Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Athanasius

@AthanSpod@social.linux.pizza
mastodon 4.7.3
  • Open on social.linux.pizza

Long-time Linux user (SLS something, using ~0.98 kernel back in 1993, Debian these days), occasional FOSS developer, gamer. Born in the 1970s.

Pronouns: He/Him

Previously on Mastodon: @AthanSpod@techhub.social

187 Followers
213 Following
36 Posts
Joined January 09, 2025
Website:
https://miggy.org/
GitHub:
https://github.com/Athanasius/
Open post
Athanasius @AthanSpod@social.linux.pizza
· 2mo ago
RE: https://hachyderm.io/@whack/116983168997530856 Oh my, I didn't realise the state of develop-for-Wayland was this bad. As a sometimes hobbyist developer I can feel the pain. It really does feel like one of the Linux non-profits could usefully somehow "take ownership" of the protocol level to at least standardise on one way to do things like virtual keyboard input. You'd think at least Gnome and KDE could have saved both their selves some time by co-operating on these things. I'll continue with Xorg-based X11 until there's good reason not to. Yes, I know about recent security issues, lack of maintainer-ship, and the shit show that has been the forks/alternatives... ... but my current X11+fvwm3 setup *works for me*. #wayland #linux #x11 #xorg
hachyderm.io

Jordan Sissel: ""Supporting Wayland isn't a one-off feature. Ever…" - Hachyderm.io

5
1
4
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 1mo ago

The next space telescope is launching in ~40 minutes. It's the Nancy Grace Roman Space Telescope ( https://en.wikipedia.org/wiki/Nancy_Grace_Roman_Space_Telescope ).

There are several places to watch the launch:

NASASpaceflight (third-party channel): https://www.youtube.com/watch?v=-8yDQhVgypw
NASA official stream: on YouTube ( https://www.youtube.com/watch?v=9wq3VHsL_bE ), or on Twitch ( https://www.twitch.tv/nasa )
Everyday Astronaut: https://www.youtube.com/watch?v=J6Ww6kQN4Qw

#NancyGraceRoman #SpaceTelescope #SpaceLaunch #Astronomy

1
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 3mo ago
Replying to
@masek@infosec.exchange If you're contemplating implementing your own search on an archive then you might instead want to check out https://github.com/kensanata/mastodon-archive/ which then doubles as actually having a backup of your mastodon presence.
GitHub

GitHub - kensanata/mastodon-archive: Archive your statuses, favorites and media using the Mastodon API (i.e. login required)

Archive your statuses, favorites and media using the Mastodon API (i.e. login required) - kensanata/mastodon-archive

2
1
1
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@JennyFluff@chitter.xyz You can `echo 1 > /proc/sys/vm/drop_caches` to drop the caches, after you've done something like: $ cd /etc/modprobe.d $ cat > af_alg.conf blacklist af_alg blacklist algif_aead $ which blacklists the modules. Now, if you have legitimate use of af_alg, you can decide to only `blacklist algif_aead`, which worked to block the exploit on my Debian 13/trixie desktop running a locally-compiled 6.18.25 kernel. Dropping the caches clears what the exploit did (changing the contents of the cached version of `/usr/bin/su`, so that cached version is always used, not the on-disk version). #copyfail
5
1
2
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
Replying to on discordian.social
@RogerBW@discordian.social @neil@mastodon.neilzone.co.uk Also .. What the banks thinks it's getting: Their app running on a phone that is 'secure', because its bootlocker is still locked. What the bank may well be getting: Their app running on a phone that is definitely not secure, because despite the locked bootloader, and passing SafetyNet (or whatever Google are calling it now)... it's no longer receiving updates, has multiple vulnerabilities, and has spyware up the wazoo as a result.
3
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@adrienne@social.treehouse.systems @davidgerard@circumstances.run Alternatively, do it at the policy level, which Chrome makes possible on Windows, Linux and macOS: https://github.com/corbindavenport/just-the-browser/tree/main/chrome
github.com
2
1
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@JennyFluff@chitter.xyz I should also note that if you want to be *certain* nothing will cause the module to load, the above only stops auto-loading on-demand. To stop it loading at all you'd use this instead of the blacklist line: install algif_aead /usr/bin/false which causes modprobe/insmod/the-kernel to run /usr/bin/false rather than load the module. This way a manual *or scripted* modprobe/insmod can't just load it anyway.
2
0
1
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to

Hours later and it mostly went smoothly.

  1. postgresql 15 -> 17 cluster upgrade required an astounding amount of extra disk space. Ended up doubling that partition size from 10G to 20G (despite only 6.6 GB used beforehand, 15G wasn't enough).

  2. Ah, so that's the fun and games with dovecot config grammar changes.

  3. Why did rsyslog.service fail to listen to a TCP port (logging from my desktop) at boot ? A restart had it work fine....

