Self Hosted WireGuard VPN on OpenBSD

  Рет қаралды 91,999

Mental Outlaw

Mental Outlaw

Күн бұрын

Setting up a WireGuard VPN Server on OpenBSD with a Linux client.
Get yourself a Vultr VPS today
www.vultr.com/...
₿💰💵💲Help Support the Channel by Donating Crypto💲💵💰₿
Monero
45F2bNHVcRzXVBsvZ5giyvKGAgm6LFhMsjUUVPTEtdgJJ5SNyxzSNUmFSBR5qCCWLpjiUjYMkmZoX9b3cChNjvxR7kvh436
Bitcoin
3MMKHXPQrGHEsmdHaAGD59FWhKFGeUsAxV
Ethereum
0xeA4DA3F9BAb091Eb86921CA6E41712438f4E5079
Litecoin
MBfrxLJMuw26hbVi2MjCVDFkkExz8rYvUF
Dash
Xh9PXPEy5RoLJgFDGYCDjrbXdjshMaYerz
Zcash
t1aWtU5SBpxuUWBSwDKy4gTkT2T1ZwtFvrr
Chainlink
0x0f7f21D267d2C9dbae17fd8c20012eFEA3678F14
Bitcoin Cash
qz2st00dtu9e79zrq5wshsgaxsjw299n7c69th8ryp
Etherum Classic
0xeA641e59913960f578ad39A6B4d02051A5556BfC
USD Coin
0x0B045f743A693b225630862a3464B52fefE79FdB
Subscribe to my KZbin channel goo.gl/9U10Wz
and be sure to click that notification bell so you know when new videos are released.

Пікірлер: 351
@chralexNET
@chralexNET 2 жыл бұрын
Thanks for keeping your titles accurate, I might use them as a starting point at some point, so that makes it easier to find them.
@entelin
@entelin 2 жыл бұрын
Two important things that were not mentioned: Wireguard in-kernel support was first available in linux, it was recently merged in upstream openbsd, it's currently experimental on windows. I think there were software implementations on openbsd before the kernel support, so you'll want to ensure you are running a very recent kernel, and whatever you need to do to ensure you're running the kernel module for it to get the advertised performance. This probably isn't terribly relevant on slower internet speeds, but may be on slower vps. Secondly, and more importantly, keep in mind that while a vpn may provide a secure connection between two endpoints, if you are concerned about privacy you can go ahead and toss that out of the window once that traffic hits a cloud service provider. Also don't assume your cloud vps is secure from the provider itself. If you are setting it up in this way your firewall rules at home should be such that you are treating the endpoint as a potentially hostile computer, grant no access back to your own services unless you need to. This kind of setup can be useful in certain cases though, to bypass geoip restrictions on videos, for remote work on the vps, etc. However the primary usecase from a security perspective is going to be creating a tunnel between two trusted endpoints, for example, your home and a laptop.
@tacitus_
@tacitus_ 2 жыл бұрын
Good info.
@cannaroe1213
@cannaroe1213 2 жыл бұрын
I don't know wireguard as well as OpenVPN, but there are ways in OpenVPN to limit which VPN clients can talk to whom, on what ports, blah blah blah, because like you say from a industry point of view the VPN server is what's trusted, and all the personel connecting in are untrusted because their laptop might have been stolen, hacked, etc. But I imagine all of that could also be done through iptables/ipfw. The thing i think that wasn't mentioned in quite as much detail as i'd like is some background on the differences in the crypto protocols used, although that would be a series in its own right lol. Some of the wireguard crypto i've heard of before, but most not.
@entelin
@entelin 2 жыл бұрын
@@cannaroe1213 Generally the way you would do this on wireguard is with firewall rules at both sides. Wireguard provides a secure tunnel, but that's basically it.
@blakkheim
@blakkheim 2 жыл бұрын
"it was recently merged in upstream openbsd" huh? wireguard has been in the kernel for over two years now
@entelin
@entelin 2 жыл бұрын
@@blakkheim 2 years falls within my definition of recent personally. Like I said, there was a software implementation before that, so if you have a preexisting system, it's worth making sure you are recent enough to have the kernel module.
