Phaselockedloopable- PLL's continued exploration of networking, self-hosting and decoupling from big tech

I see you too are a man of elliptic curves culture

That A+ was difficult ish to figure out. I kept getting stuck on A like wtf

1 Like

@Novasty you know what’s strange?

Last night we were talking about letsencrypt not doing CSR by themselves at SHA256 but you could self create higher. I did at 512 and the sign still ended up at 256 lol.

512 is more efficient on modern CPUs. I know we were both shocked

Weird that it lost my 512

1 Like

This may be worth looking into if you’re curious, I would, but not now.


image

1 Like

Let’s Encypt is big gay. It wont do what I asked, I may purchase a cert.

You use namecheap right? Might as well stop being poor. Was a cool learning process lol!

To be fair beggers cant be choosers.

2 Likes

Im not buying one. Thats expensive for what I am using it for. Ill wait for letsencrypt to stop being gay

1 Like

2 Likes

What?

1 Like

Testing of the yubikeys begins soon ™

3 Likes

Really want to try one of these

2 Likes

hey all… New pi a 2gb version with the grey heatsink. Her purpose will be wireguard to a Linode for a dual NGINX proxy front end to make sure im not using my home IP for hosting! Cheaper than cloudflare!

hostname = nanna.yggdrasil

Wife of baldr

She is the tunnel
He is the DNS pipe

I totally didnt plan that :yay:

6 Likes

Doesn’t Cloudflare have a free plan, or did they get rid of it?

1 Like

it does but I think im fine with this because I can control the certs and stuff. I dont like having to use cloudflare

3 Likes

So the reason PhaseLockedLoop doesn’t like Cloudflare is it doesn’t allow a client to control certs. What are the other drawbacks to using Cloudflare’s services? I was considering using their services; I might have to reconsider using them.

2 Likes

I’m not fully familiar but I like having control of my stuff

That and I think learning what I’m doing is important

You’d have to ask people more familiar

3 Likes

You can get your own certs from letsencrypt if you are using cloudflare DNS for your domain. Acme.sh and certbot both have support for the cloudflare api, so it’s pretty easy to setup DNS verification.

I mean, if you are wanting to use their proxy, then yep, it uses their certs, but if you are just using their DNS then you can run your own.

3 Likes

Its their proxy id be using and yes that uses their certs … I’m setting up my own linode frontend proxy using wiregard

2 Likes

Thanks for the advice; I haven’t gotten to the point where self-hosting makes economic sense yet. In other words, using a hosting service is cheaper than self-hosting for me right now. Also, my internet service provider (Cincinnati Bell won’t let me self-host anything under my current plan, to have that option, I would have to upgrade to a Business plan, and right now, a business plan would cost too much.

2 Likes

Cloudflare is working pretty hard at being a single point of failure for the Internet. :frowning:

4 Likes

They’re great.

I’ve got the USB A variant.

1 Like

I really cant wait but let me sort some budget stuff for it. I head you can integrate cockpit with it with kerberos… not sure yet though

1 Like