Litany against NAT

apologies to Frank Herbert

I must not NAT.
NAT is the net-killer.
NAT is the little-death that brings total obliteration.
I will face my NAT addiction.
I will permit it to pass over me and through me.
And when it has gone past I will turn the inner eye to see its path.
Where the NAT has gone there will be a proper firewall.
Only IPv6 will remain.

I have my phone set to auto-deny any number that is not in my contact list to combat the ever increasing amount of spam I've been getting. Unfortunately there is one insurance scammer that has taken to leaving voicemails. Multiple VMs a day for the last two weeks.

I contacted my provider about disabling my VM box altogether. They do not support this. You can, however, redirect missed calls to another number instead.

I now send missed calls to:

Eat Rickroll, spammers! goes offline for a few days the same time every year. It'd sure be nice if they'd monitor their domain renewal emails.

More of the DoH debate, by Richard Bennett:

"If you trust your ISP more than Google or Cloudflare β€” not unreasonable for many β€” DoH does nothing for you outside of the narrow case of using public Wi-Fi over unsecured networks. If you're doing that, of course, you have much bigger privacy issues than DNS lookups."


"We need to redesign DoH so that it works with DHCP and local policies, not against them."

the kyriarchy will tell you it has always existed. it is lying. our enemy has a beginning. it has an end, too.

in the alternate socialist present, i am herding goats with a cane and melody while replacing batteries in the mesh routers the β€˜ware guild has hung from trees. later i dine at the village commissary and watch a movie projected on the side of a barn.

"IPv4: Allow as a valid address range, allowing for 16 million new IPv4 addresses. This is part of the IPv4 Cleanup Project, started to increase the number of available unicast IPv4 addresses"


aight, I'm gonna need a drink, several in fact


Many Linux distros are deprecating 32-bit CPU support. Can we deprecate 32-bit IP address support at the same time?

Image transcription of a boost from a few days ago:

They deem me mad because I will not sell my days for gold;
And I deem them mad because they think my days have a price.
-- Khalil Gibran

The fight for diversity, equality and inclusion is the fight for software freedom. Our movement will only be successful if it includes everyone. RMS does not speak for these values.

rms, fsf, conservancy 

if you have a core infrastructure worthy of that name and it is not ipv6 capable in 2019, someone has done a bad job for the last 10 years.

Anyone who suggests using or subdividing doesn't understand the real world Internet. Those addresses would be unusable for decades. We still have devices that don't speak CIDR, and that's 25 years old.

Add IPv6 and be done with it. #sysadmin

"Free as in Sausage Making: Thoughts on Freedom within the Debian Project" by Sam Hartman

@djsundog Hacking the gibson, 2019 edition: Finding the garbage file on an S3 bucket accidentally left open

Makes me wonder if they looked at LZ4HC. My understanding is that the decompression speed is just as fast, but there might be some memory concerns.

Would you replace your existing internet provider with a community-based ISP, assuming that you'd (at the very least) keep the same speed? If so/not, why?


My therapist on giving of yourself:

If you get joy from giving of yourself, it's a gift.

If you get pain from giving of yourself, it's a sacrifice.

Choose wisely.

Resisting naps is such a waste of time. Bad, distracted working for hours vs half an hour of lying down and then renewed cheeriness and focus.