@trayambakrai
@trayambakrai 2 жыл бұрын
These deepfakes are so realistic. Can we have a tutorial on how to generate them, Luke?
@Degenerate76
@Degenerate76 2 жыл бұрын
I think it's a realistic latex jogger skin-suit. They cost $500+.
@lanpartylandlord6123
@lanpartylandlord6123 2 жыл бұрын
dumbest joke
@trayambakrai
@trayambakrai 2 жыл бұрын
@@lanpartylandlord6123 Okay and?
@lanpartylandlord6123
@lanpartylandlord6123 2 жыл бұрын
@@trayambakrai dumbest response
@newtonbomb
@newtonbomb 2 жыл бұрын
If it's not a deepfake then I swear they have to be roommates or something. I swear I've seen that room in one of Luke's videos before lol
@gaminggamingtm
@gaminggamingtm 2 жыл бұрын
This is Drake in a different, alternate universe.
@hamwasntavailable
@hamwasntavailable 2 жыл бұрын
bruh literally what i thought LOL
@Don_XII
@Don_XII 2 жыл бұрын
Drake wishes to be this BASED.
@bubbly6379
@bubbly6379 9 ай бұрын
Is he still packing in this universe?
@SYN990
@SYN990 8 ай бұрын
Take it back
@MuhammadSalman7236
@MuhammadSalman7236 Ай бұрын
Drake without the corny
@subnumeric
@subnumeric 2 жыл бұрын
I like this OpenBSD content, please make more! I've wanted to get into BSDs and OpenBSD specifically but found out that it's unfortunately nowhere near as covered as Linux on KZbin. Thanks!
@psymantz
@psymantz 2 жыл бұрын
The BSD's have a different way of promoting themselves. You can get most of the help through forums or their official mailing lists..
@saumitit944
@saumitit944 2 жыл бұрын
On a previous video he did mention many OpenBSD channels like The OpenBSD guy (also on Odysee) Root BSD (also on Odysee) Zaney
@thiagovieira8569
@thiagovieira8569 2 жыл бұрын
dude that fade is SHARP!
@nandoxus
@nandoxus 2 жыл бұрын
BSD stands for Based Secure Distribution.
@trollerjakthetrollinggod-e7761
@trollerjakthetrollinggod-e7761 2 жыл бұрын
I wouldn't call it based, it's a cuck license.
@zweitekonto9654
@zweitekonto9654 2 жыл бұрын
It should be openSSD
@DavidNwokoye
@DavidNwokoye 2 жыл бұрын
*BASED*
@derex47
@derex47 2 жыл бұрын
Based.
@00wx
@00wx 2 жыл бұрын
*B* a *S* e *D*
@WACdeG
@WACdeG 2 жыл бұрын
Really liked how you clearly said that the link vultr link is an affiliate link.
@Azazog
@Azazog 2 жыл бұрын
Only KZbinr I religiously follow now, never feel like he's out there to milk his subscribers for all they're worth and that just makes me want to support him more.
@alexlopez5800
@alexlopez5800 2 жыл бұрын
If drake had a smart, programming, long lost gym bro brother...
@greuju
@greuju 2 жыл бұрын
Bro I never new what you looked like. Kettlebell brother! Turkish get ups are my favorite.
@adrianfisher3349
@adrianfisher3349 2 жыл бұрын
I love how OpenBSD has most things that are needed preinstalled as part of the base installation, all of which is audited line by line several times a year. It has unbound and nsd for DNS, httpd for web server, a standard dhcpd server, e-mail server code, and more. It doesn't have a database system like mysql or postgresql, etc but that can be added.
@Elhamidi0249
@Elhamidi0249 2 жыл бұрын
Yeah, I like the fact OpenSMTP for emailing is part of the base system as well as a bunch of other userspace programs and their daemon counterparts.
@adrianfisher3349
@adrianfisher3349 2 жыл бұрын
@@Elhamidi0249 It makes it easy and convenient to use nothing but a base install for a network device like a firewall or DHCP, and/or DNS server, etc. I like using my t as an ad and/or domain blocker without the need to install something like pi-hole.
