Live data from Hacker News

LittleSnitch for Linux

obdev.at

361–370 of 489 posts

Re: LittleSnitch for Linux

#364

Earlier quoted context omitