dfa0 | 12 years ago | on: The Government is Silencing Twitter and Yahoo, and It Won't Tell Us Why
dfa0's comments
dfa0 | 12 years ago | on: Update on Linksys WRT1900AC support for OpenWRT
dfa0 | 12 years ago | on: Ubuntu 14.04 LTS
I am grateful for this choice.
dfa0 | 12 years ago | on: Ubuntu 14.04 LTS
Use dpkg/synaptic to backup your installed packages and backup your /home...then commit to the time to going fresh install. If you use LTS releases, you'll only be doing it at most every other year.
IMHO, it is worth the time.
dfa0 | 12 years ago | on: How to exploit home routers for anonymity
Your network and your car can/will be used by bad guys to do bad things.
You should care.
dfa0 | 12 years ago | on: Ask HN: What encryption algorithms should we take as compromised?
Ciphers to prefer ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256
A pretty good source/guide:
https://hynek.me/articles/hardening-your-web-servers-ssl-cip...
You'll need apache 2.4+[I think], or nginx. And possibly fresh certs to use DHE/EC.
A quick rundown of a fairly secure setup:
Cipher Priority list:
ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:!ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:!RSA+3DES:!aNULL:!MD5:!DSS:!SHA:AEAD
==========================================================
Generate the cert and private key:
openssl req -x509 -sha256 -nodes -days 3650 -newkey rsa:4096 -keyout serverkey.pem -out servercert.pem
==========================================================
Generate the DH parameters:
openssl dhparam -out dh2048.pem -outform PEM -2 2048
==========================================================
How to List Elliptic Curves:
openssl ecparam -list_curves
===========================================================
Note: Generating DH parameters is gonna take a while. If you are implementing this on a slowish machine like a Raspberry Pi, you might want to use a faster machine to do the DH step, then copy file the key over.
dfa0 | 12 years ago | on: How to exploit home routers for anonymity
I'm still amazed by how many people drive around leaving their cars unlocked.
dfa0 | 12 years ago | on: My Ideas, My Boss’s Property
That way you can exponentially create useless people.
dfa0 | 12 years ago | on: What if we never run out of oil? (2013)
The sun's energy will out last us all, millions of times over. Plants have it figured out. We should ask them.
Plus what happens when we are ready to leave Earth? Surely we'll need a way to feed off of the stars then anyway, so why not start now.
dfa0 | 12 years ago | on: Drop Dropbox
Nerd rage alone is fruitless without tangible follow-thru.
dfa0 | 12 years ago | on: Slashdot is Port Scanning Its Users
dfa0 | 12 years ago | on: Heartbleed
The More You Know...
dfa0 | 12 years ago | on: Heartbleed
To the point, when the nature of a thing is to foo and you remove all obstacles from that event, expect positive feedback...and lots of it.
dfa0 | 12 years ago | on: Heartbleed
dfa0 | 12 years ago | on: Cafe theft suspect nabbed after video goes viral
dfa0 | 12 years ago | on: DynDNS ends free services
aka short-sighted thinking is the final stage of most business before sale to the chop shop.
dfa0 | 12 years ago | on: Spinal cord work 'is a breakthrough'
I am contending that the hacker is the missing part here.
dfa0 | 12 years ago | on: Spinal cord work 'is a breakthrough'
dfa0 | 12 years ago | on: Spinal cord work 'is a breakthrough'
Here's hoping it happens.
dfa0 | 12 years ago | on: Spinal cord work 'is a breakthrough'
It is how a large portion of this country works already.