Ein toller Tag ;-)

... soooo schön ...

Einfach nur schön ;-)

... mit meiner Isa ...

Amrum ...

... ein wahrer Traum ;-)

Mickel in Urlaub ;-)

... soooo eine tolle Erfahrung!

Freitag, 2. Mai 2025

faire-orangen

Fair gehandelte Orangen aus Süd-Italien

https://faire-orangen.de

  • wie kann ich Orangen zu "echten Kosten" kaufen?
  • wie kann ich Arbeiter auf dem Feld "gerecht" entlohnen?
  • beste Bio-Orangen (ohne Siegel) - einige Leute berichten, dass Sie früher Hautausschlag bekamen, wenn sie welche anfassten und nun ist "alles gut" ...
  • Super süße Orangen ;-)



#

Share:

Mittwoch, 30. April 2025

PLATZprojekt

Share:

Samstag, 19. April 2025

VPN Clients

VPN Clients

Missing ...

  • hostname & Port for each connection
  • test on volker's laptop partly ... 
  • why is it not working with Cynet & Zscaler?
  • .... more? 

Windows

VPN-Server WireGuard

  • WireGuard: ok

VPN-Server OpenConnect

  • OpenConnect VPN: ok
  • Cisco Secure Client 5.1 (internal, MS-Store) VPN: ok
  • Cisco AnyConnect 4.10 (external Cisco Installation) VPN: ok
  • Cisco Secure Client 5.1 (external Cisco Installation) VPN:ok

VPN-Server SoftEther

  • SoftEther VPN: ok (Port 5555)
  • OpenVPN: ok
  • SSTP VPN: ok (Require encryption, EAP-MSCHAP v2) - Secure Socket Tunneling Protocol (User: <user>@RAS-VPN-Serverhub !!!)
  • L2TP VPN: ok (Require encryption, EAP-MSCHAP v2) - Layer 2 Tunneling Protocol with IPsec (L2TP/IPsec) - Requires port 500 & 4500 udp ONLY! (User: <user>@RAS-VPN-Serverhub !!!)

iOS

  • Cisco Secure Client 5.1 VPN App: ok
  • WireGuard: ok
  • OpenVPN: ok (ovpn file on "vg download" - with description how to import on iOS ...)
  • L2TP VPN: ok - Layer 2 Tunneling Protocol with IPsec (L2TP/IPsec)
    - Requires port 500 & 4500 udp ONLY! (User: <user>@RAS-VPN-Serverhub !!!)
  • IPsec VPN: no - "server not found" 
  • IKEv2: not implemented in SoftEther?


Detailed Information

  • Squid Proxy on port 61923 => all web traffic gets routed via linux-volker (pi-hole - block commercial)
    • Easy, just with a user and setup Proxy in Web-Browser or WiFi 
  • OpenConnect / Cisco AnyConnect / Cisco Secure Client on port 443 (ssl, https) - Google DNS … => commercial
    • OpenConnect VPN Client - https://gui.openconnect-vpn.net/download/ 
    • Windows VPN App Cisco AnyConnect is working good (License information)
    • iOS App CiscoAnyConnect/SecureClient is working as well - stable
    • Windows Cisco AnyConnect Version 4 is working good - License?
    • Windows Cisco Secure Client is NOT working (Version 5) 
  • Wireguard with "normal" DNS on port 51001
    • Special user for Wireguard, 8.8.8.8 used as DNS-Server, Wireguard Ports are required UDP & TCP 51001 (often blocked in hotels or company WiFis)
  • Wireguard with DNS linux-volker on port 51001 (pi-hole - block commercial)
    • Same user for Wireguard can be used, we just use the IP 45.89.127.31 as DNS-Server, Wireguard Ports are required UDP & TCP 51001 (often blocked in hotels or company WiFis) 
  • OpenVPN on port 1194 via Softether - User: pi-hole-dns-only (pi-hole - block commercial)
    • (often blocked in hotels or company WiFis) 
  • Softether on port 5555 

 

( ubuntu cisco anyconnect secure client openconnect wireguard openvpn open vpn open-vpn )

#

Share:

