Live data from Hacker News

Build your own private WireGuard VPN with PiVPN

jeffgeerling.com

131–140 of 235 posts

Re: Build your own private WireGuard VPN with PiVPN

#132
I quickly installed Outline on a free-forever Oracle VPS. This might be the best option for someone who doesn't want to buy a RPi, worry about SD card corruption, use any additional electricity at home, or spend any money. Even with the tiny free VPS provided for free, I'm getting great speeds of over 200mbps. And you can choose multiple locations to set up your free VPS.

Re: Build your own private WireGuard VPN with PiVPN

#133
post #4

Before going to a long 3 month trip to Asia last year, I installed WireGuard on my Raspberry Pi 1 (original model B from 2012) which was running at home in US. I found PiVPN to be the easiest way to install Wireguard. I didn't know if I even needed a VPN but I was glad, and I was able to use internet as if I were at home. It was weird, but a lot of sites are blocked oversea, even though it shouldn't. For example, I c…

I don't know first hand, nor am I speaking for my employer (who happens to be one of the two companies you mentioned), but if it was me, I would assume that if my company doesn't do business outside of the United States, then may as well deny traffic for services that wouldn't be available outside of the United States, since it is more often than not problematic traffic. This means sometimes legit traffic would be in…

> I would assume that if my company doesn't do business outside of the United States

You forgot to consider "any of my company's existing US-resident customers temporarily traveling outside of the US".

Re: Build your own private WireGuard VPN with PiVPN

#134
post #42
post #33

Earlier quoted context omitted.

That's not how GDPR works but it is a common misconception and I can't really blame non-EU businesses for not taking the time to understand a foreign law when blocking is so easy.

What do you mean? That's pretty much how it works. You load up Homedepot website and they along with a bunch of 3rd parties that they partner with will start collecting data about you and storing it. You can't do that to someone from the EU without getting permission along with other restrictions. For Homedepot to comply with GPDR, they would have to treat EU and non-EU users differently, or they could just block EU.…

No, it isn't. see article 3, section 2 of the regulation. You need to offer goods or services to EU citizens for the law to be in effect. If home Depot doesn't operate in Europe, doesn't market to Europeans, doesn't ship to Europe, and doesn't offer any services to Europeans, then they are not impacted by gdpr.

Re: Build your own private WireGuard VPN with PiVPN

#135
post #30

Earlier quoted context omitted.

Can’t access homedepot from Germany either. I guess it’s HD blocking pesky foreigners

If you don't do business in the EU why accept traffic from there and possibly have to deal with GDPR issues.

So if I order something on Home Depot, the shipment is delayed, and I want to check on that (or even just find the support phone number, some sites block all HTTP requests from foreign IPs!) while I'm traveling out of country, I just don't get to do that without a VPN due to GDPR?

Re: Build your own private WireGuard VPN with PiVPN

#136

I run wg-easy https://github.com/WeeJeWel/wg-easy for this sort of thing. I use the docker container, and it's great. "Just works". Also, unrelated, I just decided I don't like the sentiment of "PiMyProjectName" branding. I know most projects don't just run on a Pi, and that the intent is to say "you can self-host thing", but at this point if you want to run a home server sort of thing, just buy some cheap 100-200 do…

The Pis shine primarily in terms of power consumption, under load, a mini PC could cosume 50W, where a Pi (and other ARM boards) will do an absolute maximum of 15W. And if you have multiple devices that run 24/7, that could be a significant saving

Additionally, my home Pi4 sits in a metal case that acts as a heat sink so I don't have to use a fan at all. That translates to:

- additional energy savings

- more or less eliminated need to clean out dust or eventually replace a fan

- no fan noise, a massive boon if you live in a small apartment and don't have a closet or basement you can toss the server into for noise insulation

I suppose if I did serious number crunching on my home server, I'd need something beefier... but I've been running a VPN, a Minecraft server, a streaming media server, and a DNS server on my Pi4 for more than 3 years now. Only during media scans do I feel any slowness.

Re: Build your own private WireGuard VPN with PiVPN

#137
post #124

Earlier quoted context omitted.

