The guide starts at 11:25 TIMESTAMPS 00:00 Introduction 01:28 Everything wrong with the VPN services 05:50 What are the alternatives? 07:39 VPN services vs. Self-hosted VPNs 08:58 Choosing a VPS provider 10:43 My choice of the VPS provider 11:25 Creating an account (The tutorial starts here) 11:45 Creating a VPS 12:37 Generating SSH keys 13:46 Updating the packages 14:07 Creating a non-root user 15:04 Configuring SSH 17:14 Installing and configuring OpenVPN 20:50 Installing mosh 21:14 Two-factor authentication 23:53 Automatic updates 25:11 Conclusion
@栗栖が萌じゃない3 жыл бұрын
Bruh
@fwkeaffount3 жыл бұрын
thank you i was about to look for this
@engelsteinberg5933 жыл бұрын
Fun fact: make your own server do not avoid your network traffic to be shared, they still can order linode to give your network history.
@MrNoNameForYou3 жыл бұрын
This is exactly what I needed thanks.
@tech_for_everyone55303 жыл бұрын
nice vid bruh
@doom-and-gloom4 жыл бұрын
starts at 0:00
@memelord18624 жыл бұрын
Thanks
@ArchisMarathe4 жыл бұрын
That's what I like.
@EliteAimV14 жыл бұрын
0:00
@MACHINEBUILDER4 жыл бұрын
thanks I was so lost
@randomperson34784 жыл бұрын
saved me a lot of waiting
@daywalkernightstalker23392 жыл бұрын
Exactly, no matter what a VPN provider says, you have to trust them when it comes to storing and sharing your logs. If they can profit or have to protect themselves, they with share them with other companies.
@TheEmilarOMG2 жыл бұрын
Okay everyone knows this but how likely is it that they will steal your information or that it will be stolen? you're more likely to get hit by a car or be in an accident or just die.
@flashflash67872 жыл бұрын
And government too
@sugumaranveejakumaran Жыл бұрын
Many commercial VPN providers make money through bogus claims to protect privacy of internet users. One example is NordVPN, which I find surprising is they refuse to allow XMR Monero but only Bitcoin and that too via Coinbase payment gateway. It is better to get a VPS that allows payment via XMR Monero crypto, and allow selfhost a VPN.
@rangefreewords Жыл бұрын
Do they sell insurance? Term GPU?
@quatsch420 Жыл бұрын
You will NEVER find out the truth on the Internet.. NEVER... It's always ONLY about money and making people feel insecure... At the end of the day, we don't know anything !! Everyone believes what they want to believe and will only google themselves in the direction of being "smart"... If you don't understand how the internet REALLY works... If you don't even know why audio is streaming through the air from a walky Talky is transmitted to the other... Then a lot can be told.. VPN, Proxy etc.. or not... Keeping the people STUPID -- It was done thousands of years ago and it's getting worse... Why? So that we don't pose a threat... But who am I... People get upset every day and yet they go back to work on Monday... Whether you believe in conspiracies or not, UFO's "YES" - "NO" ..Repteliuden and so on.. doesn't matter .. because we humans still do what they want, we go to work, consume, spend money and pay money to be entertained so that we feel good about ourselves to be able to go back to work...The REAL goals of each country, we will NEVER know and what we believe in whether sure or not sure if the government is bugging us or not.. Irrelevant... The question isn't, "Will we lied to - truth or lie? You should think about WHY we are told this and that - how do we behave because of it... Clearly: If we are told bullshit, and more bullshit and more bullshit .. what happens right - bullshit, doesn't matter how smart you are.... Stop racking your brains and focus on life and people that mean a lot to you and invest your time with your loved ones instead of thinking about it the government or your ISP is bugging you or your data is being sold...
@WolfgangsChannel4 жыл бұрын
Welcome to the comment section! Please read the FAQ before leaving a comment: Q: How do you know that the VPS doesn't keep the logs? Isn't that the same as trusting a VPN service? A: Every Internet gateway can potentially log and monitor your traffic. A VPN (be that a VPN service or a self-hosted VPN) doesn't give you extra privacy or anonymity and can potentially monitor your activity. Instead, if you need some extra privacy while browsing the Internet, you should use Tor 06:00 As I mentioned in my last video, VPNs should be used to avoid censorship, geoblocks and DMCA letters, but they won't magically make you more secure and anonymous. Q: Are you only recommending a VPS as a solution because you were sponsored by Linode? A: No. I've been using a self-hosted VPN since 2017 and am currently using a VPS from another company. I've also been approached by a several VPN companies that offered to sponsor my videos; I politely refused their offers because such sponsorship will go against my point of view on VPN services. Linode is one of the biggest VPS providers on the market and I'm glad they sponsored this video, however you can always choose another VPS to host your VPN: DigitalOcean, Vultr, Hetzner, etc. Q: But doesn't a self-hosted VPN make you more identifiable since you're the only user? A: Unlike a VPN service, on a self-hsoted VPN you get a dedicated IP that isn't shared with any other users. However, a shared IP on a VPN service doesn't give you more privacy: you still use your real IP to connect to it, and your account has a unique identifiable set of keys. In both cases if a certain government agency were interested in your online activities, it would require requesting logs from the provider, and in case of Linode (or any VPS provider) the authorities would only retrieve connection logs (e.g. when you connected to the VPS from your IP address) - so pretty much the same as with a VPN service. In both cases the authorities can also request logs from the data center providers or hit the service with a FISA warrant if they reside in the US. Q: Is this tutorial only going to work for Linode? A: No, this tutorial applies to any KVM- (and possibly Xen-) based VPS. The only part that's going to be different is the process of creating an account, which is pretty easy.
@WolfgangsChannel4 жыл бұрын
I mean if your threat model includes state agents you shouldn’t use anything other than Tails
@princericard37024 жыл бұрын
Wouldnt it be better to pin this comment?
@WolfgangsChannel4 жыл бұрын
@@princericard3702 thought it was pinned. youtube has a tendency to randomly unpin comments fter editing.
@princericard37024 жыл бұрын
@@WolfgangsChannel typical lmao
@xxcr4ckzzxx8404 жыл бұрын
What´s about vmware as a Virtualisation Technology ? Is it on the same level as KVM, or more in the direction towards OpenVZ ? Cant really find any Infos about that, maybe u have an Idea.
