!Selfhosted I have an #OpenWRT router. Let’s say I install Tailscale on it and want to create an interface that specifically routes to one of my exit nodes. Can I do that?

Everything I’ve seen about Tailscale on OpenWRT just provides direct router access to the tailnet (100.x.x.x), but I specifically want to route certain traffic to an exit node.

Can I do this? Do me proud, Fediverse! Hoping I can get good answers here without resorting to Reddit.

in reply to Sarah Brown

I’ve done something similar, though not with openwrt. There may be a decent way to do this on the firewall, but I ended up using the ACLs available from the Tailscale console.

I removed the default allow all rule. I made a group called admins that can access everything and then added a set of routes that everyone on the tail net could access.

I’ve only recently set this up, but initial testing seems to have this working as hoped.

Dark arts mastery: Created a Linux x86 VM on my M1 Pro MacBook Pro

Within that Linux VM, created a docker container of Ubuntu with some personalised stuff.

On that container, built another one with the OpenWRT builder for RPi 4

Used that docker container to build a new OpenWRT image

Booted it on a spare RPi 4 and restored the backup of my OpenWRT config to it.

Took my actual OpenWRT router down, inserted the flash card I'd just created, and powered it back up.

Everything. Worked.

If you roll your own router, it's useful to know that you can recreate it were it to go tits-up, and I can!

in reply to Sarah Brown

Unknown parent

friendica (DFRN) - Link to source

Sarah Brown

@Becky I'll also note that you can't bridge VMs on 2 different VLANs to the same physical ethernet port on UTM and if you try, neither will work.

I discovered this in the traditional manner.

(UTM on a different VLAN to the one the Mac is using natively is fine, this only applies to VMs)

Which is why my Mac Mini has TWO ethernet ports both connected now.

transphobic language discussion

reshared this

child sex abuse

Every single time this stone is turned over, the Catholic Church is up to the same kiddie fiddling shit. Every time.


Spanish clergy sexually abused more than 200,000 children: Report


reshared this

England doesn’t like EU water cleanliness standards so it’s going to get its own with blackjack, hookers, and mercury.

But mostly mercury. theguardian.com/environment/20…

reshared this

Reading about state of understanding of gluten-related disorders, as you do. As research currently stands, about 1-2% of the population are though to have coeliac disease (the majority never diagnosed), and up to 13% more non coeliac gluten sensitivity.

Both of these, through habitual gluten exposure in childhood, may be causing a whole array of life long inflammatory conditions such as asthma, allergies, chronic fatigue, psychiatric disorders, and others. Basically large numbers of people with chronic health problems who can’t get doctors to take them seriously are quite possibly suffering the effects of chronic gluten poisoning.

It boggles my mind that this bastard grass stuff has intruded so far into our societies that it has become the staple foodstuff for massive swathes of the planet, and yet is basically poisonous to 1 out of every 7 people.

in reply to Sarah Brown

I'm on the phone, so apologies that I can't easily link to things, but wasn't there some thinking that at least some percentage of that figure may not be gluten, but to do with modern industrial processes around wheat, Chorleywood Bread Process (CBP)?

Some people are absolutely gluten intolerant, and gluten sensitive, but at least a percentage that are sensitive may not be sensitive to wheat, but the processing of the wheat, and industrial baking processes.

This one interests me. And since I work in food purchasing, with a bunch of ex-chef and bakers, we've been nattering about it. It's anecdotal, but regular supermarket bread I find irritates me (I'm being polite here), but bread from our local microbakery (Lord that sounds pretentious), is absolutely fine. It never used to, it's something new over the past few years. The bread from the bakery also happens to be delicious, which is a nice benefit.

in reply to kianryan ☑️🐙🏳️‍🌈

@kianryan ☑️🐙🏳️‍🌈 It’s an area where there’s considerable ongoing research, and AIUI about a decade ago the prevailing thought was that it was things like FODMAPs and amylase trypsin inhibitors in wheat causing issues.

But, AIUI, a lot of more recent research is finding direct, extra intestinal, innate immune activation specifically in response to gluten in people without any markers for coeliac disease.

in reply to Sarah Brown

Trump
@tommyyum
Democrats as such can't do anything specifically to stop him. Some specific democrats (like Tish James or Fani Willis) can, & are. & the parts of the judiciary who'd allow it are Republican - we're well down the road to judiciary-capture in the US. At this point our Supreme Court is just John Edwards' sense of propriety away from endorsing one-party rule.

Really interesting article about self driving cars and one woman on the front line of the evidence-based resistance against them driving without direct human control.

Just had to completely reinstall the OS on my Mac laptop because something in the OS got corrupt and it started going nuts.

Never had that before! Thankfully returning it to its previous state (well, one major OS back - it installed Ventura rather than Sonoma for some reason) was not too painful an experience. I guess I got to junk a load of cruft too.

Still, not how I'd planned to spend my evening.

Put my friendica installation on a VLAN. It made accessing it locally ... interesting.

