101010.pl is one of the many independent Mastodon servers you can use to participate in the fediverse.
101010.pl czyli najstarszy polski serwer Mastodon. Posiadamy wpisy do 2048 znaków.

Server stats:

477
active users

#openvpn

3 posts3 participants0 posts today
EU OS<p>2/3 Topics <a href="https://eupolicy.social/tags/EU_OS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EU_OS</span></a> needs help with:</p><p>1) What is the best way to backup user data for Linux EU OS users? <a href="https://gitlab.com/eu-os/eu-os.gitlab.io/-/issues/46" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gitlab.com/eu-os/eu-os.gitlab.</span><span class="invisible">io/-/issues/46</span></a> <a href="https://eupolicy.social/tags/borgbackup" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>borgbackup</span></a> <a href="https://eupolicy.social/tags/btrfsbk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>btrfsbk</span></a> <a href="https://eupolicy.social/tags/btrfs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>btrfs</span></a> <a href="https://eupolicy.social/tags/nextcloud" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nextcloud</span></a></p><p>2) How can unattended deployment with <a href="https://eupolicy.social/tags/foreman" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>foreman</span></a> look like during pilot stage (thus without reconfiguring the network/DHCP yet)? <a href="https://gitlab.com/eu-os/eu-os.gitlab.io/-/issues/39" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gitlab.com/eu-os/eu-os.gitlab.</span><span class="invisible">io/-/issues/39</span></a> <a href="https://eupolicy.social/tags/foreman" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>foreman</span></a></p><p>3) How can a modern VPN provide extra security for people in home offices or on business trips? <a href="https://gitlab.com/eu-os/eu-os.gitlab.io/-/issues/47" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gitlab.com/eu-os/eu-os.gitlab.</span><span class="invisible">io/-/issues/47</span></a> <a href="https://eupolicy.social/tags/tailscale" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tailscale</span></a> <a href="https://eupolicy.social/tags/headscale" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>headscale</span></a> <a href="https://eupolicy.social/tags/rosenpass" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rosenpass</span></a> <a href="https://eupolicy.social/tags/wireguard" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>wireguard</span></a> <a href="https://eupolicy.social/tags/openvpn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>openvpn</span></a></p>
AskUbuntu<p>Importing OpenVPN from TP-Link Router #2404 <a href="https://ubuntu.social/tags/openvpn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>openvpn</span></a> <a href="https://ubuntu.social/tags/tplink" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tplink</span></a></p><p><a href="https://askubuntu.com/q/1554296/612" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">askubuntu.com/q/1554296/612</span><span class="invisible"></span></a></p>

Was macht man, wenn es zu heiß ist für körperliche Aktivitäten? Man programmiert herum wie ein Noob vor 25 Jahren. 🤣 Ich hatte letztens erfolgreich #VPN -Zugänge auf den #WLAN Accesspoint gemappt. War nervig genug. Nun habe ich heute die Configs der wichtigsten Zugänge von #PureVPN gezogen und auf der VM gespeichert. Wie bekommt man sowas übers Web geschaltet, da Rootzugriff vonnöten ist? Eine statische Webseite gebaut, welche ein Script per cgi-bin aufruft. Dieses kopiert die gewünschte Config an eine Stelle. Per #Incron bekommt root davon Wind, packt die Config in den #OpenVPN Ordner und restartet den OpenVPN Client. Alles nacktes HTML und bash. Sieht aus wie aus den 90ern aber läuft für mich. Andere hätten da vermutlich wieder einige Container verbraten und am Netzwerk gescheitert. 🤣

Warum noch mal war unsere kritische Infrastruktur im Netz, wie #letsencrypt oder #OpenVPN, von der US-Regierung abhängig?

Irgendwann braucht man nach #Heartbleed und #GnuPG-Krise auch nicht mehr Snowden zitieren, wenn die einzige Konsequenz, die man da nicht gezogen hat, die ist, dass Open Source-Entwicklung auch Geld kostet.

Und dass man das am besten auch nicht allein einer alle vier Jahre wechselnden Regierung überlässt.

Continued thread

Am not convinced about such a setup with an orchestration server. The OpenVPN setup seems more straight forward to me (for my scenario).

I would need to replace the ASUS routers with other hardware (mini-pc or something) with Linux/OpenVPN, but other than that, it all works fine.

The only thing that would be better with Tailscale/Netbird, is that no port-forwarding is needed anymore.

I only have the requirement to connect to the remote networks, the remote networks must not be able to connect to mine.

Would appreciate your input/thoughts/experience. 🙏

2/2

Have finally taken some time to read up on current VPN options in homelabs, as my involved hardware is no longer supported.

I have quite a few connections from my network to remote networks at family/friends for IT support. I connect from my pfSense via OpenVPN to OpenVPN server running on ASUS routers, flashed with Merlin firmware. The models are no longer supported, so am looking for alternatives.

Some of these ASUS routers function as a router plus the OpenVPN server, some routers just serve as an OpenVPN server.

Have checked Tailscale (with Headscale as I do not want to rely on 3rd parties)) and Netbird (apparently possible to selfhost).

In both setups every single device need to be configured separately and not all devices have native clients. Tailscale seems to have an option for "exit nodes" so the network where the device is in, is also reachable.

1/2