Stems

A delightful tale of a stop-motion artist. Well worth your time to check out.

[Read More]

Pilates

Pilates, while it sounds like some kind of strange Mexican food, is a type of exercise.

I’d heard of it before, and thought it was popular amongst what I’d thought of as “hippies and old people”, some kind of yoga-style thing. It was suggested to me by my physiotherapist while recovering from yet another injury related to poor core muscle develoment and generally beating myself up a lot.

I’ve been doing it for a while now, and have to dump a few things out of my brain in an attempt to remember what I’ve been thinking.

[Read More]

Wil Wheaton on Depression

I’ve never found it particularly tough to talk about my ongoing journey through the fun of having a bent brain. The journey itself’s the hard part, and to read another person’s story reminds me that there’s a lot of people out there, and they too have wonderful people to help them.

Hi, I’m Wil Wheaton. I’m 45 years-old, I have a wonderful wife, two adult children who make me proud every day, and a daughter in-law who I love like she’s my own child. I work on the most popular comedy series in the world, I’ve been a New York Times Number One Bestselling Audiobook narrator, I have run out of space in my office for the awards I’ve received for my work, and as a white, heterosexual, cisgender man in America, I live life on the lowest difficulty setting – with the Celebrity cheat enabled.

[Read More]

wpad on pfSense with lighttpd

Setting up proxy auto-configuration on pfSense has a handy documentation page, but sadly the first thing they say is that you have to run the webConfigurator GUI in HTTP mode, which is kind of annoying.

Given the auto-config of nginx (which runs the pfSense GUI) will likely blat any changes I make, I decided to use lighttpd instead.

In short, we’re going to:

  1. install a web server
  2. make a pac file
  3. make it available at a couple of different URLs via that web server
  4. have cake

Here’s how I did it…

[Read More]

pfSense VPN for Road Warriors

This is current for v2.4.1, and is by no means a configuration I’d stand behind as far as being terribly secure for anything you should care about! :) I’ve got a static IP address, so I have a DNS entry that points at my router. If you’ve got a dynamic address, it’d be worth configuring Dynamic DNS to make connecting to your VPN possible.

Here we go… it’s all done in the pfSense webUI of course.

[Read More]

Internode IPv6 configuration for pfSense

After running a mikrotik router for a long time and fighting with the IPv6 configuration, I gave up this week and started using pfSense as a test. Within about half an hour (after figuring out the USB boot option wasn’t possible with my machine) I was up and running better than ever!

WAN interface config

General Configuration

  • IPv6 Configuration Type: DHCP6

DHCP6 Client Configuration section

  • Advanced Configuration: not needed
  • Use IPv4 connectivity as parent interface: enabled
  • Request only an IPv6 prefix: enabled
  • DHCPv6 Prefix Delegation size: 56
  • Send IPv6 prefix hint: enabled
  • Debug: disabled
  • Do not wait for a RA: disabled
  • Do not allow PD/Address release: disabled

LAN Interface Configuration

General Configuration

IPv6 Configuration Type: Track Interface

[Read More]

F5 APM with IPV6 Network ACLs

I ran into an issue while configuring an F5 SSLVPN for IPV6 last night, and googling it didn’t return anything of use.. so here we are again!

This is for the IPV6 LAN Address Space option, under Client Settings in the Network Settings tab under… don’t hold your breath…

Access ›› Connectivity / VPN : Network Access (VPN) : Network Access Lists : (yourprofile)

I know they’re complex, but the configuration’s getting hilariously convoluted to find sometimes.

[Read More]

Blocking WordPress password resets

Had an issue with people attempting password resets against one of my wordpress instances, when it’s something I’ll literally never require.

Since it’s running on Apache, I decided to use mod_security to implement, blocking and alerting with ease.

SecRule REQUEST_FILENAME "wp-login.php" "id:'400002',chain,deny,log,msg:'Password reset form attempt'"
SecRule ARGS:action "@contains lostpassword"

This is really simple, and nukes the ability for people to reset the password - and easy to remove if someone does have to do it :)

[Read More]

Disbenefits

Noun

As in the opposite of benefit. Because using drawbacks is bad; similarly ‘pros’ and ‘cons’.

Donated by Justin

[Read More]