So I can access it from outside. Fine.

But if I try to access it internally, the traffic just gets dropped. There's no firewall rule to handle the forward via external IP address loopback.

So I set up a forward, and of course, that was a stupid thing to do. Every other https service in the world suddenly and unceremoniously disappears.

So I change the forward to only be something looking to loopback via my external IP.

But the external IP is dynamic. The router will update the dyndns record, but it will not update its own firewall rule. I'd have to do it manually every time it changed. Very far from ideal.

But inspiration struck! I have my own DNS server! (pihole).

As of now, thegoatery.dyndns.org from within my internal network resolves to the IP address of the friendica box on the VLAN.

Done.

I want to preface this by saying that I am not, in any way, a furry. I wish those who are all the best with it, but that’s not the angle I’m approaching this from.

That being said, I’m kinda mad that evolution took our tails.

Equal in length to my height, about 2-3cm in diameter, and scaly like a pangolin. Prehensile and strong enough to take my body weight.

It would have been epic.

Right, not starting anything, but normal countries have a general election should their parliament serially fail to produce a functioning (at least in name) legislature.

So without naming names, if any large federal republics with a 9 digit population in the western hemisphere need an intervention, blink twice.

“Don’t worry, Trump won’t be nominee”
“Don’t worry. Trump won’t be president”
“Don’t worry, the UK won’t leave the EU”
“Don’t worry about LePen”
“Don’t worry about AfD”
“Don’t worry, we can carry on with business as usual”

SOMEBODY FUCKING DO SOMETHING! START FUCKING WORRYING.

Wifi 6 (892.12ax) is interesting because it seems, the more of its useful features you turn on, the more 2.4GHz-only WiFi 4 (892.11n) cheap shit just breaks.

So I’m maintaining a separate 802.11n SSID on the same gear just for said cheap shit.

Cheap shit that breaks on WiFi 6 seems to include:

Princess dehumidifier (cloud only, but it seems they all are, so they’ll likely eventually brick it)

Daikin AC units (local control without cloud, thank fuck)

Legrand Netatmo zigbee hub (again local control, thankfully, but dear god its WiFi support is flakey and power cycling if involves using the fuse box)

iRobot Roomba i3

Seriously, this shit all has the cheapest nastiest buggy cheap junk WiFi implementation and they should be ashamed.

Also, I wish the EU would get round to banning cloud-only appliances. You just know they’re gonna turn the cloud services off years before the useful end of the device, basically bricking it. Local API or GTFO.

reshared this

reshared this

Once upon a time the Internet would tell you what to press to make your dishwasher drain.

Now it wants to show you a video, about replacing your drain hose, by visiting their affiliate link, to remove the blockage.

It’s not blocked. I just want to know how to make it drain.

I gave up and just ran it on the shortest cycle on the basis that it will drain at the end.

reshared this

Unknown parent

sharkey - Link to source

Rachel

I want dials levers and switches that go thunk, with raised or deeply etched legends that aren't just screen printed, and more metal everywhere.

I don't need 5 different very slightly different dishwasher settings, we all know I'm just gonna hit the "regular" one every time any

Amidst the performative cries of “Israel has the right to defend itself”, it seems to be heresy to acknowledge the humanity of the few million people who get to live, in perpetuity, as Israel’s ritual punching bag, and are expected to do nothing in response, nothing in prevention, and accept the blame for others doing literally anything.

And even saying this will just result in tedious wankers going, “oh, you support terrorism then?”

The way the Palestinian people are treated is some serious Omelas shit.

in reply to Sarah Brown

@Sarah Brown The main thing I remember from visiting Gaza was how full it was, and how closed in it felt. Border fences on three sides, sea on the fourth (but restricted). Even in the heady days of 1994 just post Oslo it felt like a cage. Sometimes the electricity would go off. You had to queue in the heat to get in or out, divided families shouted news to each other across the barbed wire fence. That was probably the high point of freedom. The thirty years since have raised a generation whose hopes for the future keep getting blown up and locked down at the jailers’ whim.

Yet another lightning connector dies from
Electrolysis. Been cold plugging this one; it’s a lightning to USB C adaptor, and I’m working on the basis that cold plugging will extend the life.

But it still has a life expectancy of only a few months. My phone charges inductively but the iPad needs this fucking cursed connector.

I hate it with a passion. Useless piece of shit that doesn’t do the goddam thing it’s fucking supposed to.

kjaerulv reshared this.

Just had some random pop up on Reddit, necroposting to reply to something I posted in 2022 saying, “you will never be a woman”

And, ok, whatever, but I replied asking if they’re able to explain what it is that doing this is doing for them.

And I hope they reply because I’m actually fascinated.

I get that they’re trying to offend me, but on the one hand, poor target selection because I’m years past that, and on the other, why not something contemporary? I mean, if they’re picking year old posts to reply to, their target might never even see it.

I guess I just don’t understand why they spent their time doing this in this way.