@Elhamidi0249
@Elhamidi0249 2 жыл бұрын
@@adrianfisher3349 It also makes a good desktop OS thanks to X11 and 3 window managers to choose from coming preinstalled with a default config.
@adrianfisher3349
@adrianfisher3349 2 жыл бұрын
@@Elhamidi0249 I've been using it as my daily driver for years now. It's good for productivity because it doesn't allow me to waste time on Netflix or Prime Video, etc :D I wish it had better support for Latex though.
@Elhamidi0249
@Elhamidi0249 2 жыл бұрын
@@adrianfisher3349 I also plan to daily drive it as I am doing this right now mainly to move away from GNU/Linux because even something like GNU/Linux comes with add-on features and apps you really don't want to have on your daily driver. Sure, they make your life easier on your desktop but here's the thing: You don't need them at all, at least 99.9% of the time and if you do then it's the 0.1% of the time you actually need it. But I also want to learn and understand computers and operating systems in general better and that's a thing I personally struggle with GNU/Linux. Sure, GNU/Linux gives you the foundational knowledge of how an OS built off from which components but it feels like a salad bowl of tools smashed together and forceably mixed into one pot expecting everything works OOTB everything magically being very well integrated. That's also my little nit pick with FreeBSD too but on FreeBSD the devs put actually a good amount of work into the OS to make everything work together and fine-tune the base system components. The only thing is when you install apps from the ports tree they don't integrate very well into your FreeBSD install. Docs aren't so well integrated into the base system as in form of man pages but you got the FreeBSD Handbook which is your Arch Linux Wiki, only just for FreeBSD instead for Arch Linux. But nonetheless both operating systems are top-notch, I used to use NomadBSD, a desktop FreeBSD derivative for USB flash drives with a custom Openbox setup and a carefully selected suite of everyday needed desktop applications, before switching over to OpenBSD and they made a really good job bringing FreeBSD to the mobile desktop computing market, everything works OOTB with everything you (don't) need (depends on how you view it), installation was remarkably easy thanks to their custom installer, hell, you could even choose you favorite apps right on while you installing your system like your favorite graphical file managers, browsers, both command-line and graphical text editors and more. Another cool thing is, since you sacrifice only a USB flash drive you don't touch your hard drives/(NVMe) SSDs installed into your computer. And NomadBSD is free and open source like every BSD out there. Of course I could also install FreeBSD on a flash drive and build my custom desktop from there, which I will definitely do at some point, but NomadBSD is an OOTB solution as I mentioned before and for exploring what FreeBSD could look and feel like it on a daily driven desktop is fantastic. I highly recommend it over other ready-to-go desktop BSD options like GhostBSD, derived from TrueOS and PC-BSD, both of which are defunct FreeBSD forks aiming at desktop users - GhostBSD is the only fork who has survived bringing a pleasant desktop experience thanks to their custom software repos and MATE as the default DE - and MidnightBSD, a fork of FreeBSD v4.4 to bring FreeBSD to the desktop user masses.
@Peter-vj7bs
@Peter-vj7bs 2 жыл бұрын
@Mental Outlaw Great content! I think the community would love if you'd build on this how to add Pi-hole and Unbound on top of this server! There are many config mistakes that are easy to make when adding DNS routing from one service to another and especially Pi-hole is cool but can be a bit quirky with the others. Anyway, thanks for the work you put in to help people with opsec. If you'd create scripts for the setup it would be quicker to replicate but ofc can be a bit more work.
@Peter-vj7bs
@Peter-vj7bs 2 жыл бұрын
@endofsummer Really? Why is that? Some dependencies missing or some configs that the OS doesn't allow you to touch?
@FoxTheSaw
@FoxTheSaw 2 жыл бұрын
Looking jacked, man! Great vid.
@yura2110
@yura2110 2 жыл бұрын
hey dude, just want to tell you that i love you and your videos ! keep going
@nxnu2119
@nxnu2119 2 жыл бұрын
Listen to your gut as far as your title and thumbnail ....I'm watching like and commenting no matter what my bro.
@minineji7050
@minineji7050 2 жыл бұрын
Damn the deepfake is getting immensely buff 💪💪💪 keep it up
@mrfoodarama
@mrfoodarama 2 жыл бұрын
Just finishing up my Peers on my own few WG installs, great timing! Looking great btw, looks like you've really made some impressive gains!
