<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>web01.fireside.fm</fireside:hostname>
    <fireside:genDate>Wed, 08 Apr 2026 17:46:13 -0500</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>LINUX Unplugged - Episodes Tagged with “Autossh”</title>
    <link>https://linuxunplugged.com/tags/autossh</link>
    <pubDate>Sun, 21 Jul 2024 19:30:00 -0700</pubDate>
    <description>An open show powered by community LINUX Unplugged takes the best attributes of open collaboration and turns it into a weekly show about Linux.
</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>Weekly Linux talk show with no script, no limits, surprise guests and tons of opinion.</itunes:subtitle>
    <itunes:author>Jupiter Broadcasting</itunes:author>
    <itunes:summary>An open show powered by community LINUX Unplugged takes the best attributes of open collaboration and turns it into a weekly show about Linux.
</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:owner>
      <itunes:name>Jupiter Broadcasting</itunes:name>
      <itunes:email>chris@jupiterbroadcasting.com</itunes:email>
    </itunes:owner>
<itunes:category text="Technology"/>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<item>
  <title>572: Data Security Only a Maniac Could Love</title>
  <link>https://linuxunplugged.com/572</link>
  <guid isPermaLink="false">aa3981c0-3297-4a2f-9882-a51aaa6fa414</guid>
  <pubDate>Sun, 21 Jul 2024 19:30:00 -0700</pubDate>
  <author>Jupiter Broadcasting</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/f31a453c-fa15-491f-8618-3f71f1d565e5/aa3981c0-3297-4a2f-9882-a51aaa6fa414.mp3" length="76843751" type="audio/mp3"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Jupiter Broadcasting</itunes:author>
  <itunes:subtitle>Wes' self-decrypting bcachefs disk and a GrapheneOS twist that'll make you ditch your iPhone.</itunes:subtitle>
  <itunes:duration>1:31:28</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
  <description>Wes' self-decrypting bcachefs disk and a GrapheneOS twist that'll make you ditch your iPhone. Special Guest: Tomasz Frątczak.
</description>
  <itunes:keywords>Jupiter Broadcasting, Linux Podcast, Linux Unplugged, GrapheneOS, bcachefs, LUKS, encryption, Windows outage, disk encryption, bcachefs on rootfs, bcachefs encryption, clevis, automated decryption, TPM, Tang, PCR, PCR 7, measured boot, that hash lifestyle, boot chain, NixOS, systemd-cryptenroll, Fedora, bluefin, 🦒, Garmin, Apple Watch killer, smartwatch, contactless payment, Obtainium, GitHub rate limiting, gigawatt boost, Gentoo challenge, Framework 13, Iotas, Celeste, Nextcloud, rust, rclone, flakes tutorial, NixOS, Bazzite, Coinbase, FUTO, FUTO Keyboard, Grayjay, SleepHQ, autossh, BARIX, openSUSE Aeon, rolling release, CrowdSec, Blue Bubbles, LibreOffice, FOSDEM, Guix, open-and-shut, morse code, slam your laptop lid, Bustle</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Wes&#39; self-decrypting bcachefs disk and a GrapheneOS twist that&#39;ll make you ditch your iPhone.</p><p>Special Guest: Tomasz Frątczak.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="clevis" rel="nofollow" href="https://github.com/latchset/clevis">clevis</a> &mdash; Clevis is a pluggable framework for automated decryption. It can be used to provide automated decryption of data or even automated unlocking of LUKS volumes.