Thread 105632300 - /g/ [Archived: 910 hours ago]

Anonymous
6/18/2025, 6:42:59 PM No.105632300
_91408619_55df76d5-2245-41c1-8031-07a4da3f313f
_91408619_55df76d5-2245-41c1-8031-07a4da3f313f
md5: a7719c4c8bff79c7f8c8fa0a4beb9621🔍
opensnitch is the equivalent of simplewall on windows

why does it let all traffic through when you're in a tty? it needs X to control traffic via it's u.i, but why doesn't it just block everything by default when X isnt started? that should be standard behavior, or at least there should be an option to enable and disable that (block all outgoing when X isnt detected). now i have to manually turn off my internet connection and set it to not auto start when X isn't available, and if X ever crashes i need to create some kind of script to instantly disable my internet connection so that its air tight.

like can anyone enlighten me on why they chose to do this? its essentially a massive security vulnerability, whenever X crashes you're instantly exposed. if you're in a tty you're instantly exposed. this is not logical. i dont get it
Replies: >>105632427 >>105633112 >>105634137
Anonymous
6/18/2025, 6:56:20 PM No.105632427
>>105632300 (OP)
safing portmaster is just better.
Replies: >>105632491
Anonymous
6/18/2025, 7:06:35 PM No.105632491
e4wt4
e4wt4
md5: 92099913bdda69b64ffd3dc17a798979🔍
>>105632427
it has closed source elements. it seems sketchy

i dont like it
Anonymous
6/18/2025, 8:28:04 PM No.105633112
>>105632300 (OP)
>option to enable and disable that
There is. Did you even take 3 seconds to look at it? Am I replying to some kind of bot?
Replies: >>105633149
Anonymous
6/18/2025, 8:31:40 PM No.105633149
>>105633112
there isn't. the node thing doesnt work. i close my desktop gui and it still allows outbound connections (i dont use systemd btw)
Replies: >>105633609
Anonymous
6/18/2025, 9:13:46 PM No.105633609
>>105633149
Are you sure the daemon is running when you kill X? If you aren't using systemd then you're going to have to adapt the daemon startup to your build. That's all I can say without more info
Replies: >>105634576
Anonymous
6/18/2025, 10:07:42 PM No.105634137
1738807104402953
1738807104402953
md5: 030a9396e1734862a9aa9ea79aa03b80🔍
>>105632300 (OP)
>his firewall depends on the display server to function properly
troonix is not real
Anonymous
6/18/2025, 10:14:16 PM No.105634206
>(i dont use systemd btw)
retard does things the hard way and cries about it
Anonymous
6/18/2025, 10:55:09 PM No.105634576
>>105633609
yes, i see a bunch of opensnitchd listings in htop running. in the X GUI for opensnitch under nodes i ticked "default action DENY when GUI not available"

it still lets EVERYTHING through like a whore. ping, apt downloads. every application has complete unrestricted access to the internet

> If you aren't using systemd then you're going to have to adapt the daemon startup to your build
*sigh*...linux is so gay man, every single program has issues, or it needs to be manually configured for hours to be useable. its literal torture
Replies: >>105634603 >>105634613
Anonymous
6/18/2025, 10:58:14 PM No.105634603
>>105634576
You fell for the "systemd bad" meme and only have yourself to blame. Blaming Linux at all is fucking stupid anyway because fully headless Windows is literally not even possible.
Anonymous
6/18/2025, 10:59:09 PM No.105634613
>>105634576
What's the output of 'opensnitchd -check-requirements'
If anything is missing it's likely broken in some way for your system, also restart the daemon if you haven't
Replies: >>105634735
Anonymous
6/18/2025, 11:15:58 PM No.105634735
>>105634613
>restart the daemon if you haven't
ffs this did it >:(

thanks anon you're awesome, im mad that it ended up just being a freaking restart
Replies: >>105634827 >>105634998
Anonymous
6/18/2025, 11:25:34 PM No.105634827
>>105634735

dudes all the a.i algorithims like grok, copilot, chatgput etc had me going down rabbit holes for hours, changing all this crap, when anon solved it instantly by telling me to restart the service. freaking hell. a.i sucks dick aswell
Anonymous
6/18/2025, 11:42:31 PM No.105634998
>>105634735
I think it's in the wiki somewhere that settings don't get updated until a daemon restart, they should really put a note in the gui. It's like that for almost all daemons though
Replies: >>105635031
Anonymous
6/18/2025, 11:46:36 PM No.105635031
pepe-ultimate-depressed-5995d30ee8c1b
pepe-ultimate-depressed-5995d30ee8c1b
md5: e4f98f83e303fd8848c66ba3f3d07ff1🔍
>>105634998
sorry i went to replicate it, and i forgot i had applied this to change the settings

https://github.com/evilsocket/opensnitch/issues/1060

so you need that aswell

THEN you do /etc/init.d/opensnitchd restart

...i want to go back to windows. i dont care about any of this. how does knowing this help me. it doesnt make me smarter. it doesnt increase my ability to solve problems. it just wastes my time