1,497 karma · joined May 28, 2014
Interests: Cybersecurity, Cycling, Networking, Sports
---
* Disable SSH root login
* Disable password login and use only certificates
* Enable fail2ban
This have been worked for more than ten years and never been hacked.
I never understand the need for port knocking.
After the first world war, they built a big area for blimps, with also a big hangar, but I am not sure if it happens during the Fascism or earlier.
Probably the main regret to WFH is not using my Vespa anymore as I did when I was going everyday in the office.
I also wrote an honeypot that emulate an Ollama instance: beside the attackers, it's funny how many people are looking for free inference. Somebody from Brazil try to use my honeypot to write to chapters of a book about traditional magic rituals. My next step is to extract the data collected by this tool to extract IoC and malicious prompts and share them with the community.
In the same scope I wrote also an Ollama scanner: it fetch from Shodan the open Ollama instances, verify that they are reachable and check if they are real sending a dummy query.
I don't think the Meshstatic approach of "flooding" the network with all the messages can be scalable in the long run, they need to implement some sort of routing protocols (like BATMAN), but they are heavy and complex to implement
If you have more than one receiver, the main issue is time sincronisation between the receivers.
Using the two transmitters will complicate things a lot