</li><li><a title="bcachefs Encryption" rel="nofollow" href="https://bcachefs.org/Encryption/">bcachefs Encryption</a></li><li><a title="What measured boot and trusted boot means for Linux" rel="nofollow" href="https://opensource.com/article/20/10/measured-trusted-boot">What measured boot and trusted boot means for Linux</a></li><li><a title="Automatically decrypt your disk using TPM2" rel="nofollow" href="https://fedoramagazine.org/automatically-decrypt-your-disk-using-tpm2/">Automatically decrypt your disk using TPM2</a> &mdash; Entering the passphrase to decrypt the disk at boot can become quite tedious. On modern systems a secure hardware chip called “TPM” (Trusted Platform Module) can store a secret and automatically decrypt your disk. This is an alternative factor, not a second factor. Keep that in mind.</li><li><a title="Use systemd-cryptenroll with FIDO U2F or TPM2 to decrypt your disk" rel="nofollow" href="https://fedoramagazine.org/use-systemd-cryptenroll-with-fido-u2f-or-tpm2-to-decrypt-your-disk/">Use systemd-cryptenroll with FIDO U2F or TPM2 to decrypt your disk</a></li><li><a title="Automatic LUKS 2 disk decryption with TPM 2 on Fedora" rel="nofollow" href="https://kowalski7cc.xyz/blog/luks2-tpm2-clevis-fedora31/">Automatic LUKS 2 disk decryption with TPM 2 on Fedora</a></li><li><a title="Safe automatic decryption of LUKS partition using TPM2 | 221b" rel="nofollow" href="https://221b.uk/safe-automatic-decryption-luks-partition-tpm2">Safe automatic decryption of LUKS partition using TPM2 | 221b</a></li><li><a title="FOSDEM 2024: Clevis/Tang - unattended boot of an encrypted NixOS system" rel="nofollow" href="https://fosdem.org/2024/schedule/event/fosdem-2024-3044-clevis-tang-unattended-boot-of-an-encrypted-nixos-system/">FOSDEM 2024: Clevis/Tang - unattended boot of an encrypted NixOS system</a></li><li><a title="Clevis &amp; Tang on NixOS Slides" rel="nofollow" href="https://camillemondon.com/talks/fosdem24-clevis/#/title-slide">Clevis &amp; Tang on NixOS Slides</a></li><li><a title="Decrypt LUKS volumes with a TPM on Fedora Linux" rel="nofollow" href="https://gist.github.com/jdoss/777e8b52c8d88eb87467935769c98a95">Decrypt LUKS volumes with a TPM on Fedora Linux</a></li><li><a title="Self-Hosted 127: Can&#39;t Fix What You Don&#39;t Track" rel="nofollow" href="https://selfhosted.show/127">Self-Hosted 127: Can't Fix What You Don't Track</a></li><li><a title="Garmin Forerunner 265" rel="nofollow" href="https://www.amazon.com/dp/B0BS1T9J4Y">Garmin Forerunner 265</a> &mdash; Forerunner 265 is a running smartwatch with a touchscreen AMOLED display, training metrics, phone-free music, &amp; up to 13 days of battery life in smartwatch</li><li><a title="HRV Status" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/hrv-status/">HRV Status</a></li><li><a title="Garmin Sleep Tracking" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/sleep-tracking/">Garmin Sleep Tracking</a></li><li><a title="Nap Detection" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/nap-detection/">Nap Detection</a></li><li><a title="Garmin Pay" rel="nofollow" href="https://www.garmin.com/en-US/garmin-pay/">Garmin Pay</a></li><li><a title="Tribit Stormbox Micro 2 Wireless Portable Speaker: 10W" rel="nofollow" href="https://www.amazon.com/dp/B09Q59321N">Tribit Stormbox Micro 2 Wireless Portable Speaker: 10W</a></li><li><a title="USB-C Charging Converter for Garmin Watch Without Charger Cable" rel="nofollow" href="https://www.amazon.com/dp/B0BK4QD665">USB-C Charging Converter for Garmin Watch Without Charger Cable</a></li><li><a title="Obtainium" rel="nofollow" href="https://github.com/ImranR98/Obtainium">Obtainium</a> &mdash; Obtainium allows you to install and update apps directly from their releases pages, and receive notifications when new releases are made available.