Dr. Hax's avatar
Dr. Hax
Dr.Hax@hax0rbana.org
npub16v82...eqha
Cypherpunk. Infosec veteran of about 15 years (vulnerability research, exploit development and cryptography). Cypherpunks write code. :-) Signet maintainer. Self-custody your passwords... in hardware! https://hax0rbana.org/signet Want to see wider adoption so Bitcoin can be used as digital cash and not just an investment vehicle. XMR: 44RDkTFmTeSetwAprJXnfpRBNEJWKvA5dBH5ZVXA4DofgoZ9AgjyZdSa2fo7pMD3Qe3pdKga8X22y3Lyn1xYde5kPQPzVUu
Dr. Hax's avatar
Dr. Hax 7 months ago
Fam, I'm worried about my cherry trees. What is going on at the tips and what should I do about it? We lost an apple tree to cedar apple rust a few years ago and a pear tree just last year to some kind of blight (pruned it too much, spurred too much growth, and got infected). All there trees are in different locations, but they are all in our front yard. We REALLY don't want to lose another fruit tree! They take years to get established and we aren't getting any fruit. #AskNostr #homesteading #fruit
Dr. Hax's avatar
Dr. Hax 7 months ago
I'm giving a class on #Meshtastic tomorrow. Target audience is the general public. No expectation that they have any prior knowledge of the topic. In your opinion, what are points that I should make sure I don't miss? What is the most cool or interesting feature about meshtastic?
Dr. Hax's avatar
Dr. Hax 7 months ago
@The Canny Couple Do you have any tips on how to speed up the prepwork for dehydrating? For example, we got some Asian pears from a friend and most of the touch time was washing, coring, cutting out sections that were bad (mushy, bug infested, etc.) and slicing. And it's not just prep for dehydrating that takes up a bunch of our time, it's just prep work in general. Washing kale and bok choy also takes forever. Just curious if we are missing out on some pro-tip that could save us some effort.
Dr. Hax's avatar
Dr. Hax 7 months ago
OK, who wants to zap drhax@hax0rbana.org so I can confirm I set up my lightning address correctly?
Dr. Hax's avatar
Dr. Hax 7 months ago
Does anyone know what BTCPay is on about with this FAQ entry? A 301 redirect results in a "bad request" error. The client doesn't follow 301 redirects (tested in BlueWallet). Does this work with any wallets? If I copy the user file from the subdomain to the main one and update the text/identifier to be the main domain, I get past the first lnurlp request, but then the second request fails due to a hash mismatch. I also get a hash mismatch if I copy the file over without any modifications (presumably because the address doesn't match what the sender typed in?). Finally, I see a feature request for LNBits/lnurlp to add support for forwarding addresses. But there's not enough info in that ticket to know if theaters a request to be able to have users type in your FQDN and you foward to someone else, or users type in you domain and it gets forwarded to the FQDN (lnbits).
Dr. Hax's avatar
Dr. Hax 7 months ago
OK, I have hacked apart lnurlp (an extension for lnbits) and confirmed: 1. The schema is wrong in the URL (http instead of https) 2. If it weren't wrong, this would provide a trustless* self-hosted lightning address I've asked on the lnurlp issue tracker where it's getting the schema. It looks like it's coming from the request object, which makes me think it's related to my nginx proxy (which is what provides TLS, since LNBits does not seem to handle that natively). *Some qualifications on that: A. If you are using your own domain, you're still trusting the root nameservers to not hijack your domain and possibly a 3rd party DNS server if you don't run your own. TLS will not save you because the attacker can just get a cert from LetsEncrypt or other if the DNS points to them. B. If you're using an onion address (which I did not test yet), you cut out the registrar & root nameservers, but nobody sane is going to type in a .onion address, let alone memorize it. It is trustless for dropping a QR code though, so that's something.
Dr. Hax's avatar
Dr. Hax 7 months ago
A note inspired by @Daniel Batten's latest newsletter: Dear Bitcoin evangalists, If you want to be effective, don't preach to the choir. When it **is relevant**, casually mention why you are excited about it to people in other areas of your life. Maybe that's your mountain biker crew where you're splitting the check at lunch. Perhaps you hear a friend gripe about prices going up. It does suck, and don't act like it doesn't affect you just because you save it bitcoin. Be humble. Acknowledge that. Bitcoin helps, but it could help a lot more if people accepted it more widely. Or maybe it's at a meeting of environmentalists who are concerns about the electricity usage of AI generating straining the grid, and the demand gas peaker plants that results. Or the rollout of solar being not as fast as needed/desired. If you are in any groups who are anti-fascist and sending money to others comes up, warn them that PayPal, Venmo and all the others might be watched by their county's leader. Advise sending cash in the mail, or bitcoin if it's a large amount or you want to get it there faster. If you know people who are anti-capitalist, find common ground. They don't like getting fleeced by the top 1%, and I bet you don't either. Undermining bankers ability to use your money for their personal gain is a common goal. Bottom line is to be humble. Only mention it if it happens to come up, don't act like it'll 100% solve every problem, and make it easy for them to ask questions. Try it and see if you don't have more genuine conversations. If I'm wrong, you can always go back to the hard sell.
Dr. Hax's avatar
Dr. Hax 7 months ago
Are you Y2Q compliant? image Will is happen by April 14, 2030?
Dr. Hax's avatar
Dr. Hax 7 months ago
This year, I'm automating self-hosting. My goal is to have all the services we use done by the end of the year. Nextcloud, jitsi, gitlab, matrix, element, bind, djbdns, the PKI/CA server... all of it. Sone of the things I've done have already starting to get reused. It's getting easier One I've got that rock solid foundation, it'll be time to rip. ๐Ÿ”ฅ
Dr. Hax's avatar
Dr. Hax 7 months ago
GD mates. I'll try to fill that time between you GM and GN posts with this lovely picture I snapped today. image Or is it AI generated? Can you even tell?
โ†‘