@wajinshu4 жыл бұрын
Hey, thank you for this. I saw this on google but no one makes a tutorial. Glad I saw this today on my recommendation. Gonna finish this tutorial and will sign up with your link. Thanks again
@TheUKisThere3 жыл бұрын
Aye!!
@neoncyber20013 жыл бұрын
One thing of note... If you are using a VPS - Check the Terms Of Service for the hosting/rental company. Many companies have policies against setting up VPNs on there networks for a variety of both technical and legal reasons. Many companies also have a 'One Strike / No Warning' policy when it comes to TOS violations meaning that if there systems team detects a 'banned service' or there legal team gets a DMCA violation / take-down notice. They will take down your node, wipe all of the data (including onsite backups), cancel your hosting/rental account, and notify you via email after... No Refunds. --- TLDR: Lots of providers DO allow you to set up a VPN however, If for some reason a provider doesn't allow a VPN or other services/content to be set up, it will be in the Terms of Service. Because providers don't want to terminate your account, it will usually be written in very plain, easy to understand, language... Just read the TOS and make sure you understand what you can and can not do/run with that provider *before* starting hosting with them.
@SciFiMangaGamesAnime Жыл бұрын
Oh, that is a very useful information, thank you. Yes, I thank you two years later :).
@SpeedraZer11 ай бұрын
Yes sir! Very Good point! Sorry my reply is also 2yrs later, but I had to chime in and give a nod to this point. The DMCA violation / take-down notice or any legal dispute regardless of your innocense or guilt that you may be involved in doesn't get sent to you directly. So, you might think, "yea that's good for me, I'm anonymous with no logs and a fake name and account paid with crypto" But you don't own the server, you're renting it, and are subject to their usage policy and their legal right to operate rides on your conformity. They won't wait 1 sec when they get a complaint, you're gone and if you were malicious its justified, if not you're just unlucky. This exact scenario applies to public VPN providers Nord, Express,etc. You're subject to their AUP, and if you're not attempting malicious activities then you don't need to be paranoid about no logs because no-one will have a reason to pursue you. If you are malicious on a seedbox or virtual server and they get a court order to expose you, given that you are using a fixed IP and all of your VPN traffic is tied to that IP, obviously they know what server is assigned said Ip because they delete/ban your account and you might want to be Tor'ing in or using another VPN or proxy to access the server so that your personal WAN IP is not exposed. That said, they can be a cost effective sandbox to learn how to install/configure various OS/software and host services you just have to remember they own it and will boot you if they get shit for your actions.
@jessicantina4 жыл бұрын
All the KZbin ads being for VPN services is hilarious. Nice video!
@Arturopakastur4 жыл бұрын
Yeah, that's called personalized ads...
@hairystyles42124 жыл бұрын
Truly. It's so cringe lmao
@secrecy39154 жыл бұрын
KZbin be like "no, wait, hold on, let us take your money, plz don't go"
@g00gleminus964 жыл бұрын
Ads? What are ads?
@yaboioreos71814 жыл бұрын
wouldnt know I use adblocker
@Tim4Tat4 жыл бұрын
15:48 "I personally prefer to use the port 69." I see you are a man of culture
@somedude54144 жыл бұрын
No tftp for you! :P
@WolfgangsChannel4 жыл бұрын
@stormyweathers08 The text guide covers Windows as well kzbin.info?v=gxpX_mubz2A&event=video_description&q=https%3A%2F%2Fnotthebe.ee%2FCreating-your-own-OpenVPN-server.html&redir_token=QUFFLUhqbnlRRGRvY1RpemZRSFI2WkdFbGxWd3A3NExoUXxBQ3Jtc0trS0s5TFJwWlZfUHVoRUxVNk5Pc0ozbGJsUHBtWEJKVGctaV9JejktdnhtVWIyU1dUaTRWenc4cWhCd21SQWFfQi1FOFE4aWtudXJGdE4zWFhCTU9LN0hSclhEMmVPQzVhcjdpaEE4Y2Z3cnBON25zbw%3D%3D
@dyip-vb1wl4 жыл бұрын
Wolfgang's Channel Thank you!
@yogiballa4 жыл бұрын
@@WolfgangsChannel wolfgang, you either missed this joke or ignored it? lol the port number is significant LMAO
@WolfgangsChannel4 жыл бұрын
@@yogiballa I was replying to @stormyweathers08
@andersonfelippe90163 жыл бұрын
Been doing it on my own for quite a while now, but with your hints I just took it to a new level of customization. Great video!
@Cloudy-tk2xk2 жыл бұрын
do u need a vpn provider or can u use data that u have when u were in another country .
@bitten4life2 жыл бұрын
is this a good thing to do if you want to work abroad without your employer knowing?
@jloc1512 жыл бұрын
Yo-yo you wanna help me create a good vpn ?
@Y2-_2 жыл бұрын
@@jloc151 ye I would want to
@luca-dallavalle4 жыл бұрын
The main reason people look for VPNs is anonimity and the possibility to change connection location and gain the ability to access services reserved only for specific places (ex Netflix). With a self hosted VPN you lose both. Anonimity: basically the same things that your ISP would spy on you, now are spyable by your VPS provider, you're just trusting a different entity. But, as you correctly said, this is a marginal problem, because only source IP and destination IP can be seen, the traffic in between is encrypted. The only thing that changes is that your ISP can only see you are contacting your VPS, and your destinations can see you are contacting them from your VPS. But that VPS can be traced back to your identity, because you're the only owner of that IP address. So we have no anonimity benefit here: in the case the sites you contact want to know who the source IP address belongs to, they can very easily if your VPS provider is complicit. This is more difficult (not impossble) with VPN services ( if they have logs of your real IP) because they have to link the traffic on their system to your real IP and identity manually by looking at metadata, because there are a lot of people using their system simultaneously. And also if the VPN service is, by chance, reliable as they say and they really don't save any logs, then you're anonymous. I don't think VPS providers keep less logs than a VPN service tbh, in this video you're just saying 'meh, I trust VPS providers more then VPN providers', without counting the fact that VPNs grants you the ability to avoid geoblocking by default, and also that the VPN providers base their business on the 'zero logs' policy, and that's not the case for VPS providers.