</li><li><a title="Managing your personal access tokens" rel="nofollow" href="https://docs.github.com/en/authentication/keeping-your-account-and-data-secure/managing-your-personal-access-tokens">Managing your personal access tokens</a></li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Iotas" rel="nofollow" href="https://flathub.org/apps/org.gnome.World.Iotas">Iotas</a> &mdash; Iotas aims to provide distraction-free note taking with optional speedy sync with Nextcloud Notes.</li><li><a title="LINUX Unplugged 567: So Long sudo" rel="nofollow" href="https://linuxunplugged.com/567">LINUX Unplugged 567: So Long sudo</a></li><li><a title="Celeste" rel="nofollow" href="https://github.com/hwittenborn/celeste">Celeste</a> &mdash; GUI file synchronization client that can sync with any cloud provider</li><li><a title="vt52&#39;s Blog: Migrating from NixOS channels to Flakes" rel="nofollow" href="https://tty.is/blog/migrating-to-flakes.html">vt52's Blog: Migrating from NixOS channels to Flakes</a></li><li><a title="FUTO Keyboard" rel="nofollow" href="https://keyboard.futo.org/">FUTO Keyboard</a></li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a></li><li><a title="LINUX Unplugged 570: RegreSSHion Strikes" rel="nofollow" href="https://linuxunplugged.com/570">LINUX Unplugged 570: RegreSSHion Strikes</a></li><li><a title="Aeon" rel="nofollow" href="https://aeondesktop.github.io/">Aeon</a> &mdash; The Linux Desktop for people who want to "get stuff done"</li><li><a title="Aeon: openSUSE for lazy developers" rel="nofollow" href="https://lwn.net/Articles/977987/">Aeon: openSUSE for lazy developers</a></li><li><a title="Grayjay" rel="nofollow" href="https://grayjay.app/">Grayjay</a> &mdash; Follow Creators Not Platforms</li><li><a title="Grayjay on GitLab" rel="nofollow" href="https://gitlab.futo.org/videostreaming/grayjay">Grayjay on GitLab</a></li><li><a title="CrowdSec" rel="nofollow" href="https://www.crowdsec.net/">CrowdSec</a></li><li><a title="Bustle" rel="nofollow" href="https://flathub.org/apps/org.freedesktop.Bustle">Bustle</a> &mdash; Bustle draws sequence diagrams of D-Bus activity. It shows signal emissions, method calls and their corresponding returns, with time stamps for each individual event and the duration of each method call. This can help you check for unwanted D-Bus traffic, and pinpoint why your D-Bus-based application is not performing as well as you like. It also provides statistics like signal frequencies and average method call times.</li><li><a title="open-and-shut" rel="nofollow" href="https://github.com/veggiedefender/open-and-shut">open-and-shut</a> &mdash; Type in Morse code by repeatedly slamming your laptop shut</li><li><a title="Zuck Comapres AI to Linux - Open Source AI Is the Path Forward" rel="nofollow" href="https://about.fb.com/news/2024/07/open-source-ai-is-the-path-forward/">Zuck Comapres AI to Linux - Open Source AI Is the Path Forward</a> &mdash;  Today, Linux is the industry standard foundation for both cloud computing and the operating systems that run most mobile devices – and we all benefit from superior products because of it.

