-
18 votes
-
[SOLVED] Looking for help getting my VPN to work with Firefox privacy settings
I recently moved to a new place with a new ISP, and my Mullvad VPN isn't playing nicely with Firefox like it used to. Can any of you networking gurus please help me troubleshoot? When the VPN is...
I recently moved to a new place with a new ISP, and my Mullvad VPN isn't playing nicely with Firefox like it used to. Can any of you networking gurus please help me troubleshoot?
When the VPN is enabled, most requests from the browser fail immediately. If I pull up the dev tools Network tab, I can see that these requests fail with an
NS_ERROR_FAILURE
message before any data is transferred.I have Firefox configured to use "strict" Enhanced Tracking Protection. When I reduce it to "standard" my requests go through.
I'm also trying to use DNS over HTTPS with a custom provider (Mullvad, via
https://dns.mullvad.net/dns-query
). I'm configuring this in Firefox, using the "Increased Protection" DoH setting. When I do that, Firefox reports the DoH status as "Status: Not active (NS_ERROR_FAILURE)". This happens even when Enhanced Tracking Protection is set to "standard" — in other words, that reduced setting fixed theNS_ERROR_FAILURE
for HTTP requests, but not for DoH.So how do I fix this so Strict Enhanced Tracking Protection, DNS over HTTPS, and Mullvad all work together? I never had this problem with my old ISP, so I suspect something's being blocked at the WAN level that I need to circumvent.
- OS: macOS Sonoma 14.5
- VPN protocol: WireGuard
- ISP: AT&T Fiber
I'm just using the official Mullvad client app with mostly default settings. The fiber gateway modem/router came with some default packet filtering firewall rules but I disabled everything in the admin panel. Weirdly, rebooting my machine fixed this temporarily, but the next time I disconnected/reconnected the VPN it broke again. Other browsers (with default settings and no DoH) are working fine when the VPN is connected.
Edit: Solved! Solution here.
6 votes -
Using work OSX machine while travelling
I will shortly be travelling for work. I do not have the capacity to bring anything other than my work machine. In addition to working every day I would like to: legally stream movies in the...
I will shortly be travelling for work. I do not have the capacity to bring anything other than my work machine. In addition to working every day I would like to: legally stream movies in the evening, work on writing, email friends etc. At home of course I use a separate laptop for this but in this case I won't have that option. Any thoughts on how best to achieve a separation of concerns while travelling? How do people on Tildes manage this case?
p.s I know in a best case scenario it's not ideal, hence my behaviour at home, I just need a working method for this particular case.
12 votes -
With Focus you can search the web you want
21 votes -
Building my own email system and/or other privacy-first email solutions?
Back in the day I remember setting up squirrelmail + qmail to host my own email as well as for others. And then I got that coveted gmail invite and never really looked back. I've started to get...
Back in the day I remember setting up squirrelmail + qmail to host my own email as well as for others. And then I got that coveted gmail invite and never really looked back.
I've started to get into the mindset of erasing my digital trail, at least for my personal activities, and email seems to be the main one that I need to figure out.
The idea of setting up my own email solution came up again because I wonder how transparent / private services like protonmail and mailbox.org really are.
Any suggestions or insight would be appreciated. Squirrelmail seems to be now defunct, and I am pretty sure the world has changed enough that residential ISPs don't allow running of servers at home anymore. I guess I could setup something on AWS if I had to.
22 votes -
How to go about mirroring a repo to separate real identity from online identity?
I struggled to word this question. Let's say that I wish to work on a project to benefit Tildes (I don't currently have an idea, but just for example). Anything I did, I would like to keep...
I struggled to word this question.
Let's say that I wish to work on a project to benefit Tildes (I don't currently have an idea, but just for example). Anything I did, I would like to keep opensource and would encourage other users to contribute. But I would like to keep everything linked to my pseudonym as not to dox myself.
However, I would like to have a copy of everything on my personal GitHub as well, because I am a professional programmer and that is effectively my CV.
Is there a good way to mirror a repo in a way that any git history contributed by me, "John Smith", is changed to "bugsmith" on the mirrored repo? (or vice versa).
6 votes -
Using computers more freely and safely
8 votes -
Let's build a Chrome extension that steals everything
10 votes -
Upgraded to Windows 10, what do I need to do to optimize?
I finally got around to upgrading my mom’s computer (an Asus laptop from 2015) from Windows 8.1 to Windows 10. I’ve already deleted a few apps she won’t use (e.g., Xbox) and disabled/stopped some...
I finally got around to upgrading my mom’s computer (an Asus laptop from 2015) from Windows 8.1 to Windows 10. I’ve already deleted a few apps she won’t use (e.g., Xbox) and disabled/stopped some unneeded services. What else can I do to keep her computer fast? Particularly interesting in more services I can disable and the best browser/ad blocker combo. Thanks y’all!
