• 0 Posts
  • 480 Comments
Joined 1 year ago
cake
Cake day: August 7th, 2023

help-circle



  • They didn’t make this too be easy to use. They don’t give a shit about that. That isn’t their job in the slightest.

    They reserved a TLD, that’s all.

    You can use any TLD you want on your internal network and DNS and you have always been able to do that. It would be stupid to use an already existing domain and TLD but you absolutely can. This just changes so that it’s not stupid to use .internal






  • Maybe, I’m not sure about that.

    It’s possible that there is a way to for example bypass a company’s WSUS server but I don’t know if there is such a way and I couldn’t find any obvious way when searching.

    Due to the source being hearsay I don’t really feel convinced and if I were you I wouldn’t spread such information further unless you found reliable sources first.

    I’m open to any information about it if anyone can find any reliable information like documentation or blog posts from MS employees.

    Still I highly doubt that is used often at all if it even exists. Only to be used in the absolute direst of times. I would also trust Microsoft much more in such a case that a third party like Crowdstrike.


  • You absolutely can (and should) do staged rollout for windows updates.

    Source: We do that at work. We have 3 different patch groups. 1 “bleeding edge”, 1 delay by a day or two, and another one delayed by a bit more. This so so we can stop an update from rolling out to prod if dev breaks.


  • The problem wasn’t with an update Microsoft pushed out. It was due to an update by crowdstrike which iirc ignored all settings for staged rollout (or there were no settings at all for that)

    It’s not like anyone outside Crowdstrike chooses to have these updates installed. It happened automatically with no way of stopping it.




  • Because that is a different feature.

    And did you notice they call them “mitigation” and not “protection”? 🙂

    Yeah, typo on my part.

    You claim that Cloudflare doesn’t live up to their words. Please cite where in the terms of services it says that the DDOS mitigation is limited on the free plan or sources of free customers being affected by this. Or are you just saying “read the fine print” without having read them yourself and you are just using that as some magic way to win all arguments?

    Anyway, I really don’t understand people’s obsession with DDoS, particularly self-hosting people. The chances of their little website ever being the target of a DDoS are astronomical. Many of them don’t take proper backups, and don’t worry about theft or fire or electric spikes, which are far more likely, but go frantic when they hear about features they’ll never use.

    Yeah, I absolutely agree and I have said that to some in this post. But it’s even more worthless to argue about the free plan. It’s not like some private person is ever gonna be DDOSed so aggressively that Cloudflare would even notice. If an enterprise (like where I work) is in real need of ddos protection they would already be on the enterprise plan or they would be forced to it by Cloudflare.


  • I agree. I have even replaced the screen on my x280 to a IPS screen (because the old one was a crap TN screen) and the storage.

    I wish newer machines were more repairable and I would buy a framework if I could afford it and if they had more ports. Fortunately most machines don’t break that often and very rarely is it in a part that couldn’t be replaced by a skilled technician (excluding some shitty products like Apple computers). Most business tier laptops like Lenovo ThinkPads and Dell Latitudes (5xxx and 7xxxx series at least) are fairly repairable and durable.

    Upgradability is also great but doesn’t make a lot of sense to worry about when the machine is a decade old and still crap performance wise even if you gave it a few more GBs of RAM. You can’t really upgrade anything beyond storage and ram in any laptops unfortunately.

    I wouldn’t consider a decade old computer no matter how repairable, durable, or how upgradable it is unless I worked exclusively in a TTY or some shit and I believe most feel the same way.

    You do you, but I still don’t think it’s a good suggestion for someone that just needs a computer. Especially when they want good battery life and compactness. Neither of which computers that old are good at.


  • Maybe the build quality is a bit worse but it’s not bad. My x280 is doing great and I would absolutely not replace it with an older machine (even if that machine had a think light)

    And I much rather have soldered components from 2018 (or something) than non soldered from a decade ago

    But sure, there is nothing wrong with running old machines yourself. I just wouldn’t recommend it to people that ask for a laptop unless they specifically request it.





  • lud@lemm.eetoSelfhosted@lemmy.worldBest Privacy DDOS Blocking?
    link
    fedilink
    English
    arrow-up
    7
    ·
    edit-2
    10 days ago

    I wouldn’t worry about DDOS attacks at all.

    People simply don’t care about whatever small website you plan on hosting. Unless it’s something extremely controversial and you gain a lot of exposure suddenly.

    It’s worth worrying about if you ever get big but until then just forget it.

    I.E. do something about it when/if it happens and not before. A ddos is fairly harmless unless you need to stay up for some reason (and you don’t need to stay up).