I believe that AI will develop in a similar way. </li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Wes&#39; self-decrypting bcachefs disk and a GrapheneOS twist that&#39;ll make you ditch your iPhone.</p><p>Special Guest: Tomasz Frątczak.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="clevis" rel="nofollow" href="https://github.com/latchset/clevis">clevis</a> &mdash; Clevis is a pluggable framework for automated decryption. It can be used to provide automated decryption of data or even automated unlocking of LUKS volumes.</li><li><a title="bcachefs Encryption" rel="nofollow" href="https://bcachefs.org/Encryption/">bcachefs Encryption</a></li><li><a title="What measured boot and trusted boot means for Linux" rel="nofollow" href="https://opensource.com/article/20/10/measured-trusted-boot">What measured boot and trusted boot means for Linux</a></li><li><a title="Automatically decrypt your disk using TPM2" rel="nofollow" href="https://fedoramagazine.org/automatically-decrypt-your-disk-using-tpm2/">Automatically decrypt your disk using TPM2</a> &mdash; Entering the passphrase to decrypt the disk at boot can become quite tedious. On modern systems a secure hardware chip called “TPM” (Trusted Platform Module) can store a secret and automatically decrypt your disk. This is an alternative factor, not a second factor. Keep that in mind.</li><li><a title="Use systemd-cryptenroll with FIDO U2F or TPM2 to decrypt your disk" rel="nofollow" href="https://fedoramagazine.org/use-systemd-cryptenroll-with-fido-u2f-or-tpm2-to-decrypt-your-disk/">Use systemd-cryptenroll with FIDO U2F or TPM2 to decrypt your disk</a></li><li><a title="Automatic LUKS 2 disk decryption with TPM 2 on Fedora" rel="nofollow" href="https://kowalski7cc.xyz/blog/luks2-tpm2-clevis-fedora31/">Automatic LUKS 2 disk decryption with TPM 2 on Fedora</a></li><li><a title="Safe automatic decryption of LUKS partition using TPM2 | 221b" rel="nofollow" href="https://221b.uk/safe-automatic-decryption-luks-partition-tpm2">Safe automatic decryption of LUKS partition using TPM2 | 221b</a></li><li><a title="FOSDEM 2024: Clevis/Tang - unattended boot of an encrypted NixOS system" rel="nofollow" href="https://fosdem.org/2024/schedule/event/fosdem-2024-3044-clevis-tang-unattended-boot-of-an-encrypted-nixos-system/">FOSDEM 2024: Clevis/Tang - unattended boot of an encrypted NixOS system</a></li><li><a title="Clevis &amp; Tang on NixOS Slides" rel="nofollow" href="https://camillemondon.com/talks/fosdem24-clevis/#/title-slide">Clevis &amp; Tang on NixOS Slides</a></li><li><a title="Decrypt LUKS volumes with a TPM on Fedora Linux" rel="nofollow" href="https://gist.github.com/jdoss/777e8b52c8d88eb87467935769c98a95">Decrypt LUKS volumes with a TPM on Fedora Linux</a></li><li><a title="Self-Hosted 127: Can&#39;t Fix What You Don&#39;t Track" rel="nofollow" href="https://selfhosted.show/127">Self-Hosted 127: Can't Fix What You Don't Track</a></li><li><a title="Garmin Forerunner 265" rel="nofollow" href="https://www.amazon.com/dp/B0BS1T9J4Y">Garmin Forerunner 265</a> &mdash; Forerunner 265 is a running smartwatch with a touchscreen AMOLED display, training metrics, phone-free music, &amp; up to 13 days of battery life in smartwatch</li><li><a title="HRV Status" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/hrv-status/">HRV Status</a></li><li><a title="Garmin Sleep Tracking" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/sleep-tracking/">Garmin Sleep Tracking</a></li><li><a title="Nap Detection" rel="nofollow" href="https://www.garmin.com/en-US/garmin-technology/health-science/nap-detection/">Nap Detection</a></li><li><a title="Garmin Pay" rel="nofollow" href="https://www.garmin.com/en-US/garmin-pay/">Garmin Pay</a></li><li><a title="Tribit