Skip Navigation
InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)YO
Your Huckleberry @lemmy.world
Posts 14
Comments 115

Upgrade vs Reinstall

I'm a generalist SysAdmin. I use Linux when necessary or convenient. I find that when I need to upgrade a specific solution it's often easier to just spin up an entirely new instance and start from scratch. Is this normal or am I doing it wrong? For instance, this morning I'm looking at a Linux VM whose only task is to run Acme.sh to update an SSL cert. I'm currently upgrading the release. When this is done I'll need to upgrade acme.sh. I expect some kind of failure that will require several hours to troubleshoot, at which point I'll give up and start from scratch. I'm wondering if this is my ignorance of Linux or common practice?

13
Ransomware and Backups
  • The backups are on a separate system with different credentials. One copy of the backups is sent to online storage that is immutable. You set a retention policy and then you can't delete, overwrite, or change the backups.

  • Question regarding WSFC file server role networking

    If I create a VM role, I can assign it's networking to a VLAN, however I can't do the same to a file server role. Does anyone know if it's somehow possible?

    4

    Exec at my company: Look at this email, does it look like a scam?

    The email: Hi this is Scammy McScamface and I'd like to scam you please click the scam link below.

    6
    We should have something like federated communities
  • That's an important and valid concern. What if the community federation could allow mods on your instance to ban users from other instances? You'd not see that user's posts or comments when viewing a community from your instance. The downside is that your mods would have more work.

  • We should have something like federated communities
  • This is a really good idea. Multi-instance communities would not just provide content redundancy, but also some load balancing. Each multi-instance community would become it's own little CDN. Duplicating the data across instances does pose a problem of bloat, but I think the benefits outweigh the risks.

  • We should have something like federated communities
  • That system makes the instance a single-point-of-failure for the whole community, which has been a big problem lately. If communities could easily be multi-instance they would have redundancy. That seems like a good reason to me.

  • *Permanently Deleted*
  • Dopamine is the get-shit-done neurotransmitter. Our brain's dopamine system is broken. Normies complete a task and get a satisfying feeling of accomplishment, that's dopamine. You complete a task and get nothing. When you did those tasks before, and got no dopamine, your brain labeled them as useless. Your brain is literally telling you that doing nothing is better than the tasks you need to do. Better to be lazy and save calories for important tasks. You're not procrastinating, that's something normies do, you won't ever do those things. You're not putting off an unpleasant task, you're conditioned not to do them.

    You need to condition your brain to expect a reward when you complete a task. Figure out what things do give you dopamine, and reward your brain with them.

    Clean the house - play video games for 15 minutes.

    Do laundry - 15 minutes on social media.

    I've had varying results combining activities, like cleaning while listening to my favorite podcasts.

    It also helps me to spend a moment being mindful of the results of the task. "Look how much better this room is now that it's clean. I'm proud of myself for accomplishing this task." It sounds dumb but it works.

  • It’s time to stand up for Megan Rapinoe with gratitude
  • The team is the most successful in international women's soccer, winning four Women's World Cup titles (1991, 1999, 2015, and 2019), four Olympic gold medals (1996, 2004, 2008, and 2012), and nine CONCACAF Gold Cups. It has medaled in every Women's World Cup and Olympic tournament in women's soccer except for the 2016 Olympic tournament and 2023 Women's World Cup, when they were eliminated by Sweden after penalties, on both occasions.

    After mostly being ranked No. 2 from 2003 to 2008 in the FIFA Women's World Rankings,[2] the team was ranked No. 1 continuously from March 2008 to November 2014, the longest consecutive top ranking of any team.[3] Since FIFA rankings were established in 2003, it has been ranked No. 1 for a total of 13 years; the only other team to be ranked No. 1, Germany, has been there for a total of 41⁄2 years. The USWNT has never been ranked lower than second.

    Rapinoe was named to the United States roster for the 2011 FIFA Women's World Cup.[102] During the team's second group stage match against Colombia, she entered the match during the 50th minute and scored almost immediately to put the United States up 2–0.[103] Rapinoe celebrated her goal by running to the corner to the left of Colombia's goal, picking up an on-field microphone being used for the match's television broadcast, tapping it, and singing Bruce Springsteen's "Born in the U.S.A." into it.[104]

    Anybody who doesn't recognize Rapino as an American sport hero doesn't understand sports, America, or heroes.

    https://en.wikipedia.org/wiki/United_States_women's_national_soccer_team https://en.wikipedia.org/wiki/Megan_Rapinoe

  • *Permanently Deleted*
  • Palo Alto would do what you want. PA410 or 420 would probably do for your ships. They're not at all rated for harsh conditions, but they're about as robust as you'll find for basic network gear. If you get a PA for the home office as well, you can use their SDWAN for connecting everything.