10 votes -
Two types of privacy
6 votes -
TOR Workshop - Sysadmin 101 for new relay operators - tonight, June 4th 2022 @ 19 UTC
3 votes -
Linux (In)security
10 votes -
Oildrop - A self-auditable userscript manager
13 votes -
Why does a completely local, self-contained html file need to access gstatic.com?
So, I'm a privacy advocate (or paranoiac, depending on your perspective). I run both uMatrix and NoScript plug-ins (among others) in my Firefox browser, so I can see when and where websites send...
So, I'm a privacy advocate (or paranoiac, depending on your perspective). I run both uMatrix and NoScript plug-ins (among others) in my Firefox browser, so I can see when and where websites send calls out to other locations, and block the ones I want ... google analytics, google fonts, google-apis, google tag manager, and gstatic are all ubiquitous out there, probably 99% of websites use at least one of them (PS: Tildes is in the 1%; yeay, Deimos).
And note ... there may well be nothing at all wrong with any of those sites/services ... but Google has a global all-encompassing Terms and Conditions policy that says, you use anything of Theirs, and They are allowed to harvest your personal data and make money off of it.
And I do not accept those terms.
Okay, that's the prologue. The deal is, I have a small piece of documentation, just basic "how to use this" info, for a WordPress plug-in. It is in .html format, with bundled bootstrap and jquery and a few other assets.
Nothing, anywhere in the entire folder, references gstatic. And yet when I open this local, on-my-computer-only html file ... my browser tells me that it is trying to connect to gstatic.com.
Anyone happen to know why/how that is happening?
4 votes -
Disclosure of a vulnerability in AI Dungeon that enabled accessing all users' private adventures, scenarios, and posts via its GraphQL API
16 votes -
Misinformation about Permissions Policy and FLoC
8 votes -
Is Firefox still a good (enough) browser for privacy?
Someone posted this on the privacy subreddit. I also ended up finding this and this after doing a bit of searching. As someone who isn’t in the CS/IT spheres (chemical engineering is my...
Someone posted this on the privacy subreddit. I also ended up finding this and this after doing a bit of searching. As someone who isn’t in the CS/IT spheres (chemical engineering is my background), Firefox has been my go-to browser for awhile, although I’m being made aware of the flaws of Firefox (most of which go over my head) and behavior of Mozilla. What can be done to fix this, especially considering that Firefox is the only FOSS browser with a significant user base?
22 votes -
Google should rotate their email DKIM keys periodically and publish past secret keys, in order to remove the unintended capability for authenticating years-old emails
16 votes -
EU Draft Council Declaration Against Encryption [pdf]
10 votes -
US Government Continues Encryption War
7 votes -
Replacing YouTube & Invidious
14 votes -
On not caring about your privacy
7 votes -
Create No-JavaScript friendly sites
22 votes -
Code is Speech?
10 votes -
Keybase, Zoom and Messaging
11 votes -
Why I Decided to Run a Tor Relay
9 votes -
Building a secure DNS infrastructure like SecureDNS.eu
5 votes -
Stripe is silently recording your movements on its customers' websites
14 votes -
MNT Reform open source, modular laptop crowdfunding campaign launches in February
9 votes -
Multiple Fortinet products communicate with FortiGuard services while only "encrypting" sensitive user data using XOR with a hardcoded key
9 votes -
How Facebook tracks you on Android
8 votes -
The PGP Problem
12 votes -
Notes on privacy and data collection of Matrix.org
12 votes -
An interesting study into how ads are fingerprinting your devices
16 votes -
How does Apple (privately) find your offline devices?
13 votes -
Tech veganism
19 votes -
Metadata Investigation: Inside Hacking Team
4 votes -
Tor Browser for Android 8.5 offers mobile users privacy boost
3 votes -
Apple arms web browser privacy torpedo, points it directly at Google's advertising model
4 votes -
Tracking cursor movement in browsers without JavaScript enabled
@davywtf: Here's a PoC that confirms my hunch. *Neither* of these windows use JavaScript but the position of the cursor in the left window is sent to the right window. This works on Tor Browser with JS disabled. https://t.co/cnfOy5OkUj
11 votes -
Timeliner: A personal data aggregation & personal data backup utility for Facebook, Google, Twitter, etc…
9 votes -
Intelligent Tracking Protection 2.1 in WebKit
4 votes -
OnionShare 2 released
7 votes -
Inrupt releases React SDK for Solid
6 votes -
Defcon 21 - Stalking a City for Fun and Frivolity [45:19]
7 votes -
4 critical tips for creating and implementing a privacy plan
5 votes -
Comparison between several messenger systems
9 votes -
GnuPG can now be used to perform notarial acts in the state of Washington
15 votes -
Reverse-engineering "Adware Doctor", the #4 app in the Mac App Store that's been surreptitiously stealing users' browser history
17 votes -
DNS Privacy
11 votes