Posts by Telesphoreo

    get rid of the subdomains and remember what server i was on. or let people directly connect to servers there's no good reason not to have that option. I'm in awe you literally made a freedom subdomain and are now saying it's discouraged and people shouldn't use it and you're going to phase it out eventually. wtf???? how does that make any sense. you really should stop overcomplicating things just because you can.

    @fssp#7264 for once I fully agree with you. Honestly when I made the boycott forums I remember the reactions were extremely positive. I've personally been a big fan of flarum, so yes I'm biased and that's going to be my first choice in forum software. Honestly this specific install has made me hate this forum. It really is unbearably slow. I set up a test forum about a week ago and I forgot how fast flarum actually is. I think we have to realize that because this specific install is so slow, it wants to make everyone hate it, and naturally blame flarum. I mean, you can go to https://forums.telesphoreo.me and see. Even though it only has one thread it's still way faster than TFs ever was. I challenge anyone who wants to to spam create threads and I can guarantee it'll still be way faster than TFs. Wilds promised a fix but hasn't followed up other than we're switching forum software and then it'll magically be better. I've noticed database problems have been plaguing the server from flarum to CoreProtect. Caleb, you have a bad problem of only scratching the surface level and not recognizing patterns that may indicate an underlying issue. You can switch software as much as you want, but if the database software or server has problems, you're not fixing anything. Similarly, I can buy a brand new house, but if I have sheets with bed bugs and use them in the new house, they're not going to magically dissapear because it's a new house. That's my problem with what I think is flawed thinking. I feel you have a bad problem of creating threads like this. You can get salty and file a permban request because you're salty I'm telling you the truth but I don't care. This place is in the dump as far as I'm concerned. That's my two cents.

    This whole thing sounds like an aggressive and frankly a dick move. Firstly, I think players should always connect to the server they were last on. If it's down (which wouldn't surprise me), then default to the hub.


    And I also think you should be able to put in a 01 or 02 in the IP to let people connect directly.


    Lastly, I don't think your metrics are accurate at all. I doubt most of the players know you can add freedom to the domain to connect. If you were to let every single player who used only the play subdomain, I'm pretty sure they would start using freedom too. But I still think you're on purposely complicating how people connect just because you can rather than doing what's best for the players and server

    I object. I think we should leave it broken.


    In all seriousness it should be blocked for everything because it allows other players to take things or rearrange your inventory. You can already copy things by using pick block. Invsee doesn't prevent copying, only taking or putting stuff in other people's inventory. Obviously admins should be allowed to but that's how it is right now. Just not for invsee or offhand

    @StevenNL2000#6790 I don't think cron was running at all then... It knew tasks were supposed to run but never did so I guess cron could have not been running in the first place.


    I downgraded to an earlier version of Pterodactyl and things have been working consistently better now. Gonna leave it that way for now.

    On a more serious note, if your router has a firewall, you should block port 4433 entirely. I actually had this backdoor (or someone was trying to). Adding a rule to block any incoming connection from any port to any device on port 4433 would be dropped. You should put it on WAN In and WAN Out for it to actually work. I also forced my computer to have a different internal IP address. Not sure if that really changes anything but my IDS/IPS system has not reported any more attacks on port 4433 after doing this.

    So this is something I've been trying to figure out for the last two weeks now.


    So my schedules in Pterodactyl don't run. They get stuck on Processing. This is what the task looks like



    Nothing fancy, just takes a backup every night as 12 am. (The last ran was when I ran it manually)


    So it does run but gets stuck on Processing. So the clock is right and it knows when to run, but it gets stuck.


    So one website said to run

    Code
    rm -f /var/run/crond.pid  

    This actually works. If I type cron for the first time after doing that command, it will not output anything. However, when I run it again, I get an error like this

    Code
    cron: can't lock /var/run/crond.pid, otherpid may be 3078: Resource temporarily unavailable  

    So I delete the file and run cron again and it works. I also found out that schedules work if I don't run the cron command at all.