    For switching....how many ports do you need on each ship? I'm using Unifi industrial switches in our manufacturing plants. They stand up to the Texas summers in a highly alkaline environment. They're only ten ports though (8 poe).

  • Drop Zones. A hack for not loosing things.

    Designate a place in every room as, "the place I put things." Use positive reinforcement to train yourself to put things down in that space. Every time you use a drop zone, give yourself an attaboy/girl. It needs to be big enough that it can hold a few things, keys wallet, cell phone, but not so large that things can get lost in it. You don't want too many drop zones, but you need to have one always handy. Keep them uncluttered when possible so that they're always available. Dissuade the people in your life from "cleaning up" these spaces. Now, when you lose something, you've got a good chance of finding it by checking all your drop zones.

    16
    Go back to school in debt or do sysadmin work?
  • Firstly, SysAdmin is great for people with ADHD. It's neutral for Autism, no better or worse than other tech fields.

    Secondly, what you're looking for is an entry level helpdesk type job. It'll likely pay ~$20/hr. You don't need any experience at all to land this job. You'll need to do that for 2-3 years and then you'll be ready for jr. SysAdmin. Your associates goes partway, but you'd need some certifications to get a foot in the door. The CompTIA certs are a good place to start. M365 certs are good too. Look at Microsoft 365 Certified: Enterprise Administrator Expert.

    You'll want to know the basics of computing before the interview. Here's a list of things I ask, if you can give me a coherent answer on even a few, you make it past the first interview:

    What are the basic components of a PC? Explain the difference between RAM and storage? What's an SSD? What's RAID? What does DHCP do? What does DNS do? What's a subnet? How does a subnet mask work? What's the difference between routing and switching? How does a MAC address work?

    I have to be honest, I'd be wary of hiring a trans person, only because the people I work for are very conservative. I'd worry that the workplace would be uncomfortable for you and that you'd be happier somewhere else. That said, if you were the best candidate for the job, and actually wanted to work with us dumb rednecks, I'd hire you anyway.

  • But we used it at my last job!

    They hired a new hotshot engineering manager (the kind that makes physical things). He hates the engineering software we run. I don't blame him, it's crap software. He constantly complains about how slow it its. He's right again. Crap Software Vendor says it's my platform that makes their software slow and buggy. I'm willing to make any changes they recommend, but they've got nothing. They're like, "it runs fine in our test env." So hotshot goes rogue and signs contracts to move engineering to a cloud platform that he used at his old job. I wasn't brought in until after the ink dried.

    New vendor sends me a link, login, and password via email. I go to the link. It's fucking remote desktop gateway. Open to the internet. The password isn't a temp, that's my permanent unchangeable password. This is how they handle user access control. No MFA. Nothing between the screaming void and our data but IIS and an AD password.

    So I start pissing in the tent. I tell everyone this is unacceptable security for our IP. Vendor acknowledges that their security is insufficient and lays out their roadmap to fix it, hopefully by the end of year(I'm holding my breath). I ask if we can just run the software ourselves.

    I have a convo with our CEO who usually listens to my advice. He asks if we can just host the new software on our platform (the one that already has MFA and a whole lot of other security measures). I say, "That's exactly what I was thinking." So, CEO email in hand I go back to the group and tell them to make preparations to move the implementation to our platform.

    Hotshot starts bitching and moaning about how he doesn't want another slow app. A data analyst chimes in with her two cents out of fucking nowhere. I'm not even sure why she's on the email chain. I'm about two seconds away from going Joe Pesci on these goombas.

    What the fuck guys? Who cares if the app is slower on our platform (not that it necessarily will be)? What good is a fast app that's insecure? How fast is it gonna be when it's ransomwared to hell? It'll be nice that the app is fast when BianLian is downloading all our designs so they can extort us.

    "Well they're a big company and they haven't gotten hacked yet?" Thanks for that Captain Smith, but I know a fucking iceberg when I see one.

    9
    What Are Some General "Buy It For Life" (Durable) Items You Recommend?
  • I tried to buy a BifL non-stick pan and found that it doesn't exist. Everything marketed as non-stick has some coating that will wear off and become useless. "But what about {brand that says it's not PTFE, PFOA, or PFAS}?" Yep them too. Look up sol-gel non-stick coating if you have ceramic non-stick. If you don't want to have to buy pans over and over again, you have to go stainless, cast iron or carbon steel. Cast iron enamelware is pretty good too, but isn't really non-stick. I'm in the process of finding stainless/cast-iron replacements for all my non-stick pans.

