@ArneBab I heard today that this will not affect #letsencrypt operations, but funding for further development. So, even if they cut it, we won't end up having millions of invalid certificates within 90 days.
@ArneBab I heard today that this will not affect #letsencrypt operations, but funding for further development. So, even if they cut it, we won't end up having millions of invalid certificates within 90 days.
Sounds like we’ll need a EU-based alternative to #letsencrypt:
https://thelibre.news/trump-cuts-funding-to-foss-projects/
"Trump cuts funding to FOSS projects
So far he hasn't been successful, but it might simply be a matter of time."
Much earlier than I expected.
Self-hosted Status Page: How to Deploy #Cachet on #AlmaLinux VPS
This article provides a guide for creating a self-hosted Status Page, including how to deploy Cachet Status Page on #AlmaLinux VPS.
What is Cachet Status Page?
Cachet is an open-source status page system that allows organizations to communicate the status of their services to their customers or users in a clear ...
Continued
How to Install Centmin Mod on #AlmaLinux #VPS (5 Minute Quick-Start Guide) Here's a detailed step-by-step guide on how to install Centmin Mod on AlmaLinux VPS server.
What is Centmin Mod?
Centmin Mod is a shell-based, menu-driven installer that automates the deployment of a LEMP (Linux, Nginx, MariaDB/MySQL, PHP-FPM) stack on CentOS, AlmaLinux, and Rocky Linux servers. Designed for efficiency and performance, it ...
Continued
Install and Run Your Own Image and Video Sharing Platform on #Ubuntu #VPS This article provides a guide for how to install and run your own image and video sharing platform on Ubuntu VPS.
What is Chevereto?
Chevereto is a self-hosted image hosting script that allows users to create their own image-sharing website. It provides features similar to ...
Continued
How to Install #Zammad on #AlmaLinux #VPS (10-Minute Quick-Start Guide) This article provides a guide on how to install Zammad on #AlmaLinux VPS.
If you're looking to run a robust open-source #helpdesk on your AlmaLinux VPS, Zammad is a great pick. It's modern, feature-packed, and supports everything from ticketing to chat and reporting. This guide will ...
Continued
Can I haz #LetsEncrypt alternative in #EU, pleaze?
How to Install #Directus on #AlmaLinux #VPS
Here's a step-by-step guide detailing how to install Directus on AlmaLinux VPS.
What is Directus?
Directus is an open-source #headless #CMS and data platform that allows you to manage and interact with your database through a RESTful API or GraphQL API. It provides a modern, user-friendly admin interface for ...
Continued
How to Deploy a Telegraf, #InfluxDB and #Grafana Stack on #Debian #VPS
This article provides a guide demonstrating how to deploy a Telegraf, InfluxDB and Grafana stack on #Debian VPS server. Commonly known as TIG, Telegraf, InfluxDB and Grafana collectively make a powerful monitoring stack on your Debian VPS server.
With InfluxDB for data storage, #Telegraf for data collection, and Grafana for data ...
Continued
Random #SelfHosting tip for any who might be interested:
If you use #GetSSL to get your #LetsEncrypt certs, you'll get four files:
* The key (example.com.key)
* The domain cert (example.com.crt)
* The CA cert (chain.crt)
* The "full chain" cert (fullchain.crt)
Make sure to use the full chain cert, *not* the domain cert, when setting up your server. Otherwise some services will give you "unknown authority" errors.
How to Install Centmin Mod on #AlmaLinux #VPS Here's a detailed step-by-step guide on how to install Centmin Mod on AlmaLinux VPS server.
What is Centmin Mod?
Centmin Mod is a shell-based, menu-driven installer that automates the deployment of a LEMP (Linux, Nginx, MariaDB/MySQL, PHP-FPM) stack on CentOS, AlmaLinux, and Rocky Linux servers. Designed for efficiency and performance, it streamlines the installation and ...
Continued
How to Install #Zammad on #AlmaLinux VPS This article provides a guide on how to install Zammad on #AlmaLinux VPS.
If you're looking to run a robust open-source helpdesk on your AlmaLinux VPS, Zammad is a great pick. It's modern, feature-packed, and supports everything from ticketing to chat and reporting. This guide will walk you through installing Zammad step by step.
What is Zammad?
Zammad is an open-source helpdesk and customer support ...