Stormbox Micro 2 Wireless Portable Speaker: 10W" rel="nofollow" href="https://www.amazon.com/dp/B09Q59321N">Tribit Stormbox Micro 2 Wireless Portable Speaker: 10W</a></li><li><a title="USB-C Charging Converter for Garmin Watch Without Charger Cable" rel="nofollow" href="https://www.amazon.com/dp/B0BK4QD665">USB-C Charging Converter for Garmin Watch Without Charger Cable</a></li><li><a title="Obtainium" rel="nofollow" href="https://github.com/ImranR98/Obtainium">Obtainium</a> &mdash; Obtainium allows you to install and update apps directly from their releases pages, and receive notifications when new releases are made available.</li><li><a title="Managing your personal access tokens" rel="nofollow" href="https://docs.github.com/en/authentication/keeping-your-account-and-data-secure/managing-your-personal-access-tokens">Managing your personal access tokens</a></li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Iotas" rel="nofollow" href="https://flathub.org/apps/org.gnome.World.Iotas">Iotas</a> &mdash; Iotas aims to provide distraction-free note taking with optional speedy sync with Nextcloud Notes.</li><li><a title="LINUX Unplugged 567: So Long sudo" rel="nofollow" href="https://linuxunplugged.com/567">LINUX Unplugged 567: So Long sudo</a></li><li><a title="Celeste" rel="nofollow" href="https://github.com/hwittenborn/celeste">Celeste</a> &mdash; GUI file synchronization client that can sync with any cloud provider</li><li><a title="vt52&#39;s Blog: Migrating from NixOS channels to Flakes" rel="nofollow" href="https://tty.is/blog/migrating-to-flakes.html">vt52's Blog: Migrating from NixOS channels to Flakes</a></li><li><a title="FUTO Keyboard" rel="nofollow" href="https://keyboard.futo.org/">FUTO Keyboard</a></li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a></li><li><a title="LINUX Unplugged 570: RegreSSHion Strikes" rel="nofollow" href="https://linuxunplugged.com/570">LINUX Unplugged 570: RegreSSHion Strikes</a></li><li><a title="Aeon" rel="nofollow" href="https://aeondesktop.github.io/">Aeon</a> &mdash; The Linux Desktop for people who want to "get stuff done"</li><li><a title="Aeon: openSUSE for lazy developers" rel="nofollow" href="https://lwn.net/Articles/977987/">Aeon: openSUSE for lazy developers</a></li><li><a title="Grayjay" rel="nofollow" href="https://grayjay.app/">Grayjay</a> &mdash; Follow Creators Not Platforms</li><li><a title="Grayjay on GitLab" rel="nofollow" href="https://gitlab.futo.org/videostreaming/grayjay">Grayjay on GitLab</a></li><li><a title="CrowdSec" rel="nofollow" href="https://www.crowdsec.net/">CrowdSec</a></li><li><a title="Bustle" rel="nofollow" href="https://flathub.org/apps/org.freedesktop.Bustle">Bustle</a> &mdash; Bustle draws sequence diagrams of D-Bus activity. It shows signal emissions, method calls and their corresponding returns, with time stamps for each individual event and the duration of each method call. This can help you check for unwanted D-Bus traffic, and pinpoint why your D-Bus-based application is not performing as well as you like. It also provides statistics like signal frequencies and average method call times.</li><li><a title="open-and-shut" rel="nofollow" href="https://github.com/veggiedefender/open-and-shut">open-and-shut</a> &mdash; Type in Morse code by repeatedly slamming your laptop shut</li><li><a title="Zuck Comapres AI to Linux - Open Source AI Is the Path Forward" rel="nofollow" href="https://about.fb.com/news/2024/07/open-source-ai-is-the-path-forward/">Zuck Comapres AI to Linux - Open Source AI Is the Path Forward</a> &mdash;  Today, Linux is the industry standard foundation for both cloud computing and the operating systems that run most mobile devices – and we all benefit from superior products because of it.

