Hiker, software engineer (primarily C++, Java, and Python), Minecraft modder, hunter (of the Hunt Showdown variety), biker, adoptive Akronite, and general doer of assorted things.

  • 1 Post
  • 633 Comments
Joined 11 months ago
cake
Cake day: August 10th, 2023

help-circle
rss

  • Valve’s Artifact Classic card game. I actually found the basic formula to be really fun.

    I think this game died for two reasons:

    A) The game was review bombed for its monetization (IMO a lot of this was the non-target audience trying it and leaving a bad review)

    B) Valve said following the review bombing that they were going to make major changes. This resulted in a lot of Artifact fans (IMO) leaving the game because … why invested and learn a game that’s going to undergo major changes.

    So Valve worked on Artifact Foundry (and never finished it) … before eventually everyone at Valve gave up and released both Artifact Classic and Artifact Foundry for free. The original Artifact Classic is still a great time with a friend and all cards are now totally free so you can build whatever decks you want.

    It’s basically a AAA studio card game, with cross platform support, released in complete, for free … because of some poor decision making. Some things may be unbalanced but if you’re playing with friends anyways … just have a friendly agreement to not use the cards that cause problems in your decks. It also could bounce back into active development if it starts to acquire a player base again (because Valve).


  • You either die a hero or you live long enough to become the villain – DC Comics

    (I hope they do find a way to make this “for the best” – maybe reviving Scroll like technology + private advertising + actually checking to make sure advertisers are legitimate so you can pay to turn ads off on lots of websites and the ads aren’t leading to malware – but it’s very concerning in general)


  • Yup… It looked like a really bad attempt at photo realism in 2024. At this point you either need to use cartoon-like graphics or some sort or actually pull off the photo realism.

    It was pretty obvious that game was never going to reach either of those marks.

    I was definitely excited for the prospect of a Sim’s competitor, but this wasn’t going to be it… I think they did the right thing pulling the plug.






  • I strongly disagree, email is a train wreck for secure communication.

    Proton has done a pretty good job of making an implementation that’s actually secure but PGP email has fundamental flaws like the subject line and recipient being clear text on the message, user error/key management complexity, and it’s also just a high-friction means of communication vs “texting” or “IRC”-like approaches.



  • Dark ArctoAsklemmy@lemmy.mlBest way to backup files
    link
    fedilink
    English
    2
    edit-2
    25 days ago

    Kopia uses content addressable storage. So basically when it copies things, it only copies what data is new. Files that haven’t changed will not be overwritten.

    You kind of need to run the verification command on both the source and the “backup copy” for maximum paranoia. If you’re running it on a local copy, that should be a relatively fast process as you don’t need to download stuff.

    You’d basically connect on the command line to the copy you just updated via sync-to and then ask kopia to verify 100% of the file integrity … it should then run through everything and make sure it matches what’s supposed to be there. I’m not sure how you fix it if it detects something wrong, I’ve yet to run into that … I’m sure there’s a way 🙂

    You could also use two backup drives and sync to both, then if you get an error restoring a particular file from one, you could in theory restore it from the other. A ZFS cluster with redundant copies and/or a RAID-1, RAID-5 or RAID-6 style setup could also help … but most people aren’t going to run an entire NAS just to turn it on periodically and backup their data “offline”. Most people are going to be better served (IMO) by using cloud storage like B2 (where bitflips aren’t really a concern) or a NAS (where bitflips similarly are a minimal concern, ideally in another location) with a periodically updated offline copy (on say an external hard drive) should be enough to protect most people’s data well.

    Also going to like to what I’m talking about:





  • Yes, WireGuard was designed to fix a lot of these issues. It does change the equation quite a bit. I agree with you on that (I kind of hinted at it but didn’t spell that out I suppose).

    That said, WireGuard AFAIK still only works well with static IPs/becomes a PITA once dynamic IPs are in play. I think some of that is mitigated if the device being connected to has a static IP (even if the device being connected from doesn’t). However, that doesn’t cover a lot of self hosting use cases.

    Tailscale/ZeroTier/Nebula etc do transfer some control (Nebula can actually be used with fully internal control and ZeroTier can also be used that way as well though you’re going to have to put more work in with ZeroTier … I don’t know about TailScale’s offering here).

    Though doing things yourself also (in most cases) means transferring some level of control to a cloud/traditional server hosting provider anyways (e.g, AWS, DigitalOcean, NFO, etc).

    Using something like ZeroTier can cutout a cloud provider/VPS entirely in favor of a professionally managed SAS for a lot of folks.

    A lot of this just depends on who you trust – yourself or the team running the service(s) you’re relying on – more and how much time you have to practically devote to maintenance. There’s not a “one size fits all answer” but … I think most people are better off doing SAS to form an internal mesh network and running whatever services they’re interested in running inside of that network. It’s a nice tradeoff.

    You can still setup device firewalls, SSH key-only authorization, fail2ban, and things of that ilk as a precaution in case their networks do get compromised. These are all things you should do if you’re self hosting … but hobbyist/novices will probably stumble through them/get it wrong, which IMO is more okay in the SAS case because you’ve got a professional security team keeping an eye on things.


  • The company Tailscale is a giant target and has a much higher risk in getting compromised than my VPN or even accessible services.

    One must be careful about this mindset. A bunch of smart lightbulbs that are individually operated aren’t a particularly appealing target either. However, in aggregate… If someone can write a script that abuses security flaws in them or their default configuration … even though you’re not part of a big centralized target, you are part of a class that can be targeted automatically at scale.

    Self hosting only yields better security when you are willing to take steps to adequately secure your self hosted services and implement a disaster recovery strategy.


  • The thing about something like TailScale or ZeroTier or Nebula is that it’s dynamic. These all behave similar to a multiplayer game … a use case every residential firewall should “just get.”

    The ports that are “opened” can change regularly, they’re not some standard port that can just be checked to see if it’s open (typically).

    Compare that to the average novice opening port 51822 for wireguard or 22 for SSH and you start to see the difference. With those ports, you’ve got a pretty good idea what’s on the other side and it might even be willing to talk to you and give you error messages or TCP ACK packets to confirm it’s there (e.g. SSH).

    This advice is as you can probably imagine more relevant to things like OpenVPN that are notoriously hard to correctly configure or application protocols like SSH or HTTP.

    With these mesh VPNs you also don’t have to worry about your home dynamic IP changing and breaking your connection at inopportune times… And that’s a huge benefit (IMO). It’s also very easy to tie in new devices to the network.

    A lot of it is about outsourcing labor to programs that know how to set up a VPN and make management of it easy. That ties into security because … a LOT of security issues boil down to misconfiguration.




  • I was on a hiking trail … I could see at least 50 meters/yards back.

    I stopped and took a couple pictures of some deer super close to the trail. Looked back, then kept walking… Nobody there.

    A matter of moments later, I hear footsteps behind me. I had headphones on but I wasn’t playing my music very loud. I take a quick glance back, the guy is wearing a grey T-shirt, a blue ball cap, blue jeans, and white sneakers. Literally the most generic outfit you can possibly have and he’s looking at the ground so I can’t see his face.

    I decided to call my friend who’s always home on my phone. He picks up and I just start some BS conversation. Probably 15 seconds later, the dude vanished just as quickly as he’d come.

    I don’t know if he was just a really fast walker and my situational awareness was way off that day, but it did freak me out.