• 3 Posts
  • 29 Comments
Joined 3 years ago
cake
Cake day: July 8th, 2023

help-circle

  • A lot of this is often down to shitty IT practices by the vendor who has little IT knowledge let alone decent security insight.

    I helped support a new PCL installation (technician control PCs and software upgrade) in this exact scenario many years ago. The vendor came in expecting to treat our system as their own. Direct remote access to several over-specced, physical servers from the outside world, available on our core network, shared account names (and passwords!) across all devices, every account a local admin and their own domain admin account so they can make changes as required… Needless to say our security guy almost broke a rib from laughing so hard!

    What they got was very different. I ended up doing fairly basic troubleshooting to get the shitty software working without it needing admin rights to run - XP era software running on Win7 clients so it was meeting basic folder and reg key write permissions - everything else was locked down as tight as we could. They didn’t even get admin on the servers.

    A few years later I heard they’d reported that our site was their most reliable. Probably due to the fact that they (or the techs) couldn’t fuck with anything without our permission. Apparently their original configuration is normal in the industry… Shudder





  • That’s a good point and something I haven’t really considered but will keep that in mind moving forward - that’s part of my problem is not really being aware of what already exists or the most suitable method (or for different distros).

    That’s what ended up getting me into trouble on Bazzite when I was attempting to use Fedora documentation thinking it’s similar and broke boot trying to mess with fstab. Only recently found out why that didn’t work!











  • So far, so good but I haven’t really thought about it since. It may not suit a purist, hardcore or someone who tweaks their system endlessly but for someone like me, I don’t want to spend me free time fiddling, breaking, then fixing my home gear.

    Until Win10, I never liked to “upgrade” any OS, preferring a clean slate approach and from what I understand, that’s what I’ll get here. A clean new OS with each upgrade that eliminates any gradual degradation due to a build up of clutter and abandoned packages. All while the flat packs and my data/config reside safely in the use partition (anyone, let me know if I’ve got this wrong!)



  • Agree - software is the greatest blocker these days. My recent software restriction was simply a tool I was only using for study.

    I was still skeptical that it would be so easy as I’ve been burnt before by Linux on YouTube or articles that exclaim just how easy it is but I usually run into at least a couple of major issues that become a pain to overcome. Not so this time! Every PC I’ve cut over during this process has been painless.

    Literally the only issue I’ve had to date was my monitor not waking from sleep - a minor fault that was fixed by selecting any colour profile that wasn’t the default.






  • “High performers don’t waste their time arguing with the void on social media. Congrats, you just burned the only free hour you had after work.”

    Bro, you’re literally just like those you despise. Talking of badges, don’t prick yourself with that “Sheriff of Linux” badge you made it out that bottle lid.

    Edit: Sorry, where the hell did that link come from!? I swear it wasn’t there when I last looked!