  4. No, OpenSSH, I don't need you to ban 'bad' IPs, I use fail2ban for that.

Now for the grind of updating/adding logcheck ignore lines for new and changed bits of logging....

3
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@neil@mastodon.neilzone.co.uk Hear! Hear!
1
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@heavyimage One of the FVWM developers is working on something in that style for Wayland: https://bsd.network/@thomasadam/116358721117077362
bsd.network
1
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
Replying to
@fosserytech Re: Calibre ... I'm in the opposite opinion. I use calibre simply for loading up ebooks so as to strip DRM, and don't use its reader at all. For me the reader is the irrelevancy. (In fact, the way I run calibre, in its own account via `ssh -X calibre@` the reader doesn't work... something to do with systemd/xdg-desktop-portal not liking that.)
1
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
*click* Until Firefox devs screw something up that's absolutely no AI functionality for me, thanks. Oh, it's in its own new section of the settings, "AI Controls". #firefox #mozilla #noai
1
2
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to
Oh, I take it back, that specific keybind *is* NOW working. I swear it wasn't before.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 1mo ago

Well, look at that.

I was looking forwards to playing "Resonance: A Plague Tale Legacy" today, having pre-ordered it pretty much as soon as that was possible. Yes, this is another game in the world as "those two rats games".

But, they were not initially offering a preload of the game on Steam. This lead to a community post there asking about it, a developer confirming they weren't offering it, lots more people piling on, asking "why not?".

I note the initial developer post said something bizarre about "some people will be able to download it faster than they could decrypt a preload". We dis-abused them of this notion.

And now they enabled preloads! Woot! I might even just about have it downloaded by the time it releases in ~1h42m (16:00 UTC).

Ref: https://steamcommunity.com/app/2713000/discussions/0/591813722889028891/?ctp=3#c592939664045890930

#steam #preload #Gaming #ResonanceAPlagueTaleLegacy

steamcommunity.com
0
0
1
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on todon.nl
@benjohn@todon.nl Well, sure looks like the performance of the M1s holds up: https://browser.geekbench.com/macs/macbook-air-late-2020 versus https://browser.geekbench.com/macs/macbook-air-13-inch-2025-10c-cpu-8c-gpu
browser.geekbench.com
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to
Huh, although maybe it "just works". Once I set the server-side MTU to 1508 I can ping with packet size up to 1480 (1481 of complains it's too large). Experimentally setting the server side to 1608, and then binary chopping the ping size, largest supported is 1490 in the ping command.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on nonexistent.ca
@ktims@nonexistent.ca I just had an epiphany. This whole thing actually has nothing to do with TLS. That was a rabbit hole I went down due to my initial web searches hitting upon things like openssl 3.5 introducing the post-quantum protocols. No, this thing is *purely* about IPv6 PMTU failing in this use case. I mistook my "server has a different MTU, because it's talking on ppp0 directly, and the desktop has 4088 MTU due to its LAN NIC" for "server has openssl 3.0, desktop has 3.5". So, there's *not* a case where only the TLS negotiation would trip up, and the later bulk data be fine, as TLS is a red herring in this whole thing, only looked into because I was observing the issue with web browser TLS connections.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on chaos.social

@neverpanic@chaos.social Yes, Debian is using:

ii openssl 3.5.4-1~deb13u2

But I've looked very closely at the two sets of negotiations, and there were only very minor differences. I had tried configuring off the hybrid post-quantum ciphers/etc, but it made no difference.

It's just something about openssl 3.5 negotiation causes Azure to generate larger packets, and only IPv6 had this cause an issue. As else-thread, likely because something in Azure is eating the icmpv6 "message too long" packets before they make it to whatever the TLS is terminating on.

The working negotiation, from my Debian 12/bookworm host, has it re-assembling 3 TCP fragments of size: 1219, 1420 and 1062. With the broken 13/trixie setup my end only ever sees a 2nd fragment of length 1326, the first fragment is never seen.

So, whilst a different openssl version might not help the packet size, this really is about the path back to Azure not getting the "message too long" message and thus it never retries with viable fragment sizes.

0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
Replying to

@Szescstopni There is --03-14 for calendar-date only in ISO 8601.

0
1
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 8mo ago
Replying to
@DJDarren@mendeddrum.org Mostly such things need to change from "give us a head pat please" to "Were there any issues with our service this time?". So, if there weren't, you just rightly ignore it. If there were, they've provided a clear channel to complain. But, of course, that doesn't even need the pre-emptive notification of the possibility.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
RE: https://mastodon.social/@arstechnica/116368745849070518 The lesson to users here is: DON'T BYPASS TLS ERROR DIALOGUES TO CONNECT ANYWAY. If no-one did that this attack wouldn't have succeeded. This article basically only mentions this at the end, and the Krebs On Security article 'hid' that information in an image.
mastodon.social
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on mastodon.neilzone.co.uk

@neil@mastodon.neilzone.co.uk Before I switched to BitWarden for my passwords I was storing them using kickpass.

kickpass gives you an encrypted file per thing/site, and there's no requirement to actually be storing a password in that part of the data. The metadata just opens up in $EDITOR.