  • Looking for tips on eating
  • Dinner tonight was one of my favorite meals, BFMC. Bread, fruit, meat, cheese. A loaf of fresh bread, a hunk of tasty cheese, a little bit of cured meat like salami, and some fruit. If you want to get fancy you can add some nuts and olives.

  • I'm not Lazy or Apathetic

    When I was a kid they told me, "If you care about something and work hard you'll succeed." I failed, a lot, and so I figured, "I must be lazy and apathetic."

    Eventually I found my ikigai and success. I thought, "now I care and now I'm working hard, I'm a different person, this is why I'm successful now."

    I always knew I had ADHD, but strangely nobody seemed to acknowledge it outright. My parents just laughed when the neighbor called me space-cadet. I was diagnosed with dysgraphia, which was all my mom wanted to talk about.

    Recently I've been reading about ADHD and I came to a realization. I was never lazy or apathetic. I'm not a different person now, I just found something where the bulk of my work provides me the dopamine I need to stay engaged. I've also got some masking strategies, which took me 30 years to develop because I had to do it on my own.

    Nobody looks at a paraplegic and says, "boy are you lazy."

    Please don't let other people define you. Don't mistake your ADHD for a character flaw. Find your ikigai. It won't fix your ADHD, but it will make you a whole lot happier.

    Ikigai: >A motivating force; something or someone that gives a person a sense of purpose or a reason for living. The feeling of accomplishment and fulfillment that follows when people pursue their passions. Activities that generate the feeling of ikigai are not forced on an individual; they are perceived as being spontaneous and undertaken willingly, and thus are personal and depend on a person's inner self.

    4

    Is RD Gateway hosted by Amazon secure enough?

    aws.amazon.com RD Gateway on AWS—Solution

    Learn about the solution architecture and details for deploying Remote Desktop Gateway to the AWS Cloud.

    RD Gateway on AWS—Solution

    My company is about to shift a large workload to a vendor that uses an RD Gateway hosted at Amazon to serve access to the front-end application. It's open to the internet at 443. There's no MFA. How worried should I be?

    8

    On days when I carry a bag

    Wallet, leatherman, flashlight, knife, battery.

    If I'm not carrying a bag, I usually don't bring both knives or the battery.

    7

    What's to prevent someone from hijacking my username?

    Since usernames are only unique to the instance it's created on, what's to stop someone from creating a copycat username in order to impersonate another user?

    25

    Is gstatic.com safe to whitelist on a secure network?

    We're installing a new app on a secure network. The vendor has requested we allow access to gstatic.com. That seems overly broad to me and unsafe. Thoughts?

    6

    Well it happened. I fell. Coming down a hill in a bike lane.

    I thought I could make a 90° left turn, took it too wide and clipped my wheel on the curb. I ate it hard. Face and shoulder hit asphalt. Wrecked a 25 year old Hawaiian shirt. Also wrecked my arms. Pretty sure nothing broke, but my tendons are sore as hell. I can't lift my arms. Thus endeth my downhill ambitions. Cruising only from now on. I'm 45 and I can't take a fall like that.

    1
    bbq @lemmy.world Your Huckleberry @lemmy.world

    4 racks of ribs on my Bronco Pro

    This is my home setup.

    0
    bbq @lemmy.world Your Huckleberry @lemmy.world

    Briskets and Butts on the cooker

    Top left is pork butts. Top middle is a brisket covered in Carnivore Black. Top right is a brisket with salt and pepper. Bottom right was done by another cook, I can't remember his rub.

    1

    Hybrid Azure AD users who have been converted to shared mailbox can't be deleted.

    learn.microsoft.com Remove a former employee - Overview - Microsoft 365 admin

    Block access to Microsoft 365 so a former employee can't sign in, secure organization data, and allow other employees to access their email and OneDrive data.

    When offboarding a user, the option to retain that user's mailbox and give other people access is, convert to a shared mailbox. When you do this it doesn't delete the user account. It still shows up as an active, unlicensed user. This can be sort of troubling as reporting of active user counts still includes those users. I'm not 100% sure that this is different, but many of our users are hybrid with an on-prem AD. When we try to delete the user and convert to a shared mailbox, the deletion fails, but the convert to shared succeeds. If we subsequently move to on-prem account to an un-synchronized OU, the user account and it's associated share mailbox also get deleted. The way I've found to fix this is to restore the AAD user account after we move the on-prem account. It's all a bit of a hassle and I wonder if there's a better way. How do you handle offboarding hybrid accounts?

    1