• 0 Posts
  • 144 Comments
Joined 1 year ago
cake
Cake day: August 6th, 2023

help-circle














  • For cold storage it makes sense, but I always consider UX - there’s not enough solutions that make private key encryption, especially remote, as easy as opening a link or mounting to a directory.

    I’ve used s3ql before, and it’s really nice for making the encryption transparent. Not something pre-encrypting before dropbox upload can provide.
    More, you wanna share those files via dropbox native tools? The recipient better have your private key or you need to reencrypt specifically for them.

    Mentioned tool: https://github.com/s3ql/s3ql



  • I think this lead me on the right path: https://community.ui.com/questions/Having-trouble-allowing-WOL-fowarding/5fa05081-125f-402b-a20c-ef1080e288d8#answer/5653fc4f-4d3a-4061-866c-f4c20f10d9b9

    This is for edgerouter, which is what I use, but I suppose opensense can do this just as well.

    Keep in mind, don’t use 1.1.1.1 for your forwarding address, use one in your LAN range, just outside of DHCP because this type of static routing will mess up a connection to anything actually on this IP.

    This is how it looks in my edge os config:

    protocols {
      static {
        arp 10.0.40.114 {
          hwaddr ff:ff:ff:ff:ff:ff
        }
      }
    }
    

    10.0.40.114 is the address I use to forward WoL broadcast to.

    Then I use an app called Wake On Lan on Android and set it up like this: Hostname/IP/Broadcast address: 10.0.40.114 Device IP: [actual IP I want to wake up on the same VLAN/physical network] WOL Port: 9

    This works fine if you’re using the router as the gateway for both VPN and LAN, but it will get messy with masquarade and NAT - then you have to use port forwarding I guess, and it should work from WAN.

    I just wanted it to be over VPN to limit my exposure (even if WoL packets aren’t especially scary).


  • There is a trick you could do to send a WoL packet to a separate IP on the sender network and modify it so it is repreated on the network of the machine you want to wake up.

    I can’t find docs on thisb on mobile, but can look for it later.

    It can’t work like a typical IP packet routing tho. I’ve only made it work with a VPN connection.

    Another thing you can do is ssh to your router and send a WoL packet from there on the machine’s LAN.