I believe that AI will develop in a similar way. </li></ul>]]>
  </itunes:summary>
</item>
<item>
  <title>570: RegreSSHion Strikes</title>
  <link>https://linuxunplugged.com/570</link>
  <guid isPermaLink="false">e0a79ddc-351e-4a10-ab88-2fb436b0e1c2</guid>
  <pubDate>Sun, 07 Jul 2024 17:00:00 -0700</pubDate>
  <author>Jupiter Broadcasting</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/f31a453c-fa15-491f-8618-3f71f1d565e5/e0a79ddc-351e-4a10-ab88-2fb436b0e1c2.mp3" length="39563934" type="audio/mp3"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Jupiter Broadcasting</itunes:author>
  <itunes:subtitle>We dig into the RegreSSHion bug, debate it's real threat and explore clever tools to build a tasty fried onion around your system.</itunes:subtitle>
  <itunes:duration>47:05</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
  <description>We dig into the RegreSSHion bug, debate it's real threat and explore clever tools to build a tasty fried onion around your system. 
</description>
  <itunes:keywords>Jupiter Broadcasting, Linux Podcast, Linux Unplugged, RegreSSHion, fried onion, autossh, server hardening, Spokane meetup, CVE, openSSH, Qualys, RCE, 32-bit, exploit, vulnerability, regression, exploit, Dan Goodin, Ars, Stan Kaminsky, Kaspersky, malicious payloads, denial-of-service, security advisory, Fail2Ban, port knocking, Tailscale, Letmein, fwknop, FireWall KNock OPerator, firewall, SPA, KDEConnect, krunner, NixOS, atomic clock, JB Time, stu, TUI</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We dig into the RegreSSHion bug, debate it&#39;s real threat and explore clever tools to build a tasty fried onion around your system.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)" rel="nofollow" href="https://jbevents.hybridsarcasm.xyz/mqsu0M5BiBA_2J9GS5ODK">Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)</a></li><li><a title="Plasma/Krunner Docs" rel="nofollow" href="https://userbase.kde.org/Plasma/Krunner">Plasma/Krunner Docs</a> &mdash; Brent's tip: 'https://search.nixos.org/options?query=\{@}' (the '\{@}' is the magic sauce)</li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a> &mdash; Automatically restart SSH sessions and tunnels</li><li><a title="autossh on GitHub" rel="nofollow" href="https://github.com/Autossh/autossh">autossh on GitHub</a></li><li><a title="Spokane Meetup" rel="nofollow" href="https://www.meetup.com/jupiterbroadcasting/events/301471716/">Spokane Meetup</a> &mdash; No-Li Brewhouse, Sat, Jul 13, 2024, 4:00 PM</li><li><a title="RegreSSHion" rel="nofollow" href="https://www.phoronix.com/news/RegreSSHion-CVE-2024-6387">RegreSSHion</a> &mdash; Remote Code Execution Vulnerability In OpenSSH Server</li><li><a title="regreSSHion" rel="nofollow" href="https://blog.qualys.com/vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server">regreSSHion</a> &mdash; Remote Unauthenticated Code Execution Vulnerability in OpenSSH server.</li><li><a title="NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP" rel="nofollow" href="https://discourse.nixos.org/t/security-advisory-openssh-cve-2024-6387-regresshion-update-your-servers-asap/48220">NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP</a></li><li><a title="Nasty regreSSHion bug affects around 700K Linux systems" rel="nofollow" href="https://www.theregister.com/2024/07/01/regresshion_openssh/">Nasty regreSSHion bug affects around 700K Linux systems</a></li><li><a title="Qualys CVE-2024-6387 Write-up" rel="nofollow" href="https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt">Qualys CVE-2024-6387 Write-up</a></li><li><a title="Letmein: Authenticating port knocker - Written in Rust" rel="nofollow" href="https://github.com/mbuesch/letmein">Letmein: Authenticating port knocker - Written in Rust</a> &mdash; Letmein is a simple port knocker with a simple and secure authentication mechanism. It can be used to harden against pre-authentication attacks on services like SSH, VPN, IMAP and many more.