OpenBSD
1.17K subscribers
38 photos
2 videos
6 files
405 links
Download Telegram
sec(4) for Route Based IPSec VPNs

A new tool for creating flexible, route based site to site virtual private networks (site-to-site VPNs) is entering its call for testing phase on OpenBSD-current...

https://undeadly.org/cgi?action=article;sid=20230704094238

#network #vpn #sec
๐Ÿ”ฅ15๐Ÿ‘3โค2๐Ÿ‘2๐Ÿคฎ1
Channel photo updated
๐Ÿ”ฅ45๐ŸŽ‰21โค13๐Ÿ‘7โคโ€๐Ÿ”ฅ5๐Ÿ‘2๐Ÿ˜2โšก1
Install OpenBSD 7.3 on Proxmox (BIOS/UEFI and Cloud-init).

I thought it was an opportunity to take stock of the different methods of installing OpenBSD on our favorite hypervisor. We will consider different scenarios depending on the types of BIOS available under Proxmox (OVMF, SEABIOS); different OpenBSD installation images; and, finally, we'll talk about the thorny subject of OpenBSD's compatibility with Cloud-init...

https://forum.proxmox.com/threads/install-openbsd-7-3-on-proxmox-bios-uefi-and-cloud-init.133063/

#virtualization #proxmox #install
๐Ÿ‘11โค5
Creating an OpenBSD Wireguard VPN Gateway.

A couple of years ago I published a blog post about creating an OpenBSD VPN gateway using OpenVPN. I've recently switched from an OpenVPN-based VPN provider to one that uses Wireguard. As a result I've had to redo my VPN gateway...

https://blog.lambda.cx/posts/openbsd-wireguard-vpn-gateway/

#wireguard #network #vpn
๐Ÿ”ฅ13๐Ÿ‘2
OpenBSD workstation hardening.

I wanted to share a list of hardening you can do on your OpenBSD workstation, and explaining the threat model of each change...

https://dataswamp.org/~solene/2023-12-31-hardened-openbsd-workstation.html

#security #system
โค21๐Ÿ‘12
OpenBSD KDE Plasma Desktop.

The KDE Plasma 5.27 is available on OpenBSD -current and will be part of the next release 7.5...

https://rsadowski.de/posts/2024-01-09-openbsd-kde/

#kde #desktop
โค19๐Ÿ‘10๐Ÿ˜จ6๐Ÿ‘55
Use OpenBSD in web browser.

I have created a service that allows you to use OpenBSD (and other operating systems) in a web browser. The URL to the service is instantworkstation.com. Hope it may be useful to you...

https://www.reddit.com/r/openbsd/comments/1ad1puz/use_openbsd_in_web_browser/

#browser #system
๐Ÿ”ฅ2010โค5โšก2๐Ÿ‘2๐Ÿ‘1๐Ÿ˜ฑ1
OpenBSD system-call pinning

... In December, De Raadt sent a patch to the OpenBSD mailing list expanding OpenBSD's restrictions on the locations from which a process can make system calls...

https://lwn.net/SubscriberLink/959562/0578b8e463f790c1/

#pinsyscalls #syscall
12๐Ÿ”ฅ9๐Ÿ‘4๐Ÿ‘Ž1
๐Ÿก
Please open Telegram to view this post
VIEW IN TELEGRAM
55โค4๐Ÿ”ฅ2
OpenBSD wallpapers.

This repository is a collection of cool and fresh wallpapers designed specifically for OpenBSD enthusiasts...

https://github.com/raffaelschneider/openbsd-wallpapers

P. S. Some of them are really amazing
39๐Ÿ”ฅ8๐Ÿคฎ4๐Ÿ‘2
Some OpenBSD features that aren't widely known.

In this blog post, you will learn about some OpenBSD features that can be useful, but not widespread. They often have a niche usage, but it's important to know they exist to prevent you from reinventing the wheel...

https://dataswamp.org/~solene/2024-02-20-rarely-known-openbsd-features.html

#system #security
โค263๐Ÿ‘1
Tech Independence

Tech independence is not depending on any particular company or software. The only tools you need are the common open source basics built into any Linux or BSD operating system โ€” free public-domain tools that are not owned by anyone, and can run on any computer.

Learn a few of these basic tools, and you can run your own private server on any computer forever, for the rest of your life. Host your own website and email. Keep your own contacts and calendars synced with your phone. Back up and sync your photos, movies, and music to your own private storage. No more subscriptions needed.

You can ignore all the companies offering โ€œsolutionsโ€, even if they are free, because they take away self-reliance. The point is to know how to do it yourself, not to have somebody do it for you. Itโ€™s worth a little up-front work, like learning how to drive.

Below are simple step-by-step instructions that work. Instead of drowning you in options, it uses an operating system called OpenBSD...

https://sive.rs/ti

#services #system
โค29๐Ÿค”44๐Ÿซก2
KISS high-availability with OpenBSD.

My HA solution for Web and Gemini is based on DNS (OpenBSD's nsd) and a simple shell script (OpenBSD's ksh and some little sed and awk and grep). All software used here is part of the OpenBSD base system and no external package needs to be installed - OpenBSD is a complete operating system...

https://foo.zone/gemfeed/2024-04-01-KISS-high-availability-with-OpenBSD.html

#web #nsd #ksh
โค17๐Ÿ‘22
Channel photo updated
โค44๐ŸŽ‰17๐Ÿ”ฅ65๐Ÿณ3๐Ÿซก3๐Ÿ‘2๐Ÿ‘1
Re: lcamtuf on the recent xz debacle

Just for clarity, does anyone know what "Unix-like operating systems" would be affected by this?


None. TLDR: The build process of the backdoor explicitly aborts on platforms other than Linux x86-64...

https://marc.info/?l=openbsd-misc&m=171227941117852&w=2

#security #xz
24๐Ÿ”ฅ5๐Ÿ‘2
20 years since "and we're just starting": undeadly.org turns 20.

It's been 20 years since the first undeadly.org post appeared...

https://www.undeadly.org/cgi?action=article;sid=20240409044953

#undeadly
38๐Ÿซก9๐Ÿ”ฅ6๐Ÿ‘3