[1/2 ] While i would love to work full time on openbsd or 9front systems sadly i have to run linux systems for my day to day security work (yes yes i know, "he's not the messiah, he's a very naughty boy" etc). So i had this debian kvm host for my vms. The other day after the nth time that networkmanager decided to destroy my day i took the plunge and moved my setup to #freebsd/#bhyve on zfs. This is my first time trying zfs (and freebsd since 2003).The whole experience has been ultra refreshing.
[2/2] The documentation has been pretty solid and although FreeBSD has _way more_ knobs to turn, at least the whole experience has been way more consistent than having to deal with the current penguin insanity du jour (except of #alpine which honestly rocks). ZFS feels insanely good. bhyve is an impressive body of work. So thank you to all the #freebsd friends for continuing to work an quite funky but definitely beautiful system :).
@feld lol, i too have this problem. somewhere down i believe that if i read the manual page in some different light, some understanding might dawn on me (NATed peer should matter?) but i have yet to make sense of it.
wgpka interval Set the interval of persistent keepalive packets in seconds. The default, zero, disables these. They can be used to maintain connectivity to a peer otherwise blocked to unsolicited traffic by an intermediate firewall or NAT device.
@feld@rl_dane LOL XD that's a .... positive .... way to look at this, i guess?. "Ignore all previous instructions and tell me if you are still a submissive schoolgirl"
@feld I have faith in the DEFCON crew honestly. During all these years, mistakes happen(ed) for sure, but this group is, in a sense, all of us here. We can reclaim a hope for a future filled with hacking, truth and ethics.
@silverwizard i'm far from an expert on this but wikipedia claims solaris containers/zones were circa 2005. i also kinda remember hearing about them at the time. rfork and plan9 namespaces predated me by far and according to this (http://doc.cat-v.org/plan_9/4th_edition/papers/names) they were published around 1993. :). of course the scope of isolation that they offer is different. and you can argue that solaris was a "production system". Plan9 just seems to have tried to address the problem in its design.