@blubaustin1
@blubaustin1 2 жыл бұрын
Love your videos mental outlaw, maybe you could give us some cool pfsense or openwrt videos too! Keep up the good work!
@notorious_mig7878
@notorious_mig7878 2 жыл бұрын
watched the first 10 seconds on the thumbnail and immediately clicked. +1 for the GOAT
@JamesWilson01
@JamesWilson01 2 жыл бұрын
An ironclad server by a deepfake gigachad. This is highly impressive stuff! 👊😁
@BeansEnjoyer911
@BeansEnjoyer911 2 жыл бұрын
love the retro pc in the background
@cyphercrypto8922
@cyphercrypto8922 2 жыл бұрын
I appreciate the good content you produced. Keep up the great work.
@philipmrch8326
@philipmrch8326 2 жыл бұрын
Vultr is also my go-to place for a VPS
@szaszm_
@szaszm_ 2 жыл бұрын
If you're going to such great lengths for security as using OpenBSD, then maybe you should consider hosting the services on your own hardware and software image. The cloud provider (or whoever hacked them) could have placed backdoors in any software, maybe even in the hardware.
@unreleasedjuicewrld9792
@unreleasedjuicewrld9792 2 жыл бұрын
Explain what you mean? I want to make my own VPN , can I spoof location to the North Pole? Can I make the ISP name say anything I want?
@szaszm_
@szaszm_ 2 жыл бұрын
@@unreleasedjuicewrld9792 If you only care about spoofing your location, then security probably isn't a great concern, other than preventing your server to become a part of a botnet, or do nasty things. You can use a cloud provider to buy a VPS on the North Pole, and install whatever OS and VPN software you want. The ISP name will be whatever ISP is used for your server though. My point is that if you're so security conscious that you choose OpenBSD over say Linux, then you probably have extremely high privacy expectations (e.g. investigative journalism, activism, or criminal activity), and can't afford to trust any cloud provider. In that case you probably also want to fully control both the hardware and the software stack, and not use VPS or OpenBSD images from your cloud provider.
@unreleasedjuicewrld9792
@unreleasedjuicewrld9792 2 жыл бұрын
@@szaszm_ why do I actually need to buy a VPS at the North Pole? How does it know it’s at the North Pole? Surly it can be spoofed? When I used Tor one time I looked at my IP, and it was in the middle of the ocean and the ISP name was also custom & the IP numbers seemed somewhat customized too.
@szaszm_
@szaszm_ 2 жыл бұрын
@@unreleasedjuicewrld9792 Geoip. When using a VPN, you're masking your own IP address by routing your traffic through the VPN. The other endpoint therefore only sees the VPN server connecting to it, not your home IP address. Tor is a different story, there you use the exit node's IP address in a similar way, except there are more hops inside the network, and it's less traceable.
@xiaowong6651
@xiaowong6651 2 жыл бұрын
0:15 indeed our guy
@sprite_goblin
@sprite_goblin 2 жыл бұрын
Have you considered ever doing a video on pfSense? It's an open source modem OS based on freebsd, you can buy modems with it pre-installed or you can build a cheap PC with a nice NIC card and install it on there. The security features are really extensive, it's a huge upgrade for anyone using standard modems to manage their network.
@markcx5461
@markcx5461 2 жыл бұрын
Well thats a first for seeing what MentalOutlaw looks like
@christopherroberts2986
@christopherroberts2986 2 жыл бұрын
2:40 Wireguard is a UDP only protocol anyway so blocking that is fairly easy by resticting outbound UDP. DPI firewalls can tell if your UDP 443 traffic is using QUIC or Wireguard and decide if it wants to drop or pass that traffic. If you want to hide the fact that your using a VPN is an obfuscation proxy of some sort. I was using a guest network that doesnt allow VPNs for some damn reason. I tried using Wireguard and that failed to connect. I then tried my backup openVPN server on 443 and the handshake completes and the connection established but it immediately disconnects. Ive looked into what was going on and I found that they are using a PaltoAlto firewall does a TCP reset attack against my open VPN connection. To get around this I've reconfigured openVPN to sit behind Stunnel proxy to mask the openVPN handshake by wrapping it in an TLS tunnel. Works flawlessly for me.
