• 8 Posts
  • 579 Comments
Joined 1 year ago
cake
Cake day: June 23rd, 2023

help-circle




  • VMs under KVM are pretty much bare metal and Proxmox doesn’t use much for resources itself, it’s basically a headless Debian with a webserver interface to do all the KVM stuff.

    Proxmox, especially if you use ZFS for the VM datastore, makes a home lab so much easier to revert, backup and deploy/clone VMs and LXCs. I highly recommend it if you’re just starting out. Once you wrap your head around it, it gets out of the way and lets you just tinker with your projects, and not have to manually do everything in VirtManager or at the command line.

    Combined with Proxmox Backup Server, it’s a production ready hypervisor for anything you decide to keep. Also, the HA features work well enough that I had my main routing OPNsense VM jump between nodes when the primary node lost a drive, and I didn’t notice for a week, it was that seamless.






  • I absolutely do not discredit the scaling they’ve done in the manufacturing process, but if there’s one thing China does well, it’s scale manufacturing. That’s usually because they have much lower safety and quality standards, and might bring them up later on. But what they don’t seem to have, at least in these industries, is innovation in the underlying technology to any appreciable extent.

    But hooboy, can they pump out solar panels and batteries when they’re taken off the leash.

    And abso-fucking-lutely, we in Western countries continuously shoot ourselves in the foot with short-term thinking. There was a time it seemed when there were plans like the New Deal where thought was given to decades down the road. Today, the longest term outlook you see if 4 years. And that’s common across the board, I wouldn’t even place that just at the feet of the US. It’s a damn shame, and it’s the reason the middle class is getting hammered for the last 40 years. But we do know how to R&D, just now we can’t get build a manufacturing base without some grifter taking all the subsidies and shipping them offshore.

    Now I’m depressed.










  • Governments are not anyone’s issue other than other governments. If your threat model is state actors, you’re SOL either way.

    Making it harder for everyone else is the goal, and to do that you need a swiss cheese model. Hopefully all the holes don’t line up between the layers to make it that much harder to get through. You aren’t plugging all the holes, but every layer you put on makes it a little bit harder.

    And NAT is not just simple to set up, it’s the intuitive base for the last 30 years of firewalls. I don’t see where you get a cost from it. As I said, separating network spaces with it comes naturally at this point. Maybe that’ll change, but I remember using routable IPV4 when it was it the norm, and moving to NAT made that all feel way more natural.