Notices tagged with diaspora, page 6
-
diaspora* security release 0.5.7.1
We just released diaspora* version 0.5.7.1 which disables post fetching for relayables. Due to an insecure implementation, fetching of root posts for relayables could allow an attacker to distribute malicious/spoofed/modified posts for any person.
Disabling the fetching will make the current federation a bit less reliable, but for a hotfix, this is the best solution. We will re-enable the fetching in 0.6.0.0 when we moved out the federation into its own library and are able to implement further validation during fetches.
Updating
Please update as soon as possible. Update instructions are available as usual in the wiki.
-
diaspora* security release 0.5.7.1
We just released diaspora* version 0.5.7.1 which disables post fetching for relayables. Due to an insecure implementation, fetching of root posts for relayables could allow an attacker to distribute malicious/spoofed/modified posts for any person.
Disabling the fetching will make the current federation a bit less reliable, but for a hotfix, this is the best solution. We will re-enable the fetching in 0.6.0.0 when we moved out the federation into its own library and are able to implement further validation during fetches.
Updating
Please update as soon as possible. Update instructions are available as usual in the wiki.
-
@laemeur Sorry if it sounds like I'm denouncing what you type, I just got into rant-mode and started discussing the situation in general.
The push size btw is _already_ designed to only push once per hub. One instance only has one subscription per remote user.
This is why !GNUsocial triumphs #Diaspora, #Tent.io etc. etc. in scalability (dunno how pump.io or activitypub works in this aspect). -
a big Thank You for all the people in the Federation especially those who made, contributed to, or helped someone in any way with Redmatrix, Hubzilla, Friendica, Diaspora, Pump.io, GNUsocial and all involved with anything that shares the visions of open federation and user freedom
and to all the users too - for spreading the word and giving it a go and helping the networks grow!
#ilovefs #friendica #redmatrix #hubzilla #diaspora #pumpio #gnusocial #federation #freesoftware
-
Published a new version of the "backup and restore" ie pod migration spec for #diaspora*. For those who remember, the initial draft was posted 4 months ago.
Since then there have been some changes to it according to comments. Additionally, I chose to "namespace" it under #TheFederation, which means it is generalized to diaspora like social networks, but not just diaspora*. I like the idea of being able to migrate not only pods but also platforms.
Also, the spec lives now in a git repository, which should enable more clear editing moving towards a 1.0 spec release, if enough support is given to it.
Feel free to have a look, comment and file issues if you're into this kind of thing!
Spec: https://the-federation.info/specs/backup-restore/
Git: https://gitlab.com/TheFederation/backup-restore -
Published a new version of the "backup and restore" ie pod migration spec for #diaspora*. For those who remember, the initial draft was posted 4 months ago.
Since then there have been some changes to it according to comments. Additionally, I chose to "namespace" it under #TheFederation, which means it is generalized to diaspora like social networks, but not just diaspora*. I like the idea of being able to migrate not only pods but also platforms.
Also, the spec lives now in a git repository, which should enable more clear editing moving towards a 1.0 spec release, if enough support is given to it.
Feel free to have a look, comment and file issues if you're into this kind of thing!
Spec: https://the-federation.info/specs/backup-restore/
Git: https://gitlab.com/TheFederation/backup-restore -
If anybody on here is also on #Diaspora then please let me know your usernames and I'll add you to my contact list. I'm currently going through my old contacts as I've just been told that the diaspora.horwood.biz pod is closed permanently :'(
-
@lohang Maybe a direct feed subscription was setup on quitter.se or something. #Diaspora still publishes your average PuSH enabled Atom feed for anyone to subscribe to, it's just that their discovery is messed up in the brain.
-
No, I don't have a facebook account and I don't want to.
Why can't i convince more people to join diaspora?
(Katharin Nocun.)
-
No, I don't have a facebook account and I don't want to.
Why can't i convince more people to join diaspora?
(Katharin Nocun.)
-
Also wenn ihr wollt… wir machen ein #diaspora -Usertreffen. Ab Morgen, 11 Uhr bis abends, 3:00 Uhr. ;)
-
Also wenn ihr wollt… wir machen ein #diaspora -Usertreffen. Ab Morgen, 11 Uhr bis abends, 3:00 Uhr. ;)
-
My talk at the #32C3 #FSFE assembly -- "Bringing free-as-in-freedom to social networks: what, why, and how" -- is tomorrow, Dev 28th at 20:00 in Hall 13. Come one come all!
#Decentralisation #Federation #TheFederation #Diaspora #Friendica
-
My talk at the #32C3 #FSFE assembly -- "Bringing free-as-in-freedom to social networks: what, why, and how" -- is tomorrow, Dev 28th at 20:00 in Hall 13. Come one come all!
#Decentralisation #Federation #TheFederation #Diaspora #Friendica
-
Auf dem #32c3 wird es ein Talk zu #diaspora von [Katharina Nocun](/people/f75d39a0a56001328d0f00259069449e) geben, eine Assembly powered by [Dennis Schubert](/people/4ce5b01a9e3a1b18d700000a) und neue Sticker von [Lisa P](/people/97af6df26ecc6c55) und mir. nice! https://events.ccc.de/congress/2015/Fahrplan/events/7403.html https://events.ccc.de/congress/2015/wiki/Assembly:Diaspora
-
changing pod on #Diaspora, if you follow me there then please re-subscribe to kevie@diaspora.horwood.biz
-
Subscribing to a bunch of people from #Diaspora and seeing what happens