It's just a lot simpler to block than having to keep up with laws in other countries for businesses who don't even do business in those countries. It's not like it's hard or time consuming to implement, and cheaper than your other suggestion further down of consulting a lawyer every time one of these pops up, like "do I have to annoy my customers with these stupid cookie popups every time they visit?" Why should I ha…

> It's just a lot simpler to block than having to keep up with laws in other countries for businesses who don't even do business in those countries. Exactly, except that it is just simpler to do nothing . Do you (I assume you are not in either of the countries I give an examples, nor travel there) worry about laws in, say, China when you state "Taiwan is an independent country", or Russia when you say "Russia invaded…

Ah, now I remember how I got to one of these pages. I wanted to have a look at the local newspaper of Tuttle, Oklahoma because of a funny (and sad for open source devs) event that happened there in 2006: https://www.theregister.com/2006/03/24/tuttle_centos/. It was blocked for GDPR reasons (at the time at least)

Re: Build your own private WireGuard VPN with PiVPN

#138
post #97

Earlier quoted context omitted.

Most small local newspapers are owned by huge megacorps. GDPR EU laws and some others explicitly say that they can be enforced to entities outside the EU. I don't know if it has ever been enforced, except for large multinationals. The US does do that kind of thing though. As a dev, break some law, step foot in the US for a conference, get arrested (ex: Sklyarov 2001 case, for breaking PDF encryption). Although for mo…

> GDPR EU laws and some others explicitly say that they can be enforced to entities outside the EU They can tell whatever they want, but it would need to be a US court (in that case) who would do the litigation. Which they won't. > The US does do that kind of thing though. As a dev, break some law, step foot in the US for a conference, get arrested yes, this is why I mentioned that my point is only for local business…

> They can tell whatever they want, but it would need to be a US court (in that case) who would do the litigation. Which they won't.

That's a pretty incomplete view of how jurisdiction works. You do probably need a US court ruling to enforce a claim against a US entity – but if that entity has any EU subsidiaries or assets, you can bet that European courts will come after those.

> Blocking for security is another thing. Maybe a good idea, maybe not - but that's another story.

As a customer/taxpayer that needs access to a service from abroad, I really don't care why I have to jump through hoops to cancel a subscription/order or pay my taxes owed.

Re: Build your own private WireGuard VPN with PiVPN

#139
post #124

Earlier quoted context omitted.

It's just a lot simpler to block than having to keep up with laws in other countries for businesses who don't even do business in those countries. It's not like it's hard or time consuming to implement, and cheaper than your other suggestion further down of consulting a lawyer every time one of these pops up, like "do I have to annoy my customers with these stupid cookie popups every time they visit?" Why should I ha…

> It's just a lot simpler to block than having to keep up with laws in other countries for businesses who don't even do business in those countries. Exactly, except that it is just simpler to do nothing . Do you (I assume you are not in either of the countries I give an examples, nor travel there) worry about laws in, say, China when you state "Taiwan is an independent country", or Russia when you say "Russia invaded…

Our hacking attempts dropped by approx 85%, and we use less bandwidth. There are other benefits to blocking traffic to places where you don't do business.

> They could send you letters informing that you did wrong and that you have to pay 1M USD and you would just put that to trash.

I think it's just better to not get those letters in the first place (any more than spam phone calls or texts) and have to waste time reading them, or having to possibly consult an attorney over them to see if they have merit. It's just not something I want to be bothered with, nor should I. It has nothing to do with the company, what we do or our customers.

> Do you (I assume you are not in either of the countries I give an examples, nor travel there) worry about laws in, say, China when you state "Taiwan is an independent country", or Russia when you say "Russia invaded Ukraine", or North Korea when you say "NK is a tyranny", or France when you say "Retirement should be at 60 and not 64".

We don't say anything like that on our company sites.

Re: Build your own private WireGuard VPN with PiVPN

#140
post #42

Earlier quoted context omitted.

What do you mean? That's pretty much how it works. You load up Homedepot website and they along with a bunch of 3rd parties that they partner with will start collecting data about you and storing it. You can't do that to someone from the EU without getting permission along with other restrictions. For Homedepot to comply with GPDR, they would have to treat EU and non-EU users differently, or they could just block EU.…

GDPR doesn't care about where people are located right now. From the GDPR point of view you still have to treat EU-residents in a special way, even if they're located in US right now. But EU has less of the leverage if company refuses to do business in EU — that's true. on the other hand, CCPA is still a thing

> treat EU-residents in a special way, even if they're located in US right now.

This part of GDPR has always seemed completely unpracticable/unenforceable to me. How would a non-EU company even know that one of their customers is an EU resident and only temporarily visiting? Most services in the US aren't asking for my passport, at least.

Practically, I'd assume that this will be interpreted by courts to only apply to companies "intentionally doing business with/commercially targeting EU residents", which is already the case for similar scenarios (e.g. that's how, to my understanding, German law requiring all sites to provide an imprint has been interpreted by courts).

In any case, I suppose we'll have to wait for precedent; I'm not aware of any at the moment.

Post reply on HN