Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Achim :antifa:

@achim@mastodon.weindl.biz
  • Open on mastodon.weindl.biz

🏙️ Systemadministrator & IT Infrastructure Engineer aus 🪐 🌍 🇺🇳 🇪🇺 🇦🇹 :wien: :ottakring: :neulerchenfeld:

💻 Arbeitsfeld: Linux · Unix · Open Source — proprietärer Mist ist nicht willkommen

🧭 Einordnung: streng links :antifa: antifaschistisch · allergisch gegen rechte Normalisierung und Autoritarismus

😏 Privat: trockener Zynismus vor Sympathie · direkte Sprache · wenig Theater

🌐 Drei Welten:
· #AWiT https://awit.at
· #FEROX https://ferox.cc
· #AWsite https://weindl.biz

⚠️ Willst du mehr wissen?
Besuche meine anderen Online-Präsenzen oder… einfach nur: Trööt! 😉

💬 Chatteria:
Threema: https://threema.id/J26RNTXE
[matrix]: https://matrix.to/#/@achim:weindl.email
SimpleX: https://smp12.simplex.im/a#foKhsUJyiTSKbq58z1KcC9WGCOX2UVDqnsPCZy2lbHw

34 Followers
124 Following
8 Posts
Joined January 11, 2026
Web:
https://weindl.biz
Links:
https://linkstack.weindl.biz/@achim
Peertube:
https://peertube.weindl.biz/@achim
Pixelfed:
https://pixelfed.weindl.biz/@achim
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@dansup@mastodon.social Full agree: the Fediverse needs to become easier and more familiar to use. But that should mean open, self-hostable standards too. I would really like to see #OIDC / #OpenID Connect as a built-in option — like #Mastodon supports, or #PeerTube can gain through plugins — alongside Sign in with Apple, Google, etc. For Pixelfed, an easy .env-based configuration for a generic OIDC provider would be ideal: issuer URL, client ID, client secret, scopes, redirect URI — done. That would let instance admins use #Keycloak, #Authentik, #Zitadel, their university/work SSO, or any other compatible provider. Does #Loops have plans for generic OIDC login? And is this planned for #Pixelfed as well? Making sign-up familiar matters. Making it interoperable and self-hostable matters just as much. #OpenIDConnect #SelfHosting #Fediverse
6
4
2
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@why_not@mastodon.social Nach dem Motto aus dem Auge aus dem Sinn. Das wird uns allen noch so derartig auf den Kopf fallen.
3
0
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@dansup@mastodon.social Thanks — that is good news, especially for Loops. Unless I am missing something, though, Pixelfed's OIDC support is not yet operator-friendly: I could not find a documented, supported .env configuration for issuer URL, client ID, client secret, scopes and redirect URI. So far I have had to modify configuration inside the container, which makes upgrades and reproducible Docker deployments unnecessarily painful. A first-class .env interface — ideally documented and usable through Docker Compose secrets — would make Pixelfed's OIDC support actually practical for self-hosted instances. Is that planned as well? #OpenIDConnect #Pixelfed #SelfHosting
1
1
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@jan@social.eden.one @christin@lsbt.me Leider hoste ich die DNS nicht selber. Deshalb kann ich die Anfragen während des Tests nicht debuggen. Das Tool dürfte aber mit den OVH DNS nicht klar kommen. Immer dieselben Fehler, kein dnssec, nur 1 dns, kein domain lock. Wenn ich diese Tests über andere Tools ausführe sind die Ergebnisse wie sie sein sollen. Viele http/s Tests, wie auch zb mta-sts, werden vom Botschutz gefressen weil wir Anfragen ohne User-Agent blocken. Bei zu aggressiven Scans wandert es über die crowdsec bouncer in die nftables.
1
2
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to

@christin@lsbt.me

Tolles Tool, vor allem die Inhaberverfikation ist toll! Zumindest ein Anbieter der das ernst nimt.

Dennoch einige Mängel. Sowohl von den Scans aber auch tlw. Erklärungen.

Das Tool dürfte massive DNS Auswertungsprobleme haben.

Habe es eben mit mehreren Domains getestet.

  • dnssec wird nicht erkannt
  • korrekte nameserver anzahl wird nicht erkannt, es sagt immer: weniger als 2 Nameserver
  • domain lock wird nicht erkannt, was aber an den neuen Regelungen hängt.

Laut rfc ist das einrichten von einer domain mit nur einem nameserver gar nicht erlaubt.

Infotext bei CAA: "Das verhindert, dass eine kompromittierte oder fehlkonfigurierte andere CA unbemerkt ein gültiges Zertifikat für deine Domain ausstellt."

Nein, tud es nicht. Es verhindert gar nichts. Es kann Monitoren, das war es aber schon.

SSH Analyse liefert 'Fehler' bei non Default ssh port.

Viele http(s) Checks brechen ab. Was in unserem Fall gut ist da derartige Scans vom Botschutz gefressen werden. Somit wird aber das Ergebniss stark verfälscht.

Auch dürfte es Probleme mit ha-proxy haben. Es liefert falsche Infos bzgl Ciphers retour.

DKIM bei non Default Selektoren gibt auch eine Info aus. Ist aber nicht schlimm.

Dafür war der eMail Zustelltest perfekt.

Gefällt mir. Ist Bookmarked

0
4
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@diekehrseite@mastodon.social Tja. Klarer Beschiss. Kann mir nicht vorstellen das dies so in den Garantiebestimmungen steht. Eventuell den Rechtsschutz darauf ansetzen?
0
2
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@diekehrseite@mastodon.social Schon klar,... Zusätzlich halt.
0
0
0
0
Open post
Achim :antifa: @achim@mastodon.weindl.biz
· 1mo ago
Replying to
@dbattistella@mstdn.ca “... now scans your emails ...” I didn't know they had discontinued that—hasn't it been that way since the service started?
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 04:26:47 UTC