</li><li><a title="fwknop: Single Packet Authorization &gt; Port Knocking" rel="nofollow" href="https://www.cipherdyne.org/fwknop/">fwknop: Single Packet Authorization &gt; Port Knocking</a> &mdash; fwknop stands for the "FireWall KNock OPerator", and implements an authorization scheme called Single Packet Authorization (SPA). This method of authorization is based around a default-drop packet filter</li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Jeff links: How to run non-nix executables?" rel="nofollow" href="https://nix.dev/guides/faq#how-to-run-non-nix-executables">Jeff links: How to run non-nix executables?</a></li><li><a title="pick: stu" rel="nofollow" href="https://github.com/lusingander/stu">pick: stu</a> &mdash; TUI (Terminal/Text UI) application for AWS S3</li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We dig into the RegreSSHion bug, debate it&#39;s real threat and explore clever tools to build a tasty fried onion around your system.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)" rel="nofollow" href="https://jbevents.hybridsarcasm.xyz/mqsu0M5BiBA_2J9GS5ODK">Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)</a></li><li><a title="Plasma/Krunner Docs" rel="nofollow" href="https://userbase.kde.org/Plasma/Krunner">Plasma/Krunner Docs</a> &mdash; Brent's tip: 'https://search.nixos.org/options?query=\{@}' (the '\{@}' is the magic sauce)</li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a> &mdash; Automatically restart SSH sessions and tunnels</li><li><a title="autossh on GitHub" rel="nofollow" href="https://github.com/Autossh/autossh">autossh on GitHub</a></li><li><a title="Spokane Meetup" rel="nofollow" href="https://www.meetup.com/jupiterbroadcasting/events/301471716/">Spokane Meetup</a> &mdash; No-Li Brewhouse, Sat, Jul 13, 2024, 4:00 PM</li><li><a title="RegreSSHion" rel="nofollow" href="https://www.phoronix.com/news/RegreSSHion-CVE-2024-6387">RegreSSHion</a> &mdash; Remote Code Execution Vulnerability In OpenSSH Server</li><li><a title="regreSSHion" rel="nofollow" href="https://blog.qualys.com/vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server">regreSSHion</a> &mdash; Remote Unauthenticated Code Execution Vulnerability in OpenSSH server.</li><li><a title="NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP" rel="nofollow" href="https://discourse.nixos.org/t/security-advisory-openssh-cve-2024-6387-regresshion-update-your-servers-asap/48220">NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP</a></li><li><a title="Nasty regreSSHion bug affects around 700K Linux systems" rel="nofollow" href="https://www.theregister.com/2024/07/01/regresshion_openssh/">Nasty regreSSHion bug affects around 700K Linux systems</a></li><li><a title="Qualys CVE-2024-6387 Write-up" rel="nofollow" href="https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt">Qualys CVE-2024-6387 Write-up</a></li><li><a title="Letmein: Authenticating port knocker - Written in Rust" rel="nofollow" href="https://github.com/mbuesch/letmein">Letmein: Authenticating port knocker - Written in Rust</a> &mdash; Letmein is a simple port knocker with a simple and secure authentication mechanism. It can be used to harden against pre-authentication attacks on services like SSH, VPN, IMAP and many more.</li><li><a title="fwknop: Single Packet Authorization &gt; Port Knocking" rel="nofollow" href="https://www.cipherdyne.org/fwknop/">fwknop: Single Packet Authorization &gt; Port Knocking</a> &mdash; fwknop stands for the "FireWall KNock OPerator", and implements an authorization scheme called Single Packet Authorization (SPA). This method of authorization is based around a default-drop packet filter</li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Jeff links: How to run non-nix executables?" rel="nofollow" href="https://nix.dev/guides/faq#how-to-run-non-nix-executables">Jeff links: How to run non-nix executables?</a></li><li><a title="pick: stu" rel="nofollow" href="https://github.com/lusingander/stu">pick: stu</a> &mdash; TUI (Terminal/Text UI) application for AWS S3</li></ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