@michaelsullivan84984 жыл бұрын
Hello Wolfgang, I want you to know that i appreciate your in depth knowledge and have deep respect for you that you take the time to share the results of the hard work that you do in order to educate the MANY MANY people that simply have NO CLUE! Thank you. Mike S.
@ohimdabiggestbird2 жыл бұрын
what the fuck is that supposed to mean?
@killuaatyoutube2 жыл бұрын
Hey Yanish Mounnah, I want you to know that he is just telling nothing. Have a Good day ! Killua Z.
@kevinm88653 жыл бұрын
I love that you posted the timestamps. Makes this video so much more useful! Thanks!! I "liked" the video.
@1DiscipleDragon4 жыл бұрын
i really appreciate the amount of effort you put into making this tutorial and showing how serious you are about privacy
@Naeidea4 жыл бұрын
"I know you guys are lazy and are not going to do that" - Fuck I really DO need a VPN he knows me too well.
@mbedj19743 жыл бұрын
Don't give up Rick !
@johnnyandrew45153 жыл бұрын
@@mbedj1974 Rolled
@OnewheelYamster3 жыл бұрын
Just download a cracked vpn
@pexeixv Жыл бұрын
I once followed a tutorial to install AnsibleVPN and although the install process was so long, I was never able to get it to work. Your video on the other hand, is straight to the point. I followed the video from 17:16 to 20:51 and was able to get OpenVPN working on my EC2 instance in less than 10 minutes. Thanks a ton!
@ryanthetide4 жыл бұрын
Personally I love the movement for personally owned data like your privacy and files. As an enthusiast with multiple industry grade certifications behind me ranging from general certifications in cyber-security & general networking to Cisco university grade diplomas. I don’t care about my own privacy (I know controversial opinion for my field..) however I stand behind this video in more ways then one, he outlines the benefits to self-hosting your own VPN perfectly. The reason I use VPN’s is to allow much better security within my networks for the company I run. By only allowing OpenVPN’s port past our network firewalls and then encrypting all user profiles substantially it allows me and our employees to access and be on these networks remotely without fear of multiple ports/applications vulnerabilities. Awesome video, love your other content too!
@lchoisf4 жыл бұрын
Hi Wolfgang, Thank you for sharing this information. Assuming that everything you've said is true, both the loss of privacy and not knowing who to trust is a bigger issue that most of us realize.
@forgeteverythingyouknow54133 жыл бұрын
Dry humor, subtle sarcasm, good content including debunking... Gotta love this video man. TY (learning if you search 'is pee is stored in balls' comes up with yes, was the one of the real highlights)
@WolfgangsChannel3 жыл бұрын
Much appreciated!
@davidr24214 жыл бұрын
I certainly hope nobody is getting Linux ISOs from Pirate Bay lol
@hamzaghazi4 жыл бұрын
Oh bro u haven't herd the last of it in my country , over here we get window from pirate bay
@hamzaghazi4 жыл бұрын
@@davidr2421 Yah but that water mark is annoying tho
@xXRealXx4 жыл бұрын
@Obadiah Guyman No. That's just simply false if you're using Windows 10.
@kj-marslander4 жыл бұрын
@@xXRealXx You have no idea what you're talking about. Windows 10 is fully functional without activating it. Even the iso is free from microsoft. The only reason it's not usable is because of that little watermark on the lower right corner. And even that, can be ignored. Obadiah is right.
@funmatrikz4 жыл бұрын
@Obadiah Guyman just simply download KMS Pico and activate your windows
@starypiard4 жыл бұрын
that video from Tom Scott is indeed brilliant, I watched it many times for the entertainment value alone
@johnheikkinen39164 жыл бұрын
Can you please put up the Tom Scott link
@dgfhjdgfhkjdgfhjdgfhkj49704 жыл бұрын
@@johnheikkinen3916 kzbin.info/www/bejne/moLaZapvjMyLmbM That's the link, hope it helps!
@FinalKingX4 жыл бұрын
gay pirate assassins
@atoxicrick98804 жыл бұрын
@@dgfhjdgfhkjdgfhjdgfhkj4970 i remember the rickroll link... you arent fooling me!
@mobieladam3 жыл бұрын
Wolfgang, your content is phenomenal. Thank you for your generosity. I hope I can find the cash to donate to your channel soon because you've pieced together some concepts that I understood only in the abstract. Thank you.
@bwucewee15024 жыл бұрын
I appreciate your honesty, you sum up pro's and cons and if you are sponsored, you mention it, if you see another video which explains the same thing you do but better, you are man enough to admit and mention it and give credit where it's due. You also have a very clean info page with timestamps and more and are quite humble(with self-promotion). Good lad
@cobbsta884 жыл бұрын
He does have a lot of integrity for sure, but mentioning a sponsor isn't really special, they're required to do that by law and contract with their sponsor.
@steino5804 жыл бұрын
It's always good to be critical about any service you're making use of. In the same sense I have two questions about the points you're making in your video: - If you're using your own OVPN install on some VPS, then all traffic can still be pinpointed to exactly the virtual machine that your running on that server. In affect, you're still rely on that VPS not to disclose the account holder to that VM. I'd say that assumption is at least as "dangerous" (and maybe even more so...) as assuming that VPN providers wouldn't back-trace the user corresponding to some traffic from x months ago. Wouldn't you agree? - Secondly, at 12:50, you seem to be saying ssh exchanges your pass in plaintext. That's not correct. To verify, I just ran a wireshark capture on my own system. Openssh is using the Diffie-Hellman encryption before your key exchange of the actual ssh connection. Maybe I'm misunderstanding you? I hope you'll take the time to respond, I'm curious to hear your thoughts.
@petermohr41732 жыл бұрын
hmmmm no answer yet... very very nice point everyone (including me) overlooked!
