𝕽𝖚𝖆𝖎𝖉𝖍𝖗𝖎𝖌𝖍

       🅸 🅰🅼 🆃🅷🅴 🅻🅰🆆. 
 𝕽𝖚𝖆𝖎𝖉𝖍𝖗𝖎𝖌𝖍 𝖋𝖊𝖆𝖙𝖍𝖊𝖗𝖘𝖙𝖔𝖓𝖊𝖍𝖆𝖚𝖌𝖍 
  • 10 Posts
  • 1.49K Comments
Joined 2 years ago
cake
Cake day: August 26th, 2022

help-circle
  • Argh! I’ve posted a similar question; basically, I want a private alternative to Facebook, with wall-like functionality. The second minimum requirement is that there be an iOS app that makes posting easy – including initiating a picture or video capture. So:

    • #1: private, b/c it’s family sharing toddler pictures
    • Also #1: super user friendly, because (100% - 1 person) involved are non-technical
    • Also #1: has to have a better user tool than an SPA. No web interface can ever be anywhere as good as a native app can be, and I will die on that hill.
    • #2: emoji reactions, and threaded comments

    I’m not interested in installing and evaluating a dozen different servers, so like you I’ve been hoping that people with similar goals would narrow down the field a bit. There’s no way I’d convince enough of the family to go along with evaluating all of the options anyway, and IME what works fine for me can often fall apart when other people come onboard.

    I’d convinced myself that Friendica – venerable, proven, reasonably popular – would fit the bill, especially because the design doesn’t assume public-by-default, like Mastodon or Lemmy, and the potential damage of exposed content, either through my misconfiguring the server, or some upgrade assuming users want everything public by default, is high. I’d prefer a project where the developers assume private-by-default, and invite-first. Lemmy isn’t really right, because we’re following people, not communities; Mastodon has a better model, following users, but then its conversation threading is kind of shit for this purpose, and its reaction feature set is anemic. Circles was perfect, and beloved by the key parent involved, until it first made half of her posts invisible to her (and only to her and her husband), and then locked her out. This doesn’t surprise me much, as Circles is based on Matrix, which frankly has the worst cryptography management I’ve even encountered. But if you’re saying Friendica is that painful to post media on, then it won’t work.

    I’m leery of Humhub because of the quasi-commercial nature, and its youth. I’ve had too many experiences with initially semi-commercial platforms shifting, either suddenly or slowly, to increasingly commercial positions – moving features from the “free” to the “paid” column. Vendor lock-in is a real issue with a dozen users.

    So if Friendica is out, maybe Pixelfed? It seemed to me to be mostly indistinguishable from Mastodon, but if they have better comment threading, reactions, and I need to re-evaluate the AP clients to see if any would be user-friendly enough for the parents. I’ve used mostly Fedilab, and I’m not sure it’s ideal. For one thing, it doesn’t have support more than basic reactions: you can boost or favorite, but I am – and I think you are probably – looking for something with more variety, like emoji responses, right?

    I’m watching the other reactions here, and my post on this topic is here. I may post a summary – there are comparison charts, but they all tend to focus on feature set and fall short on the overall use case. On my thread,

    • Misskey was recommended as Facebook-like, and in particular, some of its forks have features the core project is missing. I always got the impression Misskey was a Mastodon-analog, which would make it not a good fit, so I’ve skipped over it. With Friendica out, I’m going to put Misskey back on the “possible” list.
    • Diaspora has also been recommended and is near the top of my list.
    • Smithereen was recommended, but the sparsity of the documentation – not even a list of features – put it down low on my list.
    • Hubzilla has a lot of documentation; it focuses a lot on content management – assets, calendars, document sharing, etc. – which will be fine if “easily post content to a feed” and “follow a user and view a stream of their posts” is a first-class interaction model.
    • Pixelfed is still an option. I just need to confirm/refute my “Mastodon, with pictures” perception. If my perception has been skewed by the fact that I’m interacting with Pixelfed through a (mainly) Mastodon app, then maybe it’ll work. However, there isn’t AFAICT a Pixelfed app, so if the only way to get to a more wall-like view is through a web interface, it’s not going to work.

    @[email protected] is also looking for this feature set / use case. I kind of feel as if it’s more useful to think about this as a use case, because almost all of these projects can claim some or all of the requested features, and yet not satisfy what we’re looking for in terms of user experience. This would be a great opportunity for another tool: a wiki with a list of applications & features, but with a discussion section and focused on winnowing projects by consensus about suitability. Again, lots of software that have the necessary functionality and which could be wrangled to do this, but still fail to be a good tool for the objective.

    Edit

    Probably not the best place to do this, because I’m the only one who can edit this, but:

    Project Suitability: Reason Note
    Misskey (core) No: privacy No authorized fetch
    Catodon (Misskey fork) Maybe: privacy Public-first. Can users declare invite-only viewing of content, by default?
    diaspora* Maybe: model Stream-based, not wall-based. Users see all posts available to them, not all posts made by a followed user.
    Hubzilla Probably: privacy Channel based (walls could be simulated with channels), but visibility is declared at post level, increasing risk of accidentally exposing content.
    Pixelfed Maybe: features Albums could simulate walls; threaded comments; limited reactions (“likes”, but no emojis). Mobile apps are beta and limited access.

    I’ll go find a collaborative, wiki-like document thing with discussions that isn’t G**gle.

    Edit 2

    The table is now here, as a CryptPad document. In an exercise of trust, it’s open to edits. If vandals wreak too much damage, I’ll restrict access, but that’ll require creating accounts and requesting access, and all that shiz.



  • having a crew full of resentful balls of anxiety is not worth it to them.

    I completely believe you. Still, at the time I was making the choice, I didn’t know this; I knew for sure that while I was in, my self-determination would be strictly limited, but I didn’t know details, and there was no. fucking. way. that I was going to risk being stationed on a sub.

    a vague sense of exclusivity

    I have a recollection about this being a thing: that there’s a certain caché among Navy folks about being sub crew. I once knew a retired nuclear sub captain, and while he was a day drinker, he was pretty proud of his service. He also fell asleep in meetings, but I guess he did his job well enough for this all to be overlooked. I visited his office once (in our office in another city), and one of his bottom desk drawers was full of just bottles of whiskey. I’ve never encountered anything like that, before or since. But I digress.




  • That’s not an easy question to answer, since it depends on your use case. Of you’re running a mail server, you need SMTP; if you aren’t, you don’t. There is no one-size-fits-all.

    However, I will suggest an approach that can guide you:

    • Use the firewall, whatever you have installed, and bock off everything except ssh.
    • One by one, expose the ports you need, conservatively.
    • If you run web services, reverse proxy everything through a single server, preferablys one that’s only reverse proxying, is running as bare bones as possible, and is as simple as possible.
    • Once you get things working, go through and shut down and remove any services that you aren’t exposing or using via 127.0.0.1.
    • Once this is done, if you are technically capable, set up a Wireguard VPN with your home computer / laptop (preferable two), make sure the connections survive reboots, and then close and lock the door: firewall-block SSH except from your private VPN connections.

    In the end, you may have only 3 ports open: https, SMTP, and IMAP. Assuming you’ve secured the web, smtp, and imap servers, this is about as secure as you’re going to get with a single server.

    If you are able to, run each service on it’s own VPS: web server on one, IMAP and SMTP on another, and any web applications on their own servers. Connect them only via your VPN, and only through necessary ports, and close everything else. Shut down ssh between the servers, only allowing ssh connections from your laptop. Personally, I think it’s not too bad to run web apps in podman containers and expose those ports to the proxy server over there VPN, but ideally there’d be one VPS poet app, with servers not being able to talk to each other through the firewall.

    TL;DR: secure your network before focusing on shutting down and removing programs. Lock down your firewall. Set up a private VPN, and restrict as much internal traffic to it as possible.


  • I think Kevin Spacey may be one of the best (most skilled) actors of his generation, and among the best across several generations. A true peer of Dustin Hoffman.

    I was shocked by the allegations, and crushed when it became evident (to me) that it wasn’t a smear campaign.

    In a way it’s crazy that I can be so emotionally engaged with someone I’ve never met, likely never will, and who has no idea I exist. OTOH, it’s not surprising when people we respect, or even idolize, turn out to be not only merely human, but morally flawed in particularly inexcusable ways.

    I still feel sad and betrayed by Spacey, and it’ll forever taint my ability to enjoy his incredible performances.




  • I wish, I wish… I wish I was a fish.

    I wish there was an instrument other than the stock market whereby private individuals could combine their funds to perform hostile take-overs, and then manage them by pre-agreed conditions.

    Like: we’re going to buy Twitter, build an AP interface on it, federate it, and operate it like a non-profit. We’re going to have a set of these S core values, with yearly votes on changes proportional to investment. No single investor can own more than T percent of shares Investors can sell their shares, or buy shares. Stock will never spilt. Management salaries, combined, can never exceed more than M% of non-management combined salaries, and run it as a Holocracy. Or, maybe, shares can only be sold to employees, who have to sell to other employees when they leave.

    You know; try to design a good operating model that avoids the pitfalls of other companies, and can adapt when the model demonstrates perverse incentives. Put more thought into it than my ramblings above.

    But ten billion dollars is a lot of money to put together, and the rules I’d like to see necessarily exclude the sort of profit-only driven capitalists who’d be able to contribute heavy loads, and would limit the amount that could contribute.

    I may as well wish I were a fish.




  • Unfortunate outcome, sad cause. Sounds like he cared enough for the animal to put some effort into a noble funeral, but just fucked it up. Other people have caused conflagrations for worse reasons: intentional, carelessness, whatever.

    Of all the people causing a fire like this, I have the most sympathy for this guy.

    Related: a comedian once had a schtick about California road signs about it being illegal to throw burning objects out of your car; he joked that it was stupid, because what, was he driving down there road witha charcoal briquets in the passenger seat, just tossing coals out the window? While it was funny, I always thought, “Yeah. That’s almost exactly what it is.” Fucking idiots used to toss their cigarette butts out the window all the time.



  • I’m saying that I’m claustrophobic, and being in a submarine is a nightmare scenario, regardless of how safe it is.

    Also: while I don’t know the selection process for US Navy submarines, my experience with the military is that you can have an opinion about how you want to be posted, but no actual decision-making ability. So I may hope to fly Navy jets, but the Navy can simply say: “fuck you, you’re going to be stationed on a submarine,” and there’s little I could do about it.

    Also: accidents happen, subs sink, regardless of the country. It’s pretty high on my list of ways not to die, just below Nutty Putty cave and getting sucked into Bolton Strid.

    Also: submarines are weapons of war, so there’s a non-zero chance someone, at some point, will be trying to make you sink.

    Also: I was saying that were I a Chinese submarine crew, an incident like this would not fill me with confidence about my posting.