@thenewoil
I can really relate to everything you mention in this post. It's like reading my own story. I had an especially similar moment recently when asked by my work to give feedback about our home working, in which I proposed all home workers start using the company #VPN. I don't expect much will come of it but I also trust our IT's decision.
New #Blog Post: Interacting With Non-#Privacy People
https://write.as/thenewoil/interacting-with-non-privacy-people
#FollowFriday / #FF recap of this week's recommended follows:
π @PINE64 - Makers of low-price FOSS laptops, smartphones, tablets and more
π @protonmail - Ad-free independent encrypted email provider
π @fsf - PeerTube channel for the Free Software Foundation @fsf
π @Tubelab - Android app for PeerTube, from the makers of @fedilab
π @kosa_photo - Japanese landscape and cityscape photographer
π @davidrevoy - Illustrator, FOSS supporter and creator of the Pepper & Carrot libre webcomic
I've finally figured out the #CLI #ykman tool for managing my #Yubikey credentials. It works nicely and I've also managed to set up a challenge-response key for use with #KeePassXC.
#2FA #MFA #security #passwords #keepass #Linux #Debian #commandline #terminal
Someone please explain how I can manage my OTPs with the Yubikey Authenticator 'ykman' #CLI tool (now that there is a bug in the #GUI preventing normal launch. The CLI is confusing me. It says (correctly) I have slot 1 programmed on my key (multiple 2FA creds for various sites), but I can't see any way of listing or using them.
Hello Mastodon! We are looking for a consultant to write some guides on how to protect yourself from online tracking.
So if you have technical experience on the topic, know github and markdown and are capable of writing easy to follow guides for non technical audience... this is for you!
Example of guides: https://privacyinternational.org/guide-step/3952/telegram-account-settings
Terms of references and instructions to make a proposal:
http://privacyinternational.org/sites/default/files/2020-10/Privacy%20International%20-%20Call%20for%20consultant.pdf
Did you know that the Security Education Companion has a lesson plan builder? Organize your chosen lessons to prepare for your next security training opportunity. https://sec.eff.org/lesson-plan
@1ll173r47
Yeah I figure it's doable. May not even get the damned thing (partner wants it), but if we do I want to know I can keep an eye on what it's doing.
@nikolal
Indeed, I had a mind to install Wireshark this morning and become reacquainted with it. I have my network locked down pretty well, and the router has a traffic monitoring feature, but it doesn't seem to work.
If I were to have an in-home display for a #smartmeter installed, which had to be connected to my home #network, but claims to not access the internet, how could I verify this at the #router level?
Currently I have a guest network available which is blocked from having access to the #LAN. I suppose I could connect the display to this network and also block access to the internet...
@dsfgs
#Tor is designed for #anonymity and I trust it completely. I advocate for #FOSS and run a couple of Tor relays. Some further reading:
https://support.torproject.org/https/https-1/
https://tails.boum.org/doc/about/warning/index.en.html#exit_node
The key point here being that the exit node itself doesn't offer a layer of encryption, so the user must be using HTTPS, otherwise packet capturing is a very real threat.
@dsfgs
True, there's overlap. However, Tor/I2P certainly doesn't automatically equal security. I seriously doubt a company sharing sensitive files and communications over Tor is a good idea, not being able to ascertain exit nodes etc. Members of a company don't want/need to be anonymous when communicating with each other, it would be counterintuitive.
@hopeless
@hopeless
Thanks for the feedback π
I'm taking part in a #homeworking survey for my company, and one of my recommendations is for home workers to be on the company #VPN (connected to our NAS) because our home network #security can't be guaranteed, we have to rely on storing data on a proprietary cloud storage site etc.
Please share your suggested arguments for (or against) VPN for all home workers.
I seemed to have gained a lot of followers recently! Thank you and welcome π
For those that are new, you may not know that I've been nominated for the #HackerNoon Noonie Awards. It's the last few days to vote, and if you could it would help me out so much!
https://noonies.tech/award/hacker-noon-contributor-of-the-year-privacy
PS. Sorry for the self promotion, I promise it doesn't happen too often π
@self
I also run an XMPP server with e2e encryption feature, but never managed to get other people interested enough in it.
@splinear@nova.community
Currently I'm running 'nmcli general hostname' to change it, which seems to do the trick. I'm using nmcli for all the networking changes. Just need to figure out if I can have my password in a file rather than have it in the script ('nmcli connect <BSSID> password <password>'). Failing that I suppose I could pass it as a silent argument.
Elearning writer / designer / developer. #Tor relayer. #Nym mixer. #Adapt contributor. #privacy #digitalrights #FOSS #vegan