish
3·4 days ago“Calvinball jurisprudence”
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
01·5 days agoguess what, I know how these work.
Neat. I don’t care.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
11·5 days agoso please tell me “how to do things right”, or shut up if you can’t tell any useful info
WTF? I’m not trying to tell you how to do anything. I’m sick of selfhosted twerps bitching about “how hard it is to self host” when they think everything should be like an app on their phone. You need to learn how networks, dhcp, dns, ssl, certificates, etc. work.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
11·6 days agoThey’re cheap. You can also generate your own certs and use your own ca. But otherwise yes - quit yer bitching and learn how to do things right.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
11·6 days agoYou don’t need to if you’re just using things locally.
But also - domains are cheap.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
11·7 days agoThat’s a lot easier said that done for hobbyists that need a certificate for their home server.
I’d you’re going to self host you need to learn. I have no time for kids who just want “Google but free” and don’t want to spend any time learning what it takes to make that happen.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
101·8 days agoIt’s being deiven by the browsers. Shorter certs mean less time for a compromised certificate to be causing trouble.
https://cabforum.org/working-groups/server/baseline-requirements/requirements/
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Decreasing Certificate Lifetimes to 45 DaysEnglish
1066·8 days agoWill we need to log in every morning and expect to refresh every damn site cert we connect to soon?
Automate your certificate renewals. You should be automating updates for security anyway.
“Bare metal” has traditionally meant without any os either. Your code executes directly on hardware and has direct control over everything. Like a micro controller.
Code in a container executes on the hardware in exactly my the same way as code not running in a container - with the os as an intermediary.
“not running in a container” is not “running on bare metal”. It’s just running outside a container.
atzanteol@sh.itjust.worksto
Not The Onion@lemmy.world•US Coast Guard will no longer classify swastikas, nooses as hate symbolsEnglish
2·19 days agoBoth are used.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Recommendations for an all-SSD home server?English
2·20 days agoenough, a lot, more demanding.
You need to give some sort of guidance here.
atzanteol@sh.itjust.worksto
Selfhosted@lemmy.world•Making setups resilient to outagesEnglish
71·20 days agoHow much money are you willing to spend? Resiliency is expensive.

This is… Pretty stupid. There are things to be careful about but it’s pretty straight forward to use iptables.