• 0 Posts
  • 13 Comments
Joined 3 years ago
cake
Cake day: June 11th, 2023

help-circle











  • Some of the things in my house were set up so long ago, and running so smoothly, i havent looked at them in years (other than auto updates) now i’m afraid i’ve accidentally left some security hole without realizing it

    For example, i set up cerbot 10 years ago and back then there was no DNS challenge, so i had to open my webserver to port 80 to renew… well since everything was running from https/443, i decided to block port 80

    so i edited the systemctl unit for certbot to temporarily open port 80 for the renewal, and close it right after…

    It was only 5 years later i realized i made a mistake and port 80 had been open for 5 years to the open internet

    Probably no harm since its a public server anyway… defense in depth is the key


  • Yes ( relatively…)

    Everyone suggesting forks like librewolf or whatever are missing the most important point… all these forks are downstream… so if you kill firefox, you kill all the downstream forks (unless someone willing to do the heavy lifting and work full time on one of the forks)

    If people are willing to kill firefox over some stupid features the can be opt-out, then you are cutting your nose to spite your face (and hand it over to google/chrome)

    firefox is literally the only thing stopping/slowing google/chrome total control of internet standards