@ArismaShorts
@ArismaShorts 2 жыл бұрын
Bros looking like a giga Chad meme person
@main-browsing5521
@main-browsing5521 2 жыл бұрын
bruh was just searching how to setup a vpn on linode. Thanks man!!!
@brandonbaldwin3095
@brandonbaldwin3095 2 жыл бұрын
I can assure that wire guard is one the best line encryptions available, wireshark can only identify the protocol and no info other than that.
@KutAnimus
@KutAnimus 2 жыл бұрын
You're joking, right? Identifying the protocol means that it can be easily blocked by overzealous sysadmins.
@cannaroe1213
@cannaroe1213 2 жыл бұрын
@@KutAnimus Better to be blocked than cucked
@richiekho8938
@richiekho8938 2 жыл бұрын
never know he is a giga chad all along
@Reth_Hard
@Reth_Hard 2 жыл бұрын
Should we expect to see you sponsoring every KZbinrs very soon? :P
@JoshuaBlais
@JoshuaBlais 2 жыл бұрын
Used this to setup an openbsd box, thanks Kenny!
@candydopeman3339
@candydopeman3339 2 жыл бұрын
This's what I've been thinking of. Verry good
@TadanoHitohito
@TadanoHitohito 2 жыл бұрын
For those who are concerned about tracking, my major American state university still has not blocked Tailscale or WireGuard VPNs on the student network, so most IT people probably do not know about it.
@subnumeric
@subnumeric 2 жыл бұрын
This never made any sense to me, why do they do this? Doesn't this impair learning for CS students?
@TadanoHitohito
@TadanoHitohito 2 жыл бұрын
@@subnumeric they do not really care. if you get your gear, you are good.
@Karlsefni-e1s
@Karlsefni-e1s 2 жыл бұрын
Fr thought this was Jayson Tatum for a sec
@user-df1gs1kf8w
@user-df1gs1kf8w 2 жыл бұрын
Happy Canada day guys!
@Elhamidi0249
@Elhamidi0249 2 жыл бұрын
Finally, more OpenBaSeD content on this channel. @MentalOutlaw Great work!
@ARV1999
@ARV1999 2 жыл бұрын
love the hair. very clean cut.
@MrFujinko
@MrFujinko 2 жыл бұрын
watch out for that bicycle on the window, thing looks spooky af
@brennanlaurent4748
@brennanlaurent4748 2 жыл бұрын
He looks different from what I imagined
@brennanlaurent4748
@brennanlaurent4748 2 жыл бұрын
@@cool-soap I thought he was a anime girl
@Cheddarswiss21
@Cheddarswiss21 2 жыл бұрын
thanks for this video, helped guide me along with hardening my box
@Sunnywastakentoo
@Sunnywastakentoo 2 жыл бұрын
Definitely gonna do something like this although I’ve got the musks latest starlink, which has no support for a static IP, so I’ve gotta do some black magic to figure that out.
@Shotblur
@Shotblur 2 жыл бұрын
Dynamic DNS
@highvisibilityraincoat
@highvisibilityraincoat 2 жыл бұрын
For self hosting services?
@entelin
@entelin 2 жыл бұрын
Only the wireguard server requires a static, so in outlaws example, the vps server should be the wireguard server.
@jackdonovan5435
@jackdonovan5435 2 жыл бұрын
Man's looking jacked
@MrCodix
@MrCodix 2 жыл бұрын
wow you've gained a lot of muscle since i last saw you in one of your videos, maybe you can start doing fitness videos too.
@-someone-.
@-someone-. 2 жыл бұрын
The source code of your diet... that’s the key to success & an impenetrable mind 👊💪
@toxicwxste
@toxicwxste 2 жыл бұрын
Please make a video about Element and the Matrix protocol, and hosting a home-server with Synapse and Coturn. You have to use SSL for TLS connections and it's overall a really solid messaging platform. Check it out!