@MarkAinsworthAinz2 жыл бұрын
Surely, there would be many, many users that would rent bandwidth on a specific remote VPS server? Would the VPS owner be able to tell who was doing what and do they log your activity regardless of the server setup that you configure? If you were the only subscriber to a particular machine, then yes, I can see how that would be a massive problem, but for a low cost VPS contract, you'd be sharing a machine with multiple other users, surely? If you choose not to log, is that it - no logging full stop? Complete novice here by the way.
@steino5802 жыл бұрын
@@MarkAinsworthAinz The hypothetical scenario is that someone is tracing data traffic that originates from your VPS. If this "someone" is tracking your traffic, they know precisely which IP this traffic corresponds to. This IP one-to-one correlates to the rented VPS. They would literally only have to ask the provider "who is the account holder to the VPS with this IP" to directly land on your doorstep, despite your fancy OpenVPN implementation. I would thus argue that it is actually *much more* unsafe than a regular VPN provider. Because for a regular VPN provider, you would be absolutely right; the same IP is shared among many users at any point in time, and the VPN provider would have to keep *huge* logs to even be able to tell this "someone" who was corresponding to a certain data flow. P.s. I would love to be corrected on this if I'm wrong, but it really seems to me that this approach *significantly* weakens the weakest link in your security.
@TimoWelde2 жыл бұрын
Exactly what I was thinking about. If you have a dedicated Public IP, this can be traced directly to your vps. Law enforcement can force your vps provider to tell them who owns it.
@tonestuly52312 жыл бұрын
I agree with the comment
@JaidanPlays Жыл бұрын
Don't let the internet hate stop your grind! Keep up the good work!
@Jqcksremmurd3 жыл бұрын
Ima be honest. I have no interest in having a vpn, but this was very informative and entertaining.
@x32gx3 жыл бұрын
Excellent video! Finally someone who explains this thoroughly and also shows how to improve everything. Thank you! I'm gonna give it a try. I just want to also mention that in Linode's Master Services Agreement and in their Privacy Policy they state that personal data (including network logs) are all maintained on their servers and may be presented to law enforcement if there is a court order etc. These will be used in case of suspicious criminal activities. So unless I'm reading this wrong, they do state that information is kept on their servers. So don't go and try something bad now ;)
@johntarun91772 жыл бұрын
Or if the govt is bent on getting opposition activity check. Fear factor
@michaelvilain84573 жыл бұрын
This video actually had some very useful info aside from the VPN FUD at the beginning. I'm very thankful for pointing me to an alternative VPS provider that can do terraform and ansible so I don't have to constantly suck on AWS' teat.
@clickepic27334 жыл бұрын
seems pretty dope. was originally just gonna buy a vpn but this seems like a way better option.
@yniekac88514 жыл бұрын
And cheaper sometimes
@shonrjimenez4 жыл бұрын
@@lionelesquivel2498 i could use an express account...
@Dotunsdiners4 жыл бұрын
@@lionelesquivel2498 nord please
@jenlanjen4 жыл бұрын
@@lionelesquivel2498 I would love one thanks
@broadwayzjm52574 жыл бұрын
@@lionelesquivel2498 I'm down for nord :--)
@johnstafford64583 жыл бұрын
This seems like an all day class crammed into less than 30 minutes.
@SB-qu6ge Жыл бұрын
Thank you for the in-depth explanation, prior to even starting the setup tut. No unexpected surprises halfway through the process. This is a refreshing compared to many various installation/setup tuts I have reviewed in the past. I have subscribed. Thanks again!
@zachkunka21104 жыл бұрын
Correction: You say using a clear text password is a bad idea because it isn’t encrypted in transit. It IS in fact encrypted in transit and a hacker would NOT be able to see it over an infected network. However I do still recommend an ssh key as it is a much better option for many different reasons.
@michaellin45534 жыл бұрын
MITM is still possible with SSH, just hard to pull off. Any dedicated attacker could pull it off.
@pokemaster21294 жыл бұрын
I only download the highest quality *linux isos*
@BloodmansCrypt4 жыл бұрын
Yes, *linux isos*
@bleuify74 жыл бұрын
the Full HD one, right?
@henriaunin4 жыл бұрын
Did someone mention I use the highest quality of arch?
@knifeyonline4 жыл бұрын
@@bleuify7 I hear the high quality ones can come in various sizes several times a day, and it's important to stay up to date.
@kj-marslander4 жыл бұрын
@@bleuify7 4K only.
@Diogenes_ofSinope Жыл бұрын
our pronounciation is very on point. I really respect people who put in the effort to pronounce words of different languages as well as possible
4 жыл бұрын
imagine using openvpn in 2020 this post was made by wireguard gang
@dameck95704 жыл бұрын
Switching to wireguard is still on my todo list. The last time I looked at it it seemed not ready for productive use. How is the cussent status?
@joaoloureiro26144 жыл бұрын
@@dameck9570 It was merged into Linux 5.6. I would say it is pretty stable right now.
@HenryT4 жыл бұрын
Wireguard = not as secure :)
@xxcr4ckzzxx8404 жыл бұрын
Did they had their Independent Audit yet ?
@joaoloureiro26144 жыл бұрын
@@HenryT Why is Wireguard not as secure?
@Bamlbo4 жыл бұрын
I got an ad on a Vpn called ipvanish and the first words where "The internet is tracking everything you do!"
@netman874 жыл бұрын
And we can say that its pretty much true... sadly its not problem that vpn itself solves. Every service you use and service they use to handle your usage will store lots of data. If you open any page in internet they probably have some google services that save something about you. Lets say they save time, ip, page address, browser agent, resolution/ viewport and some other data that tells how you are browsing web. Like where did you come to site (ref) and how much time you used to stay on page.
@netman874 жыл бұрын
Then if they compare 'data' they have about page/site and your browsing history they know what you are interested in. And now we can advertise this item you did talk with Steven and opened single link steve gave to you about item. Then think how many pages have for example facebook 'like' button which isnt only picture but script.
@aces-talking4 жыл бұрын
LOL GOT THAT AD TOO
@krupn3 жыл бұрын
IPVanish is based in US therefore is on the UKUSA Agreements on Cyber Espionage your not safe m8
@myfamily93933 жыл бұрын
"I know you guys are lazy and you're not gonna do that" 😂😂😂 this guy knows his audience too well.