I've not looked at it closely, but I assumed it was doing a better job of handling things like "don't leave a plain-text temporary file lying around if you crash" than my previous home-brew script based on GPG.

The one downside is that the file(s) will need to be in ~/.kickpass

0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to
@taketwo@social.tchncs.de I've *no* idea. I'd not even heard of Fluxer before this prompt to look at it. Like I said, I websearched, and didn't find much about it, and couldn't find anything here on Mastodon with a quick search either. I *think* I saw something about "we'll work on federation". I note that the particular instance I'm "using" (very loosely) is having ... issues ... right now. "Community temporarily unavailable". As for Matrix, I've not yet had reason to use it at all myself yet ... but did see discussion of it being riddle with security holes, and the response from the devs to reporting such wasn't great. Mostly it's still looking like "Yeah, Discord sucks, this age-gate thing just the latest... but it's still the best of a bad bunch in terms of functionality, security etc".
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on social.linux.pizza
@Epaphus@mastodon.lo0.uk Nope, the telnet interface doesn't allow setting an MTU above 1500 on eth0. Ah well, and it would only have been an extra 8 octets/0.536% anyway.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on mastodon.sandwich.net
@FoxVK@mastodon.sandwich.net The idea is out allows for e.g. larger NFS packets between my server and desktop, so greater throughput on large file accesses.
0
1
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 19mo ago
Replying to
@synec I make use of this when cleaning my keyboard (which involves removing all the keycaps and later putting them back). Well, that and once focus is in that xterm turn the mouse upside down so it can't wander off to focus something else.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 5mo ago
Replying to
@Techmeme@techhub.social Which feels like tacit admission that they also use things for unlawful purposes.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on discuss.tchncs.de
@bekopharm@discuss.tchncs.de Ahem, "Pawlot" is right there ;) (Not my invention, it was mostly as "co-pawlot" when Elite Dangerous players had a cat hanging out with them.)
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 3mo ago

Anyone happen to know what's going on with kernel.org today?

First my RSS reader thought there were some new releases, but they were old 6.15 series ones.

Then I checked the www.kernel.org - it was originally only showing outdated (no longer listed usually) kernel series, e.g. no 6.18.

Now it's gotten up to showing longterm: 6.18.37 ... again (after showing earlier 6.18 revisions for that), and also shows a mainline: 6.18 ... line.

7.0 and 7.1 have gone MIA.

I'm hoping this is just some backend rebuild that they've chosen/had to run on the live service... and not indicative of some compromise with bad actors trying to generate infected tar balls or the like.

#linux

0
1
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to
@vikki@know.me.uk And also with phone numbers. I had a letter from the DWP last year saying they needed to phone me... on the phone number I'd informed them I was no longer using YEARS before.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
Replying to on plud.re
@tomasekeli@plud.re @beko The term I see for it is JSONL (JSON, Linebreak-delimited). The point is that it updates live with the game events, so it *can't* be an array of lines, as that would require replacing the closing "]" with ", { ... }]" each time. The documentation for the Journal (and associated files) is quite clear: "The Player Journal is written in line-delimited JSON format (see json.org and jsonlines.org), ...". But, yeah, after any restart of code you need to remember where you left off parsing a file, and otherwise it's best to 'tail' the file, not repeatedly open and parse the whole thing.
0
0
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
Replying to on mastodon.lo0.uk

@Epaphus@mastodon.lo0.uk I was literally getting SIOCSIFMTU: Invalid argument for anything below 1500 with ip link set eth0 mtu 1500 in the telnet shell.

0
1
0
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 7mo ago
RE: https://wandering.shop/@adapalmer/116171975075730495 What are the chances we'll manage to not feed this to all the cattle, sheep etc, causing bacteria to mutate to become resistant ?
Open quoted post
Quoting
Ada Palmer
@adapalmer@wandering.shop
First discovered last year, a lasso-shaped peptide called lariocidin kills bacteria in a way that’s never been seen before - and because its germ-killing mechanism is new, something bacteria haven’t had time to adapt to, it’s predictably awesome in the fight against drug-resistant microbes. AZO https://www.azolifesciences.com/news/20250404/Meet-Lariocidin-A-Game-Changing-Antibiotic-That-Outsmarts-Resistance.aspx
Open quoted post
wandering.shop
0
0
1
0
Open post
Athanasius @AthanSpod@social.linux.pizza
· 6mo ago
Replying to on mastodon.world
@paninid@mastodon.world @KimCrayton1@dair-community.social The full press release is: https://press.un.org/en/2026/ga12755.doc.htm
press.un.org
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 23:19:00 UTC