@zanyaboutit
@zanyaboutit Жыл бұрын
Unimportant question out of curiosity: Why it shows Belgium when you borrowed New Jersey server? Just an incorrect info from the ip check site?
@Catge
@Catge 2 жыл бұрын
Excellent tutorial Luke 👌
@ungingerzzz
@ungingerzzz 2 жыл бұрын
Jason Tatum got into IT
@worldwide_wes
@worldwide_wes 2 жыл бұрын
😂
@remke5137
@remke5137 2 жыл бұрын
Honestly idk where the deep fake meme came from, but it's still a classic. Honestly your channel is pretty different than Luke's
@tylerdean980
@tylerdean980 2 жыл бұрын
In 10 years maybe we'll see black luke walking in the woods ranting about God and linux, I can only hope.
@trollerjakthetrollinggod-e7761
@trollerjakthetrollinggod-e7761 2 жыл бұрын
It would be cool to see a tutorial for Bitwarden, NextCloud, and email servers on OpenBSD.
@lazerusmfh
@lazerusmfh 2 жыл бұрын
I was hoping to get a wireguard video based on open bdsm but this will have to do
@DesignWithTommy
@DesignWithTommy 2 жыл бұрын
KZbin didn't recommend this to me. had to find it in your recent uploads.
@JustSomeAussie1
@JustSomeAussie1 2 жыл бұрын
looking jacked af
@godnyx117
@godnyx117 2 жыл бұрын
ChadBSD content! Good job brother!
@richardfreeman724
@richardfreeman724 2 жыл бұрын
These deepfakes are getting really good. Good job M8!!!
@ohgodmanyo4662
@ohgodmanyo4662 2 жыл бұрын
Guacamole moment
@anesbelarbi6900
@anesbelarbi6900 2 жыл бұрын
Oh Jason Tatum got a beard now damn
@echoptic775
@echoptic775 2 жыл бұрын
U mention that u think its a good protocol. Just curious do u have any security background, not asking to be rude or anything, just realized i dont know were you doing before youtube?
@MentalOutlaw
@MentalOutlaw 2 жыл бұрын
Network engineering, so yeah I have some security background but not as much as penetration testers (although one of my good friends is a pen tester)
@echoptic775
@echoptic775 2 жыл бұрын
@@MentalOutlaw oh cool i didnt know that
@c.j.hatton
@c.j.hatton 2 жыл бұрын
6:57 it says you have an intel cpu, but you selected an amd cpu
@lilcheaty
@lilcheaty 2 жыл бұрын
amd64 stands for the x86 or x64 architecture itself, it doesn't mean that its running something made for amd
@xaltotunacheron7544
@xaltotunacheron7544 2 жыл бұрын
Very similar of what i use, good stuff
@MrRetinas
@MrRetinas 2 жыл бұрын
What I want to know is are the rooms of every American always painted light grey with white woodwork?
@vulkunvision
@vulkunvision 2 жыл бұрын
Im not gonna lie, we look extremely similar
@GrandePirataCibernetico
@GrandePirataCibernetico 4 ай бұрын
90% of comments about Mental Outlaw surprising appearance 10% about self-hosting a VPN
@thomasslone1964
@thomasslone1964 Жыл бұрын
I wanted to do an fpga device that sits between your modem and isp that silently analyzes your traffic and connects to your pc with an expansion slot to verify traffic but I'm really not a hardware guy
@tylerdean980
@tylerdean980 2 жыл бұрын
Would something like this be sufficient coverage for torrenting if self hosted, or would it be better to use something in a different country?
@josesosa1017
@josesosa1017 2 ай бұрын
Thank you brudda!
@vicaf1617
@vicaf1617 2 жыл бұрын
Will definitely do this once I have time. I have a spare raspberry pi lying around I think its gonna be perfect for this.
@tanmaypanadi1414
@tanmaypanadi1414 2 жыл бұрын
that spare raspberry Pi is worth gold right now.
@vicaf1617
@vicaf1617 2 жыл бұрын
@@tanmaypanadi1414 bro wtf just checked their price. Didn't know they got this expensive. Might have to go for those chinese alternatives if I ever need one.
@tntrent6932
@tntrent6932 2 жыл бұрын
never new he was a face youtuber, *cough cough* giga chad.