@infotruther3 жыл бұрын
Not me j actually went and typed in to you search and subscribed as well. Lol
@WolfgangsChannel3 жыл бұрын
@@infotruther Did you also smash the like button? What about ringing the bell?
@SharatS3 жыл бұрын
Naah, I never refuse to watch a Tom Scott video.
@hi_champion51563 жыл бұрын
@@WolfgangsChannel Yes I smashed it!
@-bugbite3 жыл бұрын
@@WolfgangsChannel sellout
@user-rg1jp2us4o4 жыл бұрын
Thank you for 23:28 , I almost had a heart attack when my server refused to connect. Luckily I had a previous tab that I kept minimised.
@dr._pie3745 Жыл бұрын
For those watching in 2023, as he mentioned, a VPN like this won't work for changing location often, BUT this is now extremely useful if you have a Netflix account that has multiple users. Netflix recently started charging extra for users not in the same household. Give those users access to your personal VPN and BOOM! No more extra charges!!
@jef97484 жыл бұрын
Samy K's Evercookie can be used to track Tor users and Snowden revealed the NSA uses Evercookie.
@_Jonny_4 жыл бұрын
Using password authentication on SSH is encrypted, it's send over the encrypted SSH tunnel just like any other data to the SSH server. SSH Key authentication is preferred option and provides much better security, against people setting silly easy to crack passwords.
@WolfgangsChannel4 жыл бұрын
Yeah, my bad. I thought it was plain text my whole life
@marcello42584 жыл бұрын
@@WolfgangsChannel it was and in old installation it is still the case
@xaviergm4 жыл бұрын
Once upon a time, there was an exploit attempt aimed at ssh encrypted passwords. It used the time stamps of the sniffed packets that the client sent to the server upon authentication to guess the characters by the statistics of typing speed, distance between keys, etc. After someone proposed that, a random delay between packets was introduced into the routine that sends the password over... but Key auth is much safer, tho. EDIT1 - Adding the link to the paper, as some of you won’t believe it: people.eecs.berkeley.edu/~daw/papers/ssh-use01.pdf EDIT2 - In fact, SSH sends each keystroke separately because otherwise single stroke commands, such as pressing ESC in vi, would not be interpreted by the server.
@threepe04 жыл бұрын
@@marcello4258 it is still the case? no.
@threepe04 жыл бұрын
@@xaviergm that doesn't sound right. I guess I could be mistaken, but I'm fairly certain client sends the entire encrypted password at once, not as each character is typed. There wouldn't be a way during authentication to detect delays between keys.
@RTPTechTips Жыл бұрын
Nice video. Most VPN subject videos won't dare explain both sides (like covering situations where other tools fit - most vpn videos just say: "you need this, and this alone: It solves everything in the world."). Rare to see honesty on the subject - might actually be the first VPN based video where I've actually seen balance (it can be tiring). Kudos.
@fabrice98483 жыл бұрын
Thanks for sharing such an interesting content for free and with so much clarity. You deserve a lot more subscribers than people sharing their gaming sessions...
@jackt61123 жыл бұрын
Perfect! Finally someone who speaks at the speed of thought instead of raising my blood pressure wishing they would hurry up. Thanks for not digressing and just sticking to the facts. Don't changing anything. I hadn't heard of Linode. I just went there to check it out. I will use it for more than a VPN. Thanks TONS!
@soroushsafarzadeh83212 жыл бұрын
I'm a security analyst and it's the 1st time I watch your video and I already like you cause you tell the truth. You've got one more sub!
@GabrielTobing4 жыл бұрын
6:47 The fact that he recorded himself actually searching this up is hilarious XD
@ak5044 жыл бұрын
to make it realistic lol
@s92091222224 жыл бұрын
I have never known that I can do two-factor authentication with ssh until you post this video.
@fahdal-sebaey33223 жыл бұрын
11:16 shocked when I saw you have the same wallpaper as myself.. subbed because you have good taste in wallpapers.. valuable info as well keep it up
@rvoros2 жыл бұрын
Excellent summary. Don't worry about redundancy in your videos. In case of tutorials it's useful.
@odaydrums4 жыл бұрын
Unfortunately one just needs to read or listen to Edward Snowden to know especially in the US we can be easily observed
@lionelschmitt82513 жыл бұрын
anyone who thinks they are being observed by incredibly busy secret services, government bodies or whatever are just exploding with arrogance. I bet you're way too boring for that. Or you have a reason to fear them. In which case they probably should observe you!
@odaydrums3 жыл бұрын
@@lionelschmitt8251 Ah the "well if your not doing anything wrong you shouldn't mind them spying on you" defense. I am sure you're perfectly safe. You sound quite sheep like.
@lionelschmitt82513 жыл бұрын
@@odaydrums are you too dumb to make arguments? Is references to unrelated animals all you got?
@brianjohnson85493 жыл бұрын
Most videos i wouldn't trust to tell me these kinds of things, but seeing how you clearly address each claim and take it apart, and you address the counter-claims to your own argument and explain why that is wrong in such a clear way. You could call this blind faith, but i think this is one of the mos educational videos i've seen in the last 4 years. (please don't mind my grammar and capitalization errors, i just quickly wrote this to express how great this video is)
@WolfgangsChannel3 жыл бұрын
Thanks. I don’t mean it in a patronizing way, but please don’t believe someone just because they seem like they know what they’re talking about. I’m pretty sure there are a few inconsistencies and mistakes in my video.
@ASLUHLUHC33 жыл бұрын
Isn't providing your details with the vps provider a vulnerability? Shouldn't you pay for these things anonymously?
@TheZenytram2 жыл бұрын
yes it is, and this video is only for private network, you shouldnt be using this for trying to be anonymously in the web and do shade stuff, you will be fuckt.
@AnnaAnna-ry9hv2 жыл бұрын
@Mohammad Reza Exactly‼️🎯 I agree with you 100% 🏆📌
@TubbyFatfrick Жыл бұрын
If you want good VPN anonymity, might I recommend Mullvad? It has a good track record for logging (or lack thereof), only costs 5€/month, and can be paid for with cash.