Freitag, 18. April 2025

Paywall

Infos über Paywalls

Infos zu Paywalls und deren Funktion

### https://archive.ph ###

oder weitere identische Daten mit anderen TLDs:

https://archive.today

https://archive.md

https://archive.is

Lesen von Artikeln hinter Paywalls ist verboten. Trotzdem gibt es Tools, die das illegalerweise bei einigen online publipationen technisch ohne kennworte hinbekommen. Diese Publikationen könnten bei den anderen ggf mal etwas „nachschärfen“, um den Sumpf trocken zu legen …

Klappt meist - verboten - aber auch nicht technisch gut implementiert

Aktienwelt360

Berliner Morgenpost

Berliner Zeitung (BZ)

Bild

FAZ

Gmünder Tagespost

Hamburger Abendblatt

Heise Plus

Lübecker Nachrichten

LZ

MaMo

Morgenpost (Berlin)

RND???

SHZ (z.B. Inselbote Amrum)

Spektrum

Spiegel - SpOn

Stern

Südkurier?

SZ - Süddeutsche Zeitung

Tagesspiegel

The Times

Washington Post

Welt

Zeit

 

Funktioniert meist nicht - technisch wohl sicher implementiert 

AZ - Abendzeitung MUC 

Badische Zeitung

BI

BTC-Echo

Golem

Handelsblatt

Merkur

RP - Rheinische Post

Südkurier

Topagrar

WiWo


Weitere Links

https://tarnkappe.info/artikel/internet/archive-is-hilft-noch-effektiver-beim-ueberwinden-von-paywalls-280236.html

https://12ft.io






#

Share:

Samstag, 12. April 2025

Squid Proxy

Squid Proxy Setup

https://ubuntu.com/server/docs/how-to-install-a-squid-server

https://www.digitalocean.com/community/tutorials/how-to-set-up-squid-proxy-on-ubuntu-22-04

User authentication? https://gist.github.com/jackblk/fdac4c744ddf2a0533278a38888f3caf

apt install squid

apt-get install apache2-utils     (for user authentication)

cp /etc/squid/squid.conf /etc/squid/squid.conf.original

chmod a-w /etc/squid/squid.conf.original

Final Squid Config

!!! Attention: Remove the following more up as well:
http_port 3128

vi /etc/squid/squid.conf

### https://gueldenpfennigs.blogspot.com/2024/07/ubuntu.html
### https://gist.github.com/jackblk/fdac4c744ddf2a0533278a38888f3caf
#
# add passwords for proxy
# htpasswd /etc/squid/passwords [USERNAME]     <<<<<
# First entry:
# htpasswd -c /etc/squid/passwords [USERNAME]     <<<<<
# NOT ACTIVE - just for tests ... volker => consolut
# vt => "normal" (Volltreffer)
#
# Check the Squid Proxy Log
# view /var/log/squid/access.log
# service squid restart            <<<<
# systemctl restart squid
# service squid start
# service squid stop
# service squid status
# systemctl status squid.service

auth_param basic program /usr/lib/squid/basic_ncsa_auth /etc/squid/passwords
auth_param basic realm Squid proxy-caching web server
auth_param basic credentialsttl 24 hours
auth_param basic casesensitive off
acl authenticated proxy_auth REQUIRED
http_access allow authenticated
http_access deny all

### no longer supported - Volker 1.3.25
###dns_v4_first on

### delete => delete the "X-Forwarded-For" in the http header
forwarded_for delete

### on => you can see the proxy - off => it works "transparent" :-)
via off

# 3128 is turned on by default more down in the "default config" as well
# but we did turn off 3128 now manually in order to listen on the special port 61923 only
http_port 61923
# addings volker vg - at least as a test (port 80 goes easier through a firewall)
# it looks like, that this does not work properly ... needs more testing ...
# addings volker vg - at least as a test (port 80 goes easier through a firewall)
### VG 4.10.25: this is not good with 80 as we need 80 free for
### certificate creation via Let's Encrypt ...
###http_port 80

# addings Volker
cache deny all
visible_hostname weezie

### Change because of DNS Issues - 1.3.25 Volker
# ... just quad9
dns_nameservers 9.9.9.11 149.112.112.11

# Pi-hole usage :-)))
###dns_nameservers 45.89.127.31

# not tested by now ... could be pi-hole as well
### dns_nameservers 127.0.0.1

Add a user for the Squid Proxy

htpasswd /etc/squid/passwords <my_username>   ### pwd will be asked via keyboard ...



 

 

#

Share:

Blog-Archiv

Powered by Blogger.

Blog Archive

Blogger templates