(Vector graphics are in the original thread if anybody wants them. Please print and spread the word!)

https://hachyderm.io/@inthehands/115500214272846920

Paul Cantrell (@[email protected])

Here you go, PDF and SVG, print to your heart’s content: https://innig.net/tmp/in-this-secure-house.pdf https://innig.net/tmp/in-this-secure-house.svg

Hachyderm.io
@inthehands this will be up in my yard in Keene, NH. Friggin' love it.
@alisynthesis Yay! May it serve you well (and puzzle a neighbor or two).

@inthehands That declaration of working beliefs about household infotech security could use a complementary set of working principles from orgs providing household devices and services.

"At this organization, we believe customer information is..."

I had cause to think about this because the extended family purchased an shared digital picture frame to which family members could add pictures, hosted by the service or linked from a participant's personal photo hosting account.

After some careful reading of the terms, I created an account and shared a few photos. It looked like the company had thought about it (Information We Collect / How We Use Your Information) but it seemed to be a business model operating with some obvious risks related to privacy and abuse.

@inthehands @jaredwhite

I love connecting everything to my home assistant hub, I find all sorts of stupid but fun automations I can do with them

For some annoying reasons though, every major appliance wants to connect to a server somewhere else instead of just to the hub in my home and I absolutely hate that.

@gbargoud @inthehands Yeah, I should clarify if you have some devices like lightbulbs or whatever which are good citzens on a local network only, that's fine. I have a couple of LIFX bulbs in the house.

@jaredwhite @inthehands

I went real hard on home automation a year or so ago and realized that when it's fully under our household's control, IoT is everything we were promised in 90s visions of the future.

Makes me even more annoyed each time it's not

@gbargoud @inthehands Maybe the good version should be called LANoT 😂

@jaredwhite @inthehands

There needs to be some distinction because when I talk to someone who is all in on Amazon/Google/Apple Home about smart home stuff I very quickly realize we are talking completely different languages

@jaredwhite @gbargoud @inthehands I’ve been using sensor analytics ecosystems #SensAE for a long time
@inthehands @jaredwhite @aburka If your drivetrain has a literal airgap it's gonna be hard to make the wheels go

@stilescrisis oh, this means the car/moto/bike does not have any connection to the internet? I'm having problems parsing this one...

@inthehands @jaredwhite @aburka

Paul Cantrell (@[email protected])

@[email protected] @[email protected] @[email protected] The drivetrain [of a vehicle] should be airgapped [(i.e. physically separated) from the Internet]

Hachyderm.io

@inthehands @jaredwhite passwords should NOT be random. they should be secure.

Humans are the flaw in the system. random passwords aren't usable by humans and will fail more frequently than passwords with "less entropy" but are more usable.

@Amoshias @inthehands @jaredwhite however, you should have different credentials for every service, and no-one can remember which passphrase was used for which of 300 different services. Therefore you should use a password manager, and at that point you might as well use random passwords for everything except the password manager itself.
@DrHyde @inthehands @jaredwhite I replace one out of the four words in my pass phrase to each different website based on an easily remembered algorithm.Getting the plaintext of my password from one site wouldn't let you into any other site, although admittedly if a human being were actively trying to break into my email at that point they could figure it out pretty easily. Nothing is going to protect me from a dedicated hostile actor, but this protects me from any automated drive bys.

@DrHyde @Amoshias @jaredwhite
This is the correct answer.

(And from somebody with the same name as my dad! Yay! Hi!!)

Using a global passphrase template with per-site variations leaves one wide open to a variety of brute-force attacks.

@inthehands @Amoshias @jaredwhite I can confirm that I am not your father. I have a cousin called Paul, and that would be creepy!
@inthehands @jaredwhite
Now I have to look up what a drivetrain airgap is, thanks.
But not sarcastic, I love learning things, especially things in this sort of company.
@inthehands What is a drivetrain in this context?

@rabbit5959 Of a vehicle.

“drivetrain should be airgapped” = car’s engine + steering + brakes shouldn’t be connected to the Internet

@inthehands @jaredwhite thank you for this :) I got it made as a fridge magnet
@cibyr @inthehands @jaredwhite if that somewhere I can order it printed as a vinyl sticker?

@c0dec0dec0de @cibyr @jaredwhite

Vector graphics are in my OP, and you should be able to print from those:

https://hachyderm.io/@inthehands/115500214272846920

Paul Cantrell (@[email protected])

Here you go, PDF and SVG, print to your heart’s content: https://innig.net/tmp/in-this-secure-house.pdf https://innig.net/tmp/in-this-secure-house.svg

Hachyderm.io
@c0dec0dec0de @inthehands @jaredwhite I ordered from stickeryou, and they definitely do vinyl stickers. Unfortunately I don't think I can link you to my order (so you could just re-order with different settings). I did need to do some slight munging (IIRC, converting from actual text to paths) to get the graphics into a format that they could handle.

@cibyr @inthehands @jaredwhite

yes, y,y,y,y
but "the Drivetrain should be airgapped" ?

what am I missing?

@brewsterkahle @cibyr @jaredwhite
The drivetrain [of a vehicle] should be airgapped [(i.e. physically separated) from the Internet]
@inthehands @brewsterkahle @cibyr @jaredwhite basically the scene in The Fate of the Furious where all the cars get hacked and start smashing into our heroes and diving from parking buildings should continue to be impossible.
@chopsstephens @inthehands @brewsterkahle @cibyr @jaredwhite
My car's entertainment unit already gets information via radio and Bluetooth (and WiFi?), and also configures parameters for steering
@brewsterkahle @cibyr @inthehands aka no remote party should be able to take sudden control of your vehicle moving forward.
@jaredwhite @brewsterkahle @cibyr @inthehands Ideally, the whole car should be airgapped. I drive an Android car, and it's not an undividedly good feeling. Add burner number plates and life would be good 😁
@brewsterkahle @cibyr @inthehands @jaredwhite Cars shouldn't be connected to the Internet. Good advice!
@cibyr @inthehands @jaredwhite Someone should sell these on etsy
@inthehands @jaredwhite oh, believe me, I definitely will
@inthehands @jaredwhite the enjoyment has officially begun
@codinghorror @inthehands @jaredwhite Is that a car drive train? As someone without a car, I'm imagining my chain, cog, and internal gear hub as the ultimate air-gapping. 😀
@Andres4NY @codinghorror @inthehands @jaredwhite I think it refers to some company (Mercedes, I believe) locking a higher performance mode behind a paywall
Paul Cantrell (@[email protected])

@[email protected] Of a vehicle. “drivetrain should be airgapped” = car’s engine + steering + brakes shouldn’t be connected to the Internet

Hachyderm.io
@inthehands
@jaredwhite
My dishwasher updated yesterday for some reason! I'm looking forward to see all the new types of supported dishes from the latest patch