@Anti-FreedomD.P.R.ofSouthKorea Жыл бұрын
@@TheZenytram so will it be sufficient enough to keep your internal network secure from very primative ISP? Where I'm living there recently was an incident where the ISP's customers' every creature personal information incl. payment infos and stuff were leaked and now being sold in the darkweb, and things won't change anytime soon so keeping at least your internal network transactions secure is unfortunately a mandatory procedure which you should do, by needlessly investing more money into which the ISP should be doing in the first place with the amount of fee they charge you anyways.
@m971204 жыл бұрын
10:25 I'm in Switzerland and I _might_ use BitTorrent a lot without a VPN. I have never been contacted by any copyright authorities nor have I heard of something like that happening to someone else. In Germany, however, the threat of receiving an "Abmahnung" from copyright lawyers with an invoice for a substantial sum is very real. And regarding "strict copyright laws": in Switzerland we have the legal right to make personal copies of any published work and share them with close family and friends. You can legally copy a book or a movie and give it to your mother. You can even hire a third-party to copy it for you.
@Kehvan3 жыл бұрын
I use Linode... been really pleased with their VPS services.
@hashkeeper4 жыл бұрын
dude learning a lot here thank you. this is definitely the way
@dherokbattleborn3 жыл бұрын
I have no idea how to do anything I just watched. Still interesting though
@seynpurrp3 жыл бұрын
same XDD
@kartikabiwara74713 жыл бұрын
I m using Http injector with free SSH from website just insert ID and password you created in the website, FREE unlimited VPN (mostly 3-7 days but you can get 30 day if your hand fast enough because in free SSH website the 30 day account will snatched in minutes). I m using "SSH ocean" website mostly.
@amansetia86553 жыл бұрын
i can watch your videos all day your voice is so Calming, one of the best channels on KZbin
@chlorobyte_projects4 жыл бұрын
I have a VPN set up on a VPS for port forwarding. Our home network is behind double NAT, so this is the only way for me to host anything on my PC.
@takkoballs52234 жыл бұрын
i was gonna do all these steps until i realized i don't know anything about coding.
@obfuscated34743 жыл бұрын
He doesn't do any coding in this video though
@RoadToFuture0073 жыл бұрын
If you know what an if-statement and a loop are doing you prety much allready know "coding". Besides, you dont have to code in this case.
@ItsYeaBoiWill3 жыл бұрын
@Karl Marx youll have to pay for it no matter what
@Pengepugeren3 жыл бұрын
Thank you so much, man! It was quite difficult to set up through Windows but it worked in the end. I used your affiliate link but, really, this video is worth much more that whatever Linode pays you.
@zachg89413 жыл бұрын
Did you use Ubuntu 20.10 or the one he used in the video? Also what did you use to edit the config? Thank you in advance.
@Pengepugeren3 жыл бұрын
@@zachg8941 I use Ubuntu 20.04 and the Neovim editor. Pretty much exactly the same setup as Wolfgang except I use the OpenVPN client for Windows.
@Image-bv3sb3 жыл бұрын
If a computer turned human, he is exactly what it would look and sound like.
@somethingsomeone96783 жыл бұрын
:c
@markzenith14413 жыл бұрын
Ouch
@mensaswede40282 жыл бұрын
Seems to me that Linode (or whatever VPS service you pick) can log your traffic. So if someone tracks your traffic to your VPS, the company that runs the VPS can tell them the identity of the person who was renting that IP address. So, it doesn’t really seem particularly anonymous.
@redactedc192811 ай бұрын
Needed to see this. Thanks for the update. Already found some info that contridicts your statements. But this is important. It means I'm looking in the right direction, so again. Thank you. Great video.
@29langston4 жыл бұрын
Great video, just wish I understood it more so I could give it a go! 😂
@zvxcvxcz3 жыл бұрын
You might need two OpenVPN servers depending on your use case. I use it sometimes for old games that try to find other users on the LAN, so for that you need a bridged interface (tap) rather than the more typical tun, but if you want to use the VPN from your phone, well, the phone clients only support tun. You can run two servers on the same machine without any issues, just with the different config files. You might also need this if you want to reach other devices on your VPN, like some printers. I'm not a fan of scripts like the road warrior one... I would if they were more careful, but my server already runs a bunch of other services and unless these scripts are written super carefully they can mess up other stuff you have running already. I guess they're fine on a fresh VM though. I'm not sure offhand if Wireguard supports a bridged setup.
@screencast7376 Жыл бұрын
This dude has intelligent humor! Subbed!
@SATSifaction4 жыл бұрын
Great tutorial and I’m a linode fan myself. However, I would recommend a VPS provider outside of the 14 eyes territory to heighten privacy if VPN is the main objective. . Otherwise great content
@locutusofborg71224 жыл бұрын
What Non-14 eyes VPS providers do you recommend?
@_VISION.2 жыл бұрын
Why do you need a VPS? I'm curious.
@_VISION.2 жыл бұрын
@@locutusofborg7122 Cyber Ghost is one
@AfricanFlightStar4 жыл бұрын
Excellent stuff thanks, wish I knew enough about coding to set one of these up for myself.
@justinhiltz42012 жыл бұрын
Love your videos man so informative and honest. Off topic but I seen a video of yours from 2020 and you had longer hair, looked awesome and I want to try it put for myself because of seeing you with it. Thanks for the great videos bro
@pandasitt74172 жыл бұрын
There are a few thing he got wrong: ISPs only have access to your IP address and the destination like he said, but that's still valuable information since third party cookies are often blocked and the only other good identification method that's left is fingerprinting. I know out of second hand that ISPs sell mapping files legally in eurpe. The IP addresses and the time can be used to connect your accounts on different platforms. There is a difference between the https encryption (128 bits) and aes-256 (256 bits). 256 is practically impossible to crack, while 128 is just still very resource intense to crack. A self hosted VPN does not really make you anonymous, if your the only person using it and the server can be traced back to you. The anonymity with a VPN comes from multiple people using the same server (and IP address).
@jeremylemans3005 Жыл бұрын
+1, one of the first things I thought when Linode was presented was: ok but now it's the Linode server that will identify us.
@TheIronSnowMan8D4 жыл бұрын
Thank you for this video WolfGang, I usually rely on typed tutorials but I thought this was so well done that you definitely deserved the full view. Was wondering how you initially got into coding? And how a newcomer may get into it?
