Petr Tesařík
@ptesarik@infosec.exchange
Linux kernel hacker.
Pronouns: he/him
0
Followers
0
Following
Joined April 29, 2025
GITHUB:
Posts
Open post
In reply to
@ptesarik@infosec.exchange
·
Apr 01, 2026
1
1
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Mar 25, 2026
@liskin@genserver.social It's complicated. Short answer: Yes, libvirt can work just fine with nft.
Long answer: Read this:
https://libvirt.org/firewall.html
Long answer: Read this:
https://libvirt.org/firewall.html
0
0
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Mar 25, 2026
@liskin@genserver.social By now, docker has left my system and will never make a comeback. But why did nobody warn me before I broke my system?
Besides, why didn't the #opensuse docker package revert those changes to iptables at unistall time?
Besides, why didn't the #opensuse docker package revert those changes to iptables at unistall time?
0
0
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Mar 25, 2026
@oleksandr Please, yes, go fix cobbler to use a better tool for make test-debian12:
https://github.com/cobbler/cobbler
https://github.com/cobbler/cobbler
1
2
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Mar 25, 2026
@ffmancera No idea. All I know is that packets were no longer forwarded through my default (NAT) libvirt network, and it took me way too long to find out that docker installation/startup did the equivalent of iptables -P FORWARD DROP. It was not visible anywhere in the output of nft list ruleset.
1
2
0
0
Open post
Open post
In reply to
@ptesarik@infosec.exchange
·
Dec 30, 2025
@mattblaze@federate.social @not2b@sfba.social If you ask me, this suggests that he acted on his own and wasn't part of an organized group. I don't know why I'm worried a lot of people will claim the opposite…
0
1
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Dec 20, 2025
@mossyfoot Oh, don't get me wrong. It may be a fine browser. But since it builds on Mozilla code, new releases always appear with a delay, which also affects security fixes. I don't think the Waterfox team participates in the CRD (Coordinated Release Date). Depending on your use case, this downside may be acceptable or even irrelevant.
Besides, if enough AI shit goes into the core parts of Firefox (e.g. Gecko), undoing it in a clone will be more and more difficult. At some point, the Waterfox development team may have to give up.
Anyway, for the time being, the best option for me is still Firefox and configuration tweaks.
@Gargron
Besides, if enough AI shit goes into the core parts of Firefox (e.g. Gecko), undoing it in a clone will be more and more difficult. At some point, the Waterfox development team may have to give up.
Anyway, for the time being, the best option for me is still Firefox and configuration tweaks.
@Gargron
0
0
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Dec 19, 2025
@mossyfoot Well, erm, I'm not sure it counts. It is always rebased on latest Mozilla code, and the team is not big enough to maintain it properly.
@Gargron
@Gargron
0
2
0
0
Open post
In reply to
@ptesarik@infosec.exchange
·
Dec 19, 2025
@Gargron@mastodon.social I may not like Mozilla, but which non-Mozilla browser supports browser extensions on Android?
FWIW this is the reason I won't switch to Vivaldi.
FWIW this is the reason I won't switch to Vivaldi.
1
1
0
0