ssnoer

joined 2 months ago
MODERATOR OF
 

Thanks to @OctoLumia@indie-ver.se for making this amazing banner.

 

We now have a new sitelogo made by @Blisterexe@lemmy.zip! Post: indie-ver.se/post/10275

We want to thank everybody who participated in the logo competition for your time and your art. We chose this logo, because it ended up looking the best as a favicon.

Thank you to all who participated

- ssnoer

[–] ssnoer@indie-ver.se 2 points 1 month ago (1 children)

He didn’t leave entirely, he just migrated to the Fedi-verse. Truuuust

[–] ssnoer@indie-ver.se 2 points 1 month ago (3 children)

If it works on Windows, it works on Linux. (God I love Proton)

[–] ssnoer@indie-ver.se 2 points 1 month ago

I mean, I don't know how much of an issue bots are going to be. There hasn't really been any issues on indie-ver.se, but I will definitely keep this in mind. Thanks!

[–] ssnoer@indie-ver.se 18 points 1 month ago

I think that her dialogue makes me understand the world better and thus self-insert better. It gives some motivation as two why I want to save the kingdom, but still keeping a lot of mystery and uncertainty. So I like it a lot.

[–] ssnoer@indie-ver.se 1 points 1 month ago (1 children)

Also, thanks to @BentiGorlich@infosec.pub for letting me know of the issue in the first place.

10
submitted 1 month ago* (last edited 1 month ago) by ssnoer@indie-ver.se to c/indieverse@indie-ver.se
 

Indie-verse is currently hosted behind a Cloudflare proxy, which has saved the server a lot of traffic and helped protect against AI crawlers.

After some careful consideration I also enabled “Bot Fight Mode”, but only after making sure, I had working custom rules that skipped every security feature for federation related traffic. But it turns out, custom rules can’t skip Bot Fight Mode using a free plan, which I only found out today. This has left me with no choice, but to disable bot fight mode for now, and it will not be re-enabled while we are on the free plan.

Currently I don’t have the money to upgrade us, but it should not pose an issue, as there are other security measures against bots, that should prevent potential issues.

Thought I would let you know.

- ssnoer

PS: we also just got our very first donation. Thank you guys!

[–] ssnoer@indie-ver.se 1 points 1 month ago

I will look into this. Thanks!

[–] ssnoer@indie-ver.se 3 points 1 month ago

Well. You probably want some pictures. For a site icon, for your pfp etc. which necessitates setting up the image server. You can quite easily stop your server from caching external images, as I’ve just done, so only your local images are stored. I don’t know about disallowing user uploaded images entirely. Maybe you can set an upload limit of 0 or smth?

[–] ssnoer@indie-ver.se 2 points 1 month ago (1 children)

I just set up our S3 image storage, which costs us 6.27€ pr. TB. (with Hetzner)

Actually, how do you backup your images? I am bit unsure of what to do here, since the objects aren't really managed by me.

[–] ssnoer@indie-ver.se 2 points 1 month ago (1 children)

I am happy to tell you, I made some changes to the rate limits.

[–] ssnoer@indie-ver.se 2 points 1 month ago (1 children)

Holy well done! Good first attempt at pixel art.

[–] ssnoer@indie-ver.se 2 points 1 month ago (5 children)

I mean, 1.2TB isn't that much in terms of price, but it's still a heck of a lot. I'm gonna look into proxying, and disabling the caching. Thanks!

 

We now storage all images on a Hetzner S3 bucket, instead of on the server. This should help us scale more effectively. (This post is mostly a test to see if it works xD)

[–] ssnoer@indie-ver.se 4 points 1 month ago

Yup, yup and yup. The only CSAM protection I have currently, is Cloudflare warnings, better minimize the amount the potential for such things to be hosted by me.

 

cross-posted from: https://indie-ver.se/post/39594

I am the admin of the newly created instance https://indie-ver.se/, and it's been going great. But as I was looking to migrate all images to a S3 bucket, I noticed, the images take up more space than I had anticipated, a bit over 1 GB. And I know for a fact, that there has not been many images uploaded to this instance directly.

My best guess is, that it's because lemmy by default creates local thumbnails for external posts, via. the setting "image_mode: StoreLinkPreviews". Lemmy does allow me to disable this behavior, i.e. it would not cache the thumbnails on my instance, and instead have browsers request the image from the other instances.

The question is, what impact would that have on my users, and what impact would it have on the fedi-verse in general? I believe it would save me a lot on future storage costs, but I don't know if it's worth it.

- ssnoer

 

I am the admin of the newly created instance https://indie-ver.se/, and it's been going great. But as I was looking to migrate all images to a S3 bucket, I noticed, the images take up more space than I had anticipated, a bit over 1 GB. And I know for a fact, that there has not been many images uploaded to this instance directly.

My best guess is, that it's because lemmy by default creates local thumbnails for external posts, via. the setting "image_mode: StoreLinkPreviews". Lemmy does allow me to disable this behavior, i.e. it would not cache the thumbnails on my instance, and instead have browsers request the image from the other instances.

The question is, what impact would that have on my users, and what impact would it have on the fedi-verse in general? I believe it would save me a lot on future storage costs, but I don't know if it's worth it.

- ssnoer

 

15
submitted 1 month ago* (last edited 1 month ago) by ssnoer@indie-ver.se to c/Silksong@indie-ver.se
 

I was listening to the soundtrack of Silksong, while searching for music to use in my DnD campaign, and I became quite unsure of what emotions and feelings Shellwood is supposed to convey?

What emotions or story is Shellwood trying to tell? (not just in music)

To me, the music is quite mournful, and the area is seems somewhat dead, but what is the point?

 

cross-posted from: https://indie-ver.se/post/20213

Hi again!

I am trying to improve the security for my website, but I am unsure of which paths federation and API traffic hits, and which paths should be exempt from e.g. Javascript challenges? Could somebody give me some insight into this?

 

Hi again!

I am trying to improve the security for my website, but I am unsure of which paths federation and API traffic hits, and which paths should be exempt from e.g. Javascript challenges? Could somebody give me some insight into this?

8
submitted 1 month ago* (last edited 1 month ago) by ssnoer@indie-ver.se to c/indieverse@indie-ver.se
 

I am thinking of trying out new adding more official front ends for Indie-verse. Does anybody have preferences to which front ends to add?

What is a front-end? You might ask. It's an alternative website ot view the exact same fedi-verse content. An example could be mlmym

 

view more: next ›