@bloatware95684 жыл бұрын
i prefer this kind of content over gnu/linux ricing good vid!
@LuisJimenezr014 жыл бұрын
"Linux ISOs" 😂 Good one.
@magnuswright55723 жыл бұрын
Literally got an ad for Private IP VPN that used all the same marketing tactics you mentioned, I almost thought it was part of the video for a second XD
@JoseMariArceta4 жыл бұрын
It's funny seeing downloading legally obtained content turned into linux ISO's through time hahahahaha lol
@murrmiaow4 жыл бұрын
15:49 Someday I'll be grown up enough to not laugh at 69, but today is not the day 😆
@JediOfTheRepublic4 жыл бұрын
That day will never come, my friend.
@yogiballa4 жыл бұрын
I'm pretty sure the more "grown" you get, the more you will actually be able to appreciate that number HA! good luck benjamin button..
@razo55674 жыл бұрын
69 likes. Nice!
@ghostonewolf72013 жыл бұрын
😂😂😂👍
@rgarlinyc2 жыл бұрын
Thanks a ton, Wolfgang - very helpful, Roger (now a subscriber)
@alexanderdell26234 жыл бұрын
How you can be sure that ISP of your server doesnt keep logs of all traffic in dc?
@WolfgangsChannel4 жыл бұрын
You can't! That's why you use Tor for the private-sensitive stuff. Don't rely on the single point of failure solutions for something that can get you in trouble. Still, it's totally fine for Netflix or torrenting since neither Netflix nor law companies will bother tracking you that far.
@theohenson72834 жыл бұрын
While they can still take logs, it will be associated with your vps, not you
@nirmalmanoj4 жыл бұрын
@@theohenson7283 And VPS will be associated to you, directly. VPS services company will be forced to provide info about which it is obliged to provide.
@WolfgangsChannel4 жыл бұрын
@@nirmalmanoj Exactly. Please, don't use a VPN (doesn't matter whether a service or self-hosted) for any kind of illegal stuff (except for piracy). You never know whether your provider is logging your activity, but you should always assume that it does. Use Tor
@nirmalmanoj4 жыл бұрын
@@WolfgangsChannel In my opinion, a widely trusted VPN service like ProtonVPN is much better than using a VPS service to create a VPN for personal use. VPS services are perhaps worse at safeguarding your privacy than a trusted VPN that promises privacy.
@ronpaul91724 жыл бұрын
As a Network Engineer and Security Analyst, I can safely say most of what Wolfgang is saying in true. However, I can tell you that Tor is actually monitored. The NSA has control of many TOR exit nodes and retains logs for many ISPs. I can point you to numerous leaked documents proving they are pushing the security-conscientious among us, towards Tor for a reason. Snowden was used as a Trojan horse to get us Analysts into believing Tor was a safe alternative. Not to mention, you are disregarding that vPS is just as bad. The provider you go with has the exact same capabilities to monitor you as a VPN provider would.
@sonhoang23922 жыл бұрын
You've actually got so quality stuff on your channel. Keep that up man!
@alterguy43274 жыл бұрын
For Mobile Users Timestamps: 00:00 Introduction 00:33 "But I only use VPN for Netflix..." 01:28 Everything wrong with the VPN services 01:49 "Your ISP is spying on you!" 02:27 "Open Wi-Fi networks are dangerous!" 02:39 Military Encryption (tm) 03:28 "We will never keep logs or sell your data!" 04:03 PureVPN and Schroedinger's logs 05:09 PrivateInternetAccess acquisition 05:23 NordVPN 2018 breach 05:50 What are the alternatives? 06:00 Tor 07:25 Self-hosted VPN 07:39 VPN services vs. Self-hosted VPNs 08:58 Choosing a VPS provider 09:18 Virtualisation technology 09:49 Dedicated IPv4 address 10:11 Location 10:43 My choice of the VPS provider 11:25 Creating an account (The tutorial starts here) 11:45 Creating a VPS 12:37 Generating SSH keys 13:46 Updating the packages 14:07 Creating a non-root user 15:04 Configuring SSH 17:14 Installing and configuring OpenVPN 20:50 Installing mosh 21:14 Two-factor authentication 23:53 Automatic updates 25:11 Conclusion
@WolfgangsChannel4 жыл бұрын
Thanks, but the timestamps are also in the description...
@adriansuhr4 жыл бұрын
Somebody ask how does AES, DES, VPN technology secure their data? answer: Intel Management Engine (ME)=wide open for us!
@rudraprasad50224 жыл бұрын
Dude
@paulcassidy45593 жыл бұрын
Yeah... ugh. Hoping so fervently that open source RISC CPU designs start to gain traction soon. Intel can fucking rot (and AMD are realistically no better). All that said though I still think it's worth it for people to become literate in these technologies and even proficient in setting up tools for themselves in the meantime. True equity comes from proficiency & skill, and knowledge is power yadda, yadda.
@Kafaaar2 жыл бұрын
I love the way you talk, it's very relaxing
@FriendlyNeighborhoodNitpicker4 жыл бұрын
Nice video man, but at 12:25 or so, you say that passwords will be sent unencrypted-In the clear. That just isn’t true. SSH never sends passwords in the clear. Now it is true that if you use passwords instead of public keys, your server can much more easily be hacked, but that’s not because the password is sent in the clear. It’s just because passwords are easier to guess using sophisticated password cracking tools. If you use a password that is over 12 characters long, maybe 20 or 30 characters, including non-dictionary words, your password will be pretty secure and not able to be broken by the current generation of cracking technologies running on GPUs or FPGAs. That said, there is no good reason not to use a public key. However please don’t give out miss information like passwords are sent in the clear.
@yogiballa4 жыл бұрын
why is there no follow up to this by wolfgang?