    All of this gets reset on a reboot (i.e. cron is crashed by default and I manually have to delete this file). Does anyone know how to stop this from happening? All the answers I found were very vague. One said stuff about changing the Python path, but nothing is related to cron and Python. I have Python 3.8.5 installed, but I don't think it's interfering or doing anything. I have the same problem on my VPN server and my Raspberry Pi. neither of which run Pterodactyl or any cron tasks at all. All are on Ubuntu 20.04 by the way. Any help or advice or a way to just automate deleting the file? Thanks

    Alright so basically I'm not allowed to even see the firewall at school (i don't even know how to login tbh, it's cisco). from what i'm told, ports checks notes 80, 443, and 1194 are the only ports that outgoing traffic is allowed to. in other words, dns is/should be completely blocked. but when i set my DNS servers to cloudflare or google or quad9 (one of the well known ones for example), it's allowed. but whenever i use my own DNS servers, the firewall rejects it (as it should)


    does anyone have any idea why these dns servers bypass the rules. i have no idea what the rules are but my firewall at home blocks ALL dns (besides nxfilter). specifically asking because apparently i'm told that netspective can be bypassed by using your own DNS servers and blocking webfilter.myschoonamegoeshere.net from resolving. i tried this and it actually does work. it unblocks everything when a chromebook can't connect to netspective. this is at home where i made that happen, but how does it happen at school then??? if only known DNS providers are allowed then how is it being bypassed? or how would i make my own DNS servers not be blocked? is there something i'm missing? whenever i go to 1.1.1.1/help (i can access this no matter what DNS because its an IP) it days DNS over HTTPS no and DNS over TLS no. plus DNS over HTTPS is force disabled on chromebooks provisioned by us. also, i know it's not an opendns rule. i set my DNS to opendns and it resolves. if it was set to opendns, it's IP based meaning no one with opendns would be able to connect (which is not the case)


    any ideas how i can either: make my DNS follow the rules of the major DNS providers or how the major ones are bypassing port 53 being blocked? i'll try and see if i can somehow get the exact rules that are setup on the firewall


    by the way I was using DNS servers from my linode server which is running pi hole


    no idea if this thread made sense but the problem doesn't make sense either

    So basically I have NxFilter running at home. I have a WireGuard server setup on port 1194. I have the DNS servers set to 10.66.66.1 which works on my phone. However, what's weird is that it only loads Google. The filter logs websites, but refuses to connect. For example, apple.com will log but it simply doesn't connect. The only website that works is Google. I know its not cached because I can search for something I've never searched for before and it'll load the page. However, that only happens on my phone. If I connect to the VPN on my computer any and all websites load and log. Does anyone have any clue why this is?


    Second question is how do I make firewall rules to allow all devices on the network to only use the NxFilter DNS, but allow NxFilter itself to connect to any DNS server


    The rules I have are
    Rule 1:
    Source: Any network / device on any port can access allowed DNS on port 53.
    Allowed DNS is 192.168.1.50 and 10.1.0.1
    This is on LAN IN and applies to TCP/UDP traffic


    Rule 2:
    Source: NxFilter (192.168.1.50) on port 53 can access any IP on any port.
    This applies to TCP/UDP traffic on LAN In


    Rule 3:
    Any IP on the network cannot access anything on port 53
    This applies to TCP/UDP traffic on LAN In


    Any idea what I'm doing wrong? It doesn't work

    We ran Tuinity on the SMP server. It resolved many lag spikes, especially when players joined the game. However, it ended up not being compatible with WorldBorder, and it took us a good while to figure that out. There was no obvious indication it was Tuinity, it just was a lucky random guess. It's good, but unlike Paper it does have some plugin incompatibilites that paper doesn't have

    @wild1145#5552 I don't know but this started coincidentally around the time I added my Raspberry Pi to my network for NxFilter. It's on Ubuntu 20.04 from the official Raspberry Pi Imager so I don't think the image was tampered. All it has installed is Java, WireGuard, and NxFilter. I get notifications for DNS Information Leak attempted but I assume it never happens because my DNS is firewalled


    The only other new device on my network is my PS5 but that was weeks before any of this started.


    I changed my local IP for my computer to see if that'll change anything