soundconjurer

joined 4 months ago
[โ€“] [email protected] 3 points 3 weeks ago* (last edited 3 weeks ago)

@sudoer777 @monovergent , create an encrypted container? It's a little tedious, but fairly distro agnostic.

Edit: Definitely throw together scripts to simplify the process of unlocking and mounting.

https://null-byte.wonderhowto.com/how-to/hide-sensitive-files-encrypted-containers-your-linux-system-0186691/

[โ€“] [email protected] 4 points 1 month ago

@bamboo @mfat , DD, great tool. Utilize it so often, but it is powerful and dangerous. I always double, triple, quadruple check my target disks with multiple programs to avoid destroying my production workstation. Might be best if I just designated a RPi for the job. ๐Ÿ˜…

[โ€“] [email protected] 2 points 1 month ago (1 children)

@Blisterexe @pineapple , after making a snapshot of VM. Sometimes, I do it just for fun and then roll back to the snapshot. Fun times.

[โ€“] [email protected] 2 points 2 months ago

@fl42v , my only disagreement with that is they work so hard patching their system to keep people from using hardware they deem "obsolete". If it weren't for their active effort to generate excessive e-waste and revenue by making sure people and organizations using their products continue to purchase new hardware, then I would be in complete agreement. They definitely do not care beyond making their ever growing quarterly profits.

[โ€“] [email protected] 1 points 2 months ago (2 children)

@fl42v @absurdity_of_it_all , what's funny about the whole TPM2 requirements is that I disable Bitlocker in my VM anyways, which I do since my Linux hosts always have FDE, and thus sort of making the whole requirements a bit ridiculous. TPM2 should be an OEM only requirement.

If TPM2 is missing, warn me about the tedium and risks of memorizing my FDE key, let me make a key if I desire for Bitlocker. Warn me about not encrypting resting data. Then get out my way.

[โ€“] [email protected] 1 points 2 months ago (1 children)

@phoenixz @liop7k , I hated snaps on the desktop, but I find myself loving them for my server. On desktop, yeah the orchestra of protocols and desktop intercommunication suffered a lot when I used snaps. But on a server, seems to allow me to be the laziest administrator I have ever been, only needing to update my ultra minimal Ubuntu OS.

[โ€“] [email protected] 1 points 2 months ago (1 children)

@Charzard4261 @horse_battery_staple , any compute running Crowdstrike, Bitlocker, and no remote access during the prebooted environment would certainly require manual intervention. Also, all those Bitlocker keys having to be manually inserted for computers that required physically being present? Hell in a shell.

[โ€“] [email protected] 2 points 3 months ago

@lancalot @that_leaflet , same. I exclusively use Gnome, but KDE looks great. Tired every major Plasma version and still have issues with a plethora of different things. Maybe someday I will make the switch.