@The404Studios
@The404Studios 2 жыл бұрын
I believe the PS4 operating system is based off of OpenBSD
@𪛗
@𪛗 2 жыл бұрын
Orbis OS uses various FreeBSD components such as the kernel, TCP/IP network stack and other stuff. Also a webkit-based web browser and they're restricted to only use MIT/BSD licensed software due to them not wanting to contribute anything back which is something the GPL required you to do so. Same thing with other mega corpo's software like Apple's macOS/iOS, Nintendo's Horizon OS, Google's Android/Chrome OS (the only GPL licensed software bundled with Android and Chrome OS is the linux kernel, obviously that's an exception but they're forced to contribute anything back they do to it). No OpenBSD involved in there.
@𪛗
@𪛗 2 жыл бұрын
Also, why did you and lucky stopped collaborating together? it has been fun watching the onetap vods
@The404Studios
@The404Studios 2 жыл бұрын
@@𪛗 I confused open BSD With FreeBSD
@The404Studios
@The404Studios 2 жыл бұрын
@@𪛗 we still talk I just haven’t been in a KZbin scene For a little bit
@robobrain10000
@robobrain10000 2 жыл бұрын
I didn't watch the video past the 2 minute mark. How useful is this for say downloading from the high seas?
@johnyferreira8733
@johnyferreira8733 Жыл бұрын
I self host WireGuard using docker. It’s easy, simple and secure.
@ligmaballs674
@ligmaballs674 2 жыл бұрын
The like and comment to hack the algorithm is very important
@NotoriousArnav
@NotoriousArnav 2 жыл бұрын
Didnt understood a thing, might need to rewatch, but great job
@ghans2305
@ghans2305 2 жыл бұрын
I should try this, I've been using wireguard for years but I use a CentOS vps to host my vpn
@fewstr
@fewstr 2 жыл бұрын
quality content but please fix your microphone. good video might do this some day :)
@TheHrabik
@TheHrabik 2 жыл бұрын
thanks for the video! any plans making one on split tunneling with regards to self hosted wireguard VPN?
@kirya312
@kirya312 2 жыл бұрын
Kenny@archlinux??? What happened to the gentoo kenny?
@flaviosnow8808
@flaviosnow8808 2 жыл бұрын
Are you doing packages on the background?
@RealMattCook
@RealMattCook 2 жыл бұрын
Thanks for your wonderful videos. The Vultur AUP is very poor and says you can’t post anything that is “Offensive Content. Content that is harmful to minors in any way, defamatory, libelous, obscene, abusive, threatening, discriminatory, harassing, invasive of privacy, false, intentionally misleading, patently offensive, or otherwise objectionable” Which I think is bogus. I like to work with hosting companies who just say you can’t do anything illegal or that tries to bypass their policies. The “offensive” thing opens you up to having them shut you down for any reason.
@RealMattCook
@RealMattCook 2 жыл бұрын
Linode’s AUP is much better. “Abuse. The Services may only be used for lawful purposes. You shall not use any Service to engage in, foster, or promote illegal, abusive, fraudulent, or irresponsible behavior, including without limitation: Creation or distribution of unsolicited bulk email and mailing lists; Creation of an account after being previously terminated by Linode without our prior written permission; Disruption or interference of any data system or network, computer or communications system, software application, or network or computing device; Monitoring data or traffic on any network or system without the express authorization of the owner of the system or network etc.”
@orlovskyconsulting
@orlovskyconsulting 2 жыл бұрын
Hey @Mental Outlaw can you do some price services overview.
@mossie125
@mossie125 9 ай бұрын
I see that OpenBSD is not available on AWS Lightsail. FreeBSD is available, whould that be fine to use?
@roymarron7622
@roymarron7622 2 жыл бұрын
Is this Jayson Tatum from Boston Celtics?
@scoringdigitsson.5194
@scoringdigitsson.5194 2 жыл бұрын
We need a video on the recent kungfu panda bear and winnie the pooh scandal!