@RAZR_Channel3 жыл бұрын
Good info ... BUT : in the end your just trading 1 VPN Service for another.... hahhhaha
@thepunisher29133 жыл бұрын
I was on the fence at first but this turned out to be very informative for a security
@abdullam34434 жыл бұрын
I've Been Waiting This, Thanks !! But How Can You Trust These VPS Servers,isn't it the same as trusting vpn servers? Many Thanks
@afdkj78634 жыл бұрын
VPS Servers aren't safe... at all. They are actually much more dangerous to your information than any VPN, because VPS can see and log EVERYTHING you do. But he is sponsored, so he will not mention that
@WolfgangsChannel4 жыл бұрын
@@afdkj7863 I actually did mention it quite a few times in response to other comments. VPS servers can also potentially log or monitor the traffic, just like any other gateway on the Internet. That's why you use Tor for the private-sensitive stuff. Don't rely on the single point of failure solutions for something that can get you in trouble. However, unlike VPN servers you can be sure that the VPN itself doesn't store logs, the binary isn't compromised and the server itself is properly secured.
@kornilius2 жыл бұрын
@Wolfgang's Channel And what's the point of sureness in your vpn server program? It's like you don't have security cams inside of your house but you have plenty outside of every door and window. And the end result is the same: anything going in and out are monitored exactly as with logging vpn server. Even worse, VPS providers are openly stating in their privacy policy that they collect a lot of information about you, which VPNs are at least trying to persuade you they hiding.
@SakkakuTamashi4 жыл бұрын
Yeah yeah all the stuff... IS THAT GNOME? (mine was just a joke, I didn't mean to start a DE war >.
@kevynoliveira4 жыл бұрын
at this point I'm happy he's using Linux at least
@maxarendorff65214 жыл бұрын
He's also using hackintosh in the video. Somehow he's juggling linux, macos and windows, lol.
@bogdantb61364 жыл бұрын
So? A lot of pro devs use gnome, including Linus. Not everyone enjoys ricing.
@Euphorya4 жыл бұрын
He made a video about Gnome
@alessandroferrari46994 жыл бұрын
bogdan t b using a tiling window manager is not ricing, it’s just better, but it takes more time to learn how to use them
@baldri4n5962 жыл бұрын
hey Wolfgang, first of all thanks for the Video it helps a lot to understand more about VPNs. But a small note you showed an article from DW at 10:24 that interviewed few people from the "Piraten Party" the comments from these people sounds fine but we should not forget that the "Piraten Party" is a satire party in Germany (for example they demand a "beer price brake"). All in all I don't think the article is the best to show the problems we have with copyright laws in german speaking countries. Thanks for the Video. Greetings from Germany
@WolfgangsChannel2 жыл бұрын
They also advocate for fast internet for every household and abolishing astronomical fines for torrents, so 💁♂️
@lemlem_net1462 жыл бұрын
I think you are confusing the "Piratenpartei" with "Die Partei". "Die Partei" is a satire party, the "Piratenpartei" is a normal party (as far as i know).
@sketchysim53514 жыл бұрын
Yeah uh, recently, my wonderful president decided to threaten us with "shutting the social media down" just because this brilliant person got a hate comment in his tweet Bruh
@user-iu3ii8sq6t4 жыл бұрын
sounds like trump, he's a whiny entitled senile baby
@crashniels4 жыл бұрын
Probably talking about Germany here. They wanted to shut it down and only people can access if they linked their ID.
@nopicture15664 жыл бұрын
@@crashniels source?
@OutplayedChad4 жыл бұрын
"i personally like to use port 69" ha !
@youKnowWho33114 жыл бұрын
I call that running parallel ports
@erhode52102 жыл бұрын
Really great tutorial! You just forgot to mention that for most VPS, using port 69 for ssh will require to open this port on you virtual machine firewall =)
@cru3lladevi11e2 жыл бұрын
how is that done?
@ExecuteDemocracy4 жыл бұрын
I'm a newbie to all things related to coding. I'm learning SQL and Python and how API's work. But how did you learn about this? Can you give me some pointers on how you learned all this? What books have you read? Do you have any recommendations on where I should start? Warmest regards M
@rishabhmalhotra15424 жыл бұрын
These are very broad concepts that includes various different concepts. First you should learn and master the basics. Then go for concepts like Operating Systems, Computer Networks and Database management system. After doing all there you will have a thorough knowledge of how things actually work and using that information you can really choose your interest more specifically. Like if computer networks interest you, you can go for projects in that and learn web development, cyber security and network engineering. Create projects, use the things you learned and don't limit yourself in one coding language or such stuff. Be flexible in what you use. Never stop learning and say you can't do this literally everything is one google search away.
@an41684 жыл бұрын
Everyone else trying to get more security Me and the bois selling our own data
@blair54754 жыл бұрын
No one is going to pay you for ur own data when they can get it for free
@lyon83112 жыл бұрын
This tutorial is amazing and you are really good at teaching !! great job sir !
@TheNorthRemember4 жыл бұрын
11:53 Seinfeld
@Massada424 жыл бұрын
If the vpn is hosted on Linode, can't Linode still see the traffic going to the vpn server?
@WolfgangsChannel4 жыл бұрын
Yes, they can. As I mentioned in the video, Tor is a much better option for privacy-sensitive use cases. However, with a selfhosted VPN you have more control than on a VPN service, and that's good, even for stuff like torrenting and Netflix.
@Massada424 жыл бұрын
Wolfgang's Channel ah ok, thank you
@ipheart4 жыл бұрын
@@WolfgangsChannel Except you can't watch Netflix on a linode VPN since Netflix/Disney blocks data center originating connections like these in the US. At least that was my experience. I was kind of hoping that would not be the case.
@KHROME2463 жыл бұрын
The only youtuber that uses air quotes correctly.
@kmabadshah88234 жыл бұрын
I was looking for Hello World :(
@ruripapi4 жыл бұрын
? You mean print hello word or what
@kuhluhOG4 жыл бұрын
13:08 hmmm, last time I check ssh was installed by default on Windows 10
@WolfgangsChannel4 жыл бұрын
I had to install it separately on my Win10 machine. Weird
@kuhluhOG4 жыл бұрын
@@WolfgangsChannel maybe it's because of the edition? like a difference between Home, Pro and Enterprise?
@nyxkrage4 жыл бұрын
If you install git, you get ssh installed to your path as well. That is likely why.
@bambam00992 жыл бұрын
Fantastic video! You do such a great job that even semi-newbies can follow along easily. Thank you for your hard work.