Archive
-- Creating own XKB tweaks
+
- Only NAT packets you can deliver responses for +
- Creating own XKB tweaks
- You sure you want to hear the gossip?
- Print your stuff on Möbius bands!
- How to convert CBZ to PDF
diff --git a/output/categories.html b/output/categories.html
index aa91952..84dd594 100644
--- a/output/categories.html
+++ b/output/categories.html
@@ -36,9 +36,9 @@
Tags
-
+
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
- linux
- lifehack
- software -
- linux
- relationships
- identity
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
Tags
-
+
LEdoian's Blog https://blog.ledoian.cz/ 2024-04-17T15:18:00+02:00 Creating own XKB tweaks 2024-04-17T15:18:00+02:00 2024-04-17T15:18:00+02:00 LEdoian tag:blog.ledoian.cz,2024-04-17:/custom-xkb-tweaks.html <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> + LEdoian's Blog https://blog.ledoian.cz/ 2024-05-08T00:00:00+02:00 Only NAT packets you can deliver responses for 2024-05-08T00:00:00+02:00 2024-05-08T00:00:00+02:00 LEdoian tag:blog.ledoian.cz,2024-05-08:/masquerade-with-filter.html <p>When setting up a masquerading nat, it is worth considering masquerading only +packets from known networks. That is, instead of rule like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> +masquerade</tt> use something like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> ip saddr 198.51.100.0/24 +masquerade</tt>.</p> +<p>I learned the hard way: my laptop in a masqueraded network picked …</p> <p>When setting up a masquerading nat, it is worth considering masquerading only +packets from known networks. That is, instead of rule like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> +masquerade</tt> use something like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> ip saddr 198.51.100.0/24 +masquerade</tt>.</p> +<p>I learned the hard way: my laptop in a masqueraded network picked a wrong +source address from a subnet the router had no knowledge about. The outbound +packets passed through right, but the responses came in, undergone translation, +and since the destination was unknown to the router, it used the <em>default</em> +route, sending the packet back to the ISP.</p> +<p>The result: IDS triggered by <em>many</em> packets from my router with source IP +addresses from all around the Internet, all with destination to my private +address. (The ISP was not happy about that.)</p> + Creating own XKB tweaks 2024-04-17T16:40:00+02:00 2024-04-17T16:40:00+02:00 LEdoian tag:blog.ledoian.cz,2024-04-17:/custom-xkb-tweaks.html <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> <p>My problem: My laptop does not have PageUp and PageDown keys, and many other keyboards I use have similar deficiencies. And I use various environments and various systems, some of which are shared with …</p> <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> diff --git a/output/feeds/technology.atom.xml b/output/feeds/technology.atom.xml index a9eb3e3..3eccfd0 100644 --- a/output/feeds/technology.atom.xml +++ b/output/feeds/technology.atom.xml @@ -1,5 +1,5 @@ - LEdoian's Blog - technology https://blog.ledoian.cz/ 2024-04-17T15:18:00+02:00 Creating own XKB tweaks 2024-04-17T15:18:00+02:00 2024-04-17T15:18:00+02:00 LEdoian tag:blog.ledoian.cz,2024-04-17:/custom-xkb-tweaks.html <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> + LEdoian's Blog - technology https://blog.ledoian.cz/ 2024-04-17T16:40:00+02:00 Creating own XKB tweaks 2024-04-17T16:40:00+02:00 2024-04-17T16:40:00+02:00 LEdoian tag:blog.ledoian.cz,2024-04-17:/custom-xkb-tweaks.html <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> <p>My problem: My laptop does not have PageUp and PageDown keys, and many other keyboards I use have similar deficiencies. And I use various environments and various systems, some of which are shared with …</p> <p>Debugging this took me a bit too long, so I want to write about the caveat.</p> diff --git a/output/feeds/til.atom.xml b/output/feeds/til.atom.xml index 834ef69..bca284a 100644 --- a/output/feeds/til.atom.xml +++ b/output/feeds/til.atom.xml @@ -1,5 +1,21 @@ - LEdoian's Blog - til https://blog.ledoian.cz/ 2024-02-17T16:55:00+01:00 How to convert CBZ to PDF 2024-02-17T16:55:00+01:00 2024-02-17T16:55:00+01:00 LEdoian tag:blog.ledoian.cz,2024-02-17:/cbz-to-pdf.html <ol class="arabic simple"> + LEdoian's Blog - til https://blog.ledoian.cz/ 2024-05-08T00:00:00+02:00 Only NAT packets you can deliver responses for 2024-05-08T00:00:00+02:00 2024-05-08T00:00:00+02:00 LEdoian tag:blog.ledoian.cz,2024-05-08:/masquerade-with-filter.html <p>When setting up a masquerading nat, it is worth considering masquerading only +packets from known networks. That is, instead of rule like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> +masquerade</tt> use something like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> ip saddr 198.51.100.0/24 +masquerade</tt>.</p> +<p>I learned the hard way: my laptop in a masqueraded network picked …</p> <p>When setting up a masquerading nat, it is worth considering masquerading only +packets from known networks. That is, instead of rule like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> +masquerade</tt> use something like <tt class="docutils literal">iifname <span class="pre">eth-inside</span> ip saddr 198.51.100.0/24 +masquerade</tt>.</p> +<p>I learned the hard way: my laptop in a masqueraded network picked a wrong +source address from a subnet the router had no knowledge about. The outbound +packets passed through right, but the responses came in, undergone translation, +and since the destination was unknown to the router, it used the <em>default</em> +route, sending the packet back to the ISP.</p> +<p>The result: IDS triggered by <em>many</em> packets from my router with source IP +addresses from all around the Internet, all with destination to my private +address. (The ISP was not happy about that.)</p> + How to convert CBZ to PDF 2024-02-17T16:55:00+01:00 2024-02-17T16:55:00+01:00 LEdoian tag:blog.ledoian.cz,2024-02-17:/cbz-to-pdf.html <ol class="arabic simple"> <li>Extract the archive (cbz is just a zip, cbr is a rar, …)</li> <li><dl class="first docutils"> <dt>Convert individual pictures to PDF using <tt class="docutils literal">img2pdf</tt></dt> diff --git a/output/forgetting-dns6.html b/output/forgetting-dns6.html index c1e13cb..fae6c63 100644 --- a/output/forgetting-dns6.html +++ b/output/forgetting-dns6.html @@ -36,9 +36,9 @@ Tags
-
+
Tags
-
+
Only NAT packets you can deliver responses for – LEdoian's Blog + + + ++ + +LEdoian's Blog
++