Stefan 'stelb' Le Breton πŸ‡ͺπŸ‡ΊπŸ‡ΊπŸ‡¦πŸ’š

@stelb
53 Followers
172 Following
466 Posts

:antifa:πŸ‡ͺπŸ‡ΊπŸ‡ΊπŸ‡¦πŸ’š

Sei ein Mensch.

#fckafd #fcknzs

Nerd.
try stuff, break stuff, fix stuff.
mostly DBA, but doing a lot more, Linux, docker, kubernetes, virtualization, storage, network.

githubhttps://github.com/stelb/
LinkedInhttps://www.linkedin.com/in/stefanlebreton
Pixelfedhttps://pixelfed.social/stelb
Forgejohttps://forgejo.anyops.de/AnyOps
Heute mal wieder Schafe und Ziegen auf meiner morgendlichen Tour durch die Boberger Niederung :)

Oidc redirect_uri was created with http behind traefik. Fixed a few minutes after reporting ;)
Works now

βœ… Another app with SSO

Zum teilweisen Ausfall von .de-Domains gestern Abend hier die beste Analyse, die ich bisher gefunden habe:

https://blackfort-tec.de/insights/dnssec-denic-servfail-nsec3-fehler-de-zone

tl;dr: Es gibt das Sprichwort, dass letztlich immer Caching oder Zertifikate Schuld sind an Problemen im Netz. Point taken.

DNSSEC-Fehler in der .de-Zone: Warum bahn.de, spiegel.de und blackfort-tec.de per SERVFAIL ausfielen

Analyse eines DNSSEC-Vorfalls in der .de-Zone: SERVFAIL, DNSSEC Bogus, fehlerhafte RRSIG fΓΌr NSEC3-Records und Auswirkungen auf validierende Resolver wie Google DNS, Cloudflare und Quad9.

Blackfort Technology
ok, ESP-02.bin.gz for 0.15.4 was working and trying to go from there to 16 has a more verbose error but "well it failed": "Not enough space". It's time to toss that unit finally and replace it with one based on esp32

I am updating my athom/iotorero WLED controlers from 0.14/15 to 16. I really like the new particle system effects. PS Fire looks a lot better than the old Fire effect.

But ESP naming scheme is quite confusing... so which firmware should be applied? I am failing for the one ESP-02 esp8266 one.. I think I tried all possible firmware files, all of them failed (not bricking the hardware yet 😰)
#wled #esp8266 #esp32 #led

Testing traefik-manager, at first glance it seems quite nice, supports 2fa or even OIDC/SSO
https://github.com/chr0nzz/traefik-manager

#traefik #traefik-manager #selfhosting

Google Chrome silently installs a 4 GB AI model on your device https://www.thatprivacyguy.com/blog/chrome-silent-nano-install/

> No consent dialog. No opt-out UI. Re-installs itself if the user removes it manually.

That is the true definition of malware.

Google Chrome silently installs a 4 GB AI model on your device without consent. At a billion-device scale the climate costs are insane. β€” That Privacy Guy!

Google Chrome is downloading a 4 GB Gemini Nano model onto users' machines without consent, with no opt-in, no opt-out short of enterprise tooling, and an automatic re-download every time the user deletes it. The pattern is identical to the Anthropic Claude Desktop case I wrote about last month, but the scale is between two and three orders of magnitude larger. This article does the legal analysis and, for the first time, the environmental analysis. The numbers are not small.

That Privacy Guy!
Ich habe heute im Büro Cola aus einer Sojasaucenflasche getrunken und hatte viel Spaß.

Ein geleaktes 108-seitiges Dokument zeigt: Bund, LΓ€nder und Kommunen planen massive Einschnitte in der Kinder- und Jugendhilfe – ohne ΓΆffentliche Debatte.

www.surplusmagazin.de/sozialkurzungen-paritatischerwohlfahrtsverband-behinderungen-familien-kinder

Homeassistant letsencrypt expired this morning and I wondered why things were not working...
Well I am using DNS verification and rfc2136. Syntax for tsig algorithm changed in March so renewal silently failed :(
https://github.com/home-assistant/addons/issues/4493
#homeassistant #letsencrypt #everythingisbroken
Let's Encrypt RFC2136 DNS Challenge post v6 requires RFC2136_TSIG_ALGORITHM syntax change Β· Issue #4493 Β· home-assistant/addons

Describe the issue you are experiencing Noticed after upgrade to post v6 broken RFC2136 After digging into this, first had to remove (now unsupported 'sign') line or service wasn't fully starting. ...

GitHub