@jungermeister4940
@jungermeister4940 2 жыл бұрын
What do you think about Waterfox it's really important 'cause I uninstalled firefox but now I am not sure whether it was a good decision or not
@saitamapreetsingh3057
@saitamapreetsingh3057 2 жыл бұрын
ayo my man got a fresh cut
@chrishears
@chrishears 2 жыл бұрын
I'm trying to get WireGuard operational on my Pi. Would this set up work similarly with PiVPN?
@xtremecoding4005
@xtremecoding4005 5 ай бұрын
Didn't he deploy an AMD box? Why neofetch says Intel?
@Deniil2000
@Deniil2000 2 жыл бұрын
I wonder, is it possible to develop a protocol that would work below TCP/IP or UDP and would encrypt port numbers, so that local and remote port numbers are only known to sender and reciever, but not to devices in the middle
@tgr5588
@tgr5588 2 жыл бұрын
Should be doable. I think you can even stop sending port numbers all together if both server and clients do one specific thing. Even if you need some sort of port numbers, you can encode/encrypt port numbers however you want. Port numbers are just a hint for the kernel to push the packet to a correct socket opened by a correct process. If clients and server know what they are doing then conventional port numbers are not needed. For example you can write your server and client programs so that they read ALL network packets and find packets sent to them by reading something else than the port number in the packet
@breezyx976
@breezyx976 2 жыл бұрын
Could you just run a router in an amazon web thing, and thus be secure so long as they don't specifically notice you're doing that?
@EightSixx
@EightSixx 2 жыл бұрын
tailscale works in openbsd and so much easier :D
@wchorski
@wchorski 2 жыл бұрын
if i host Wireguard on my home network, I wouldn't be gaining any privacy from my ISP?
@hgbugalou
@hgbugalou 2 жыл бұрын
I really need to switch my VPN to wireguard from openVPN. I am using pfsense though and the last time I checked netgate had a shit implementation. I need to role to opensense, but that means taking down my 3 sites and that would be a PITA to swap, but I still need to. First world problems.
@Mateus01234
@Mateus01234 2 жыл бұрын
Thanks for the tips!
@goodcitizen4587
@goodcitizen4587 2 жыл бұрын
LOL @ the Stand w Ukr/Biden flag. Are you also tipple boosted?
@Mateus01234
@Mateus01234 2 жыл бұрын
@@goodcitizen4587 Yes.
@nvme1n1
@nvme1n1 2 жыл бұрын
Just out of curiosity: What advantages does a setup like Wireguard VPN into ssh for server access have over regular cert based ssh authentication? Is this just to add one extra layer of authentication, in case the cert gets compromised somehow?
@MentalOutlaw
@MentalOutlaw 2 жыл бұрын
Yes it's an extra security layer. You configure your web servers to only allow SSH connections from the VPN. So in order for someone to connect they need your ssh keys and VPN access
@werethless12
@werethless12 2 жыл бұрын
VPS is only as secure as the host you use. Probably not nearly as private as a dedicated server
@aqyx
@aqyx 2 жыл бұрын
based xfce terminal user
Now THIS is What a Private VPN Looks Like
12:02
Mental Outlaw
Рет қаралды 501 М.
진짜✅ 아님 가짜❌???
0:21
승비니 Seungbini
Рет қаралды 10 МЛН
I Sent a Subscriber to Disneyland
0:27
MrBeast
Рет қаралды 104 МЛН
БАБУШКА ШАРИТ #shorts
0:16
Паша Осадчий
Рет қаралды 4,1 МЛН
Build your OWN WireGuard VPN! Here's how
12:21
Jeff Geerling
Рет қаралды 404 М.
Do This Before Putting Your Files in the Cloud
12:56
Mental Outlaw
Рет қаралды 171 М.
How to NOT Harden SSH
11:08
Mental Outlaw
Рет қаралды 63 М.
Hardware Raid is Dead and is a Bad Idea in 2022
22:19
Level1Techs
Рет қаралды 699 М.
Self-Hosting Security Guide for your HomeLab
18:43
Techno Tim
Рет қаралды 439 М.
Stop Using Tor With VPNs
11:41
Mental Outlaw
Рет қаралды 992 М.
OpenBSD 7.2
11:15
Mental Outlaw
Рет қаралды 85 М.