he/him, chronically [redacted] and severely online

  • 0 Posts
  • 3 Comments
Joined 3 years ago
cake
Cake day: June 13th, 2023

help-circle

  • Good luck adding drm to a microwave to prevent it from microwaving “fish and fish adjacent shapes”. 3d printers consist of a couple of motors and a hot bit. No computer in there, unless you go for the high end stuff and even then they can’t run that sort of software. MCUs are clocked in MHz, but even a 10 year old computer is clocked in GHz. Even with a cloud connections, how much money have companies poured into “AI” only to have it still get things wrong? Do lawmakers expect a podunk garage team to figure out what Google, Meta, Apple, and literal billions of R&D haven’t?

    Since this is effectively a ban, it would result in “healthcare CEO shot by wooden ghost gun” if gun kits are still sold, because 3d printers don’t print guns. They print the “lower” that has the serial number, which is legally, but not practically, defined to be the “gun”. Any gun that doesn’t have a serial is a ghost gun, but the point is moot.

    More realistically, it would result in: “healthcare CEO shot by a 2026 special edition 9mm VEHHFU746582 on sale for 1984$, get it before it is banned” because for some reason the legislature is running on rich people feelings, and this shooting is special because of the gun, and not because of EVERYTHING ELSE.

    Not super into guns but I’m a bit frustrated with the technical ineptitude of some of these lawmakers. Gun control existed before 3d printers did, this is just half assed. Feel free to correct me if I missed something.


  • Not a sysadmin, just a casual IT.

    If it is open, it is going to get hit by scanners, scrapers, everything and the sun, even if it is secure. Generally, 443 for your websites via reverse proxy with an IP whitelist + password is okay. Not special, lets you add subdomains, very convenient.

    Now, there isn’t anything special about any given port, but you still need to have some form of access control that you need to set up. If it is an API have some sort of API key in place. Implement 2FA. Try to isolate the service from the machine. Isolate the machine from bare metal. Keep the bare metal machine isolated from your home network. Take up farming. Change the default port and add some form of access alerts/logs. Have some sort of fail2ban service in place because you will be firehosed with scripts and bad traffic.

    Maybe some of the stuff I recommend is paranoid overkill, but I don’t know enough to cut corners. Security is a hassle, a breach is a nightmare.