2.5 Admins 178: LOTS of Storage

Hard drives are pretty much an enterprise product now, GitHub’s malware problem, and spreading services across different machines and VMs to keep downtime to a minimum.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes

OpenZFS Storage Best Practices and Use Cases Part 1: Snapshots and Backups



Hard disk drives are next in line to become mostly enterprise hardware — as Nvidia (and AMD) could be planning to focus on AI, leaving consumers as second-class citizens

Seagate unveils 30 TB+ Exos HAMR disk drives – Blocks and Files

Miscreants absolutely love using GitHub to sling malware

Flying Under the Radar: Abusing GitHub for Malicious Infrastructure


Free Consulting

We were asked about spreading services across different machines and VMs to keep downtime to a minimum.





Kolide ensures that if a device isn’t secure it can’t access your apps.  It’s Device Trust for Okta. Visit kolide.com/25a to learn more.



Check out the brand new Autonomous IT podcast. Listen in as a variety of experts in the IT Operations space discuss the latest Patch Tuesday releases, mitigation tips, and custom automations to help with CVE remediations. Listen now on Spotify, Apple, or wherever you get your podcasts.





See our contact page for ways to get in touch.


2.5 Admins 177: Don’t Pay the Dane

Why the problems with open source licenses aren’t quite as easy to fix as some people think, the reasons you should never pay ransomware gangs, and running a Nagios distro on a Raspberry Pi.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



What comes after open source? Bruce Perens is working on it

A tale of 2 casino ransomware attacks: One paid out, one did not

The State of Ransomware in the U.S.: Report and Statistics 2023


Free Consulting

We were asked about running a Nagios distro on a Raspberry Pi.

NEMS Linux






Check out the brand new Autonomous IT podcast. Listen in as a variety of experts in the IT Operations space discuss the latest Patch Tuesday releases, mitigation tips, and custom automations to help with CVE remediations. Listen now on Spotify, Apple, or wherever you get your podcasts.




See our contact page for ways to get in touch.


2.5 Admins 176: Sudo Cognito

What does “incognito mode” in Chrome actually mean and whether documenting browser standards in code is a good idea, the serious implications of a fun story about messing with a ChatGPT instance, and maximizing performance when using mixed disk types on ZFS mirrored vdevs.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



Google agrees to settle Chrome incognito mode class action lawsuit

I’d Buy That for a Dollar: Chevy Dealership’s AI Chatbot Goes Rogue


Free Consulting

We were asked about maximizing performance when using mixed disk types on ZFS mirrored vdevs.






See our contact page for ways to get in touch.


2.5 Admins 175: Guess Who’s Listening

Twitch pulls out of Korea thanks to the opposite of Net Neutrality, it’s not clear to what extent smart devices are listening to your conversations, more on water usage in data centers, and our thoughts on mandatory access controls.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



Twitch to shut down in Korea over ‘prohibitively expensive’ network fees

Marketer sparks panic with claims it uses smart devices to eavesdrop on people


Free Consulting

We were asked for our thoughts on mandatory access controls.






Kolide ensures that if a device isn’t secure, it can’t access your apps. It’s Device Trust for Okta. Watch the demo today to see how it works at kolide.com/25a





See our contact page for ways to get in touch.


2.5 Admins 174: Guess Who’s Watching

What you need to know about the recent SSH vulnerability, yet another privacy issue with cloud-connected security cameras, why it’s difficult to get to the bottom of an obscure ZFS encryption bug, and more.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



SSH protects the world’s most sensitive networks. It just got a lot weaker

UniFi devices broadcasted private video to other users’ accounts


Free Consulting

We were asked about the state of ZFS encryption, and Syncoid snapshots.






See our contact page for ways to get in touch.


2.5 Admins 173: Ghost Files

Google Drive client users lost months of files, a feature of UEFI that has left millions of computers potentially vulnerable to persistent malware, and why you probably shouldn’t buy cheap resold volume Windows licenses.



Support us on patreon to get ad-free episodes that are sometimes a day or so early.



Google Drive users say Google lost their files; Google is investigating

How to restore files in Drive for desktop (v84.0.0.0-

Just about every Windows and Linux device vulnerable to new LogoFAIL firmware attack


Free Consulting

We were asked about using cheap resold volume Windows licenses.







Kolide ensures that if a device isn’t secure, it can’t access your apps. It’s Device Trust for Okta. Watch the demo today to see how it works at kolide.com/25a






See our contact page for ways to get in touch.


2.5 Admins 172: HOLEy ZFS

Jim and Allan break down the details of the recent ZFS data corruption bug, and give their tips for managing a fleet of 40+ servers.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



Two new versions of OpenZFS fix long-hidden corruption bug


Free Consulting

We were asked about managing 40+ servers.






Save time, eliminate risk, and automate the patching, configuration, and control of all your Windows, macOS, and Linux endpoints with Automox.






See our contact page for ways to get in touch.


2.5 Admins 171: RSA PSA

Why a small island nation’s top level domain ended up with such a terrible reputation, an ssh vulnerability that’s not as scary as it sounds, whether software can be “finished”, and using powerline or WiFi for security cameras.




Support us on patreon and get an ad-free RSS feed with early episodes sometimes



How a tiny Pacific Island became the global capital of cybercrime

Passive SSH server private key compromise is real … for some vulnerable gear



The beauty of finished software




Free Consulting

We were asked about using powerline or WiFi for security cameras.








Kolide ensures that if a device isn’t secure, it can’t access your apps. It’s Device Trust for Okta. Watch the demo today to see how it works at kolide.com/25a


The Traceroute Podcast

Check out the new season of the Traceroute Podcast on Apple, Spotify, or wherever you get your podcasts.  Visit the website.







See our contact page for ways to get in touch.


2.5 Admins 170: Uninterruptible WiFi

Why and how Allan installed a set of new Power over Ethernet wireless access points, and our hardware recommendations for a media server and NAS in one.


Allan’s new WiFi setup

Access points




Free Consulting

We were asked for hardware recommendations for a media server and NAS in one.








With HelloFresh, you get farm-fresh, pre-portioned ingredients and seasonal recipes delivered right to your doorstep. Get free breakfast for life at hellofresh.com/25adminsfree with code 25adminsfree. (One breakfast item per box while subscription is active).



Kolide ensures that if a device isn’t secure, it can’t access your apps. It’s Device Trust for Okta. Watch the demo today to see how it works at kolide.com/25a






See our contact page for ways to get in touch.


2.5 Admins 169: SDCoF

A Cloudflare outage shines a light on sloppy data center practices, and why you shouldn’t run a mail server at home. Plus followup on the Android multi-user bug, package managers on Windows, and Toshiba hard drives.



Support us on patreon and get an ad-free RSS feed with early episodes sometimes



Cloudflare claims Flexential data center outage was behind service disruption – DCD

Post Mortem on Cloudflare Control Plane and Analytics Outage

Android 14’s storage disaster gets patched, but your data might be gone




Toshiba Consumer Internal Hard Disk Drives


Free Consulting

We were asked about running a mail server at home.

“Run Your Own Mail Server” chapter 0








With HelloFresh, you get farm-fresh, pre-portioned ingredients and seasonal recipes delivered right to your doorstep. Get free breakfast for life at hellofresh.com/25adminsfree with code 25adminsfree. (One breakfast item per box while subscription is active).



Kolide ensures that if a device isn’t secure, it can’t access your apps. It’s Device Trust for Okta. Watch the demo today to see how it works at kolide.com/25a






See our contact page for ways to get in touch.