Continued
#Nextcloud auf einem #RaspberryPi ist sehr tricky, wenn man etwas verändert. Ich hatte sie jetzt einige Tage wunderbar laufen, habe nach langem Recherchieren die #Portfreigabe an der #Fritzbox geändert, um von #Letsencrypt ein SSL-Zertifikat zu bekommen - jetzt sind zwar die Ports offen, aber Zertifikat klappt trotzdem nicht und #Apache läuft auch nicht mehr. Ich steige gerade nicht mehr durch und frage mich, wieviel Zeit ich noch darauf verwenden will. jemand hier mit Erfahrungen?
#unplugtrump
How to Install #Matomo on an #AlmaLinux #VPS This article discusses how to install Matomo on an AlmaLinux VPS.
What is Matomo?
Matomo (formerly Piwik) is an open-source web analytics platform that allows businesses and website owners to track visitor behavior, monitor site performance, and gain insights into user interactions. It is a privacy-focused alternative to Google Analytics, giving users full ...
Continued
How to Install and Run Open Source Feedback Portal to Gather Feature Requests This article provides a guide for how to install and run open source Feedback Portal to gather feature requests and custom suggestions.
This guide will demonstrate the step-by-step process to deploy your very own self-hosted platform to collect user feedback such as feature requests and customer suggestions.
Overview
We will be deploying a ...
Continued
LetsEncrypt SSL Installation and Renewal for #cPanel #DNSOnly
This post provides a guide for enabling automated #LetsEncrypt SSL installation and renewal for cPanel DNSOnly servers.
Prerequisites
Access to cPanel DNSOnly Server: SSH access with root privileges. (See: Install cPanel DNSOnly on CentOS 7)
Installed Software: Ensure that #certbot (Let’s Encrypt client) is installed on your server.
DNS Configuration: Ensure the DNS records for ...
Continued
Install and Run #Modoboa #Email Server on #Debian VPS (Complete Guide) This article provides a guide to install and run Modoboa email server on Debian VPS.
Step-by-Step Guide to Install and Run Modoboa on a Debian VPS
Modoboa is a complete mail hosting and management platform that simplifies the deployment of email services. Here’s a step-by-step guide to install and run Modoboa on a Debian VPS. ...
Continued
How to Setup a Reverse #Proxy with HTTPS Using #Nginx and #Certbot (5 Minute Quick-Start Guide)
This article outlines how to setup a reverse proxy with HTTPS using Nginx and Certbot.
What is a Reverse Proxy?
A reverse proxy is a server that sits between client devices and a backend server, forwarding client requests to the backend server and returning the server's response to the clients. Unlike a forward proxy, ...
Continued
Let's Encrypt
In https://infosec.exchange/@aral@mastodon.ar.al/114224524044750719 @aral wants us to pay taxes to keep Let's Encrypt "alive". Here's another reason NOT to do that.
Apparently the *.eu.org domain needed laundrying because it's reputation became too bad. So scammers create zillions of insane domain names and obtain *FREE* (for them) certificates for those sites. Usually such sites are not malicious; they're intended to have virusscanners remove detection, eventually for the sub-TLD ".eu.org".
To see this, you may consider opening
https://crt.sh?q=eu.org
but that will fail because there are WAY too many results.
To restrict the amount of records, try a subdomain name and further restrict output by deduplicating and restricting to not expired, as follows:
https://crt.sh/?Identity=madaline.eu.org&exclude=expired&deduplicate=Y
The screenshot below gives an idea (they're all Let's Encrypt certs by the way, and I marked one with an insane domain name).
I wrote about this phenomenon before, e.g. in https://www.security.nl/posting/781057/Let%27s+Encrypt+git_git_git___ (at the time I did not understand why yet).
VirusTotal knows of 72.5K direct subdomains of *.eu.org:
"Subdomains (72.5 K)"
(open the RELATIONS tab in https://www.virustotal.com/gui/domain/eu.org/).
»Unsicherheit – US-Kürzungsrausch gefährdet für das Internet wichtige Open-Source-Projekte:
Die neue US-Regierung entzieht dem Open Technology Fund (OTF) die Mittel. Von diesem sind unter anderem @letsencrypt, @torproject und @fdroidorg finanziell abhängig. Der OTF hat Klage eingereicht«
Sehr heikel und es petrifft, wenn auch "nur" indirekt, alle Menschen auf der Erde. Der Egoismus eines Irren kann uns alle betreffen!