Avatar
deleted
9063ef6b926f3f4d0d36b0d87198c81c3e01bfc311e260ec519b7feafd1e9a09

Full agree 🦾

If not possible, place a dedicated firewall (OpenWrt or OPNsense) between your network and the ISP router.

I tried both OPNsense and OpenWrt.

The most cost-effective and simplest option for my use case turned out to be a Banana Pi One running OpenWrt — roughly USD 80.

It does exactly what it needs to do:

act as a clear, predictable control point between the internet and my network.

addons:

- dns over tls (f.e. Unbound) / dns over https (simpler with dns mask forwarder, quad9)

- wlan timer

client side:

- https only

- vpn on device needed

Replying to Avatar corndalorian

Oh yes… 🄱

GN 😓

What a beautiful day in the Alps šŸ‡ØšŸ‡­ Recharge my batteries…

My current status: I'm currently using Endeavour OS (arch).

I'm quite satisfied. I really like that it's community-driven.

#endeavouros #arch

I’ve heard of it, it looks interesting. I should take a closer look at its technical side.

There are only deb and rpm packages from contributor. pacam and flapak for f.e. Protonmail Client are missing.

Do you build missing software it from source to be sure there is no hidden malware?

On serverside debian is my first choice too šŸ‘Œ

Manjaro sure, has a little bit less aggressive rolling release concept.

Run it on a pinephone years ago, but did never run it on desktop šŸ˜…

I love the arch distros because it is community driven , no hidden company behind.

Do you use hardenings or container tools for safety of the system? (Apparmor/firejail/other) i have a big respect of the community packages yay. But seems the only way to get most tools (ok…maybe flatpak is an alternative or to build the package yourself)

What linux distro do you use and why do you love/choose it?

#asknostr #linux

Replying to Avatar deleted

Debian - Fedora Silverblue - EndeavourOS

On my Laptop I wanted to validate my way and installed different Linux philosophies. Tried office, documentation tools and AI Tools like ollama and goose.

Debian felt solid and secure. A hardened setup with full-disk encryption worked well.

For servers Debian is fantastic – stable, trustworthy, predictable. Use and used it in different ways for the home servers.

But on my laptop I wanted more modern packages and rolling updates. AppArmor and Firejail I only touched briefly, still need to learn them properly.

Silverblue impressed me with its immutable concept. Very clean separation of base system and apps. Security feels strong with a professional/commercial team behind it. Fedora is still community-driven at its core, but the long-term influence of IBM/Red Hat inevitably shapes priorities and creates a certain corporate gravity?

For a stable workstation it is excellent. But I noticed limitations when tools need deep hardware access, like AI models.

Now I am testing EndeavourOS. Pacman and Flatpak work great, I avoid AUR for safety. Installed with full-disk encryption and Gnome. Hardening is not complete yet, I am considering to dive deeper into AppArmor or Firejail. As an alternative, Toolbox could be a good way for safe experimentation – something I liked from Silverblue and that can also fit well into my Endeavour workflow.

It feels alive and authentic, because it is completely community driven. Rolling release gives me flexibility and the newest tools. For me as a tech enthusiast this fits best on my laptop.

What are your experiences and your thoughts? What hardenings do you recommend?

#Linux #FOSS #Privacy #Debian #Silverblue #EndeavourOS

Next distro was Arch… Endeavour was nice, but why choose it if I can run the base system directly?

Rolling releases, a big non-profit community, and independent background structures.

Pacman and yay give access to a huge tool repo — though I have some security concerns about using yay packages…

Sadly, Debian and Fedora packages are often prioritized, so you end up relying on Flatpak, yay, or building the package yourself.

All of the distros were great and habe advantage and disadvantages — I’m still not sure which one I’ll choose. But it’s great to have a choice!

Ah… for security enthusiasts: try qubeos , it is great šŸ‘€

I am not sure you could/should classify it as freedom tech. But AI is a technology that can help in Knowhow and efficiency. Most of the people do not know how to self host or do not have the money to buy the mandatory gpu. Small modells are great but.. there are usecases you need the big ones.

Proton has a new cloud AI, maybe a small topic

I believe that in the Freedom Tech space, Linux is one of the most important things. Below is a series of points about it:

what it is,

why Linux, the most well‑known distributions and their strengths and applications,

what to keep in mind (Linux isn’t automatically more secure, and privacy can be compromised by wrong settings or packages).

There’s much more that could be covered.

Should I really dare to switch from a self‑managed Lightning solution to a self‑hosted one? āš”ļø

Do you have good guides on how to set up LND correctly on a Start9 node, run channel management (e.g., automated eviction), and create a reliable backup in case the hardware fails?

#asknostr #lightning #lnd #start9

GM plebs 🦾

Strength session before sunrise.

Iron moved, mind cleared.

No distractions. Just breath, sweat, and presence.

#GM #Nostr #StrongBodyClearMind #ProofOfWork

nostr:npub1dergggklka99wwrs92yz8wdjs952h2ux2ha2ed598ngwu9w7a6fsh9xzpc welche hardware und software komponenten verwendet ihr im freedom tech bereich zum vibe coden?

Bisher bei youtube kommerz videos ist mir immer aufgefallen, dass auf nicht laptop taugliche grosse Modelle zurückgegriffen wird…

Obtainium: No need for Third Party Appstore… Install Apps direct from sources like github.

https://github.com/ImranR98/Obtainium

Mullvad šŸ‘ŠšŸ˜