• 0 Posts
  • 25 Comments
Joined 1 year ago
cake
Cake day: August 8th, 2023

help-circle





  • I am happy to admit I was wrong, I really thought Biden was the best shot this late in the race. I grossly underestimated how strong and positive the response would be for Harris, given her performance during her previous presidential run. It feels fantastic to be wrong.

    With that said, I think it’s a bad faith argument to lump all concern together as concern trolling. If enthusiasm had been weak, the shoe could have just as easily been on the other foot, with countless armchair politicians lamenting those ‘fascist agitators’ who convinced Biden to drop out, thereby handing Donnie Dipshit the presidency.

    Hindsight is 20/20, I’m just glad we’re still in this.








  • A lot of negativity around Ubiquity in here, which is surprising to me, honestly. I had their USG for years and loved it, recently swapped it out for the Dream Machine and love it. Really don’t understand the complaints about linking it to the cloud. I just didn’t bother, everything works fine. Additionally, I managed to get a Debian container running on it and installed ntopng, it’s been awesome for getting realtime visibility into my network traffic.

    E. I should add I have 6 of their switches and 3 access points, one of which is at least 7 years old and still receiving updates.








  • You aren’t wrong, per se, I think you just don’t fully grasp the attack vector. This is related to DHCP option 121, which allows routes to be fed to the client when issuing the ip address required for VPN connectivity. Using this option, they can send you a preferred default route as part of the DHCP response that causes the client to route traffic out of the tunnel without them knowing.

    E. It would likely only be select traffic routing out of the tunnel. I could, for example, send you routes so that all traffic destined for Chase Bank ip addresses comes back to me instead of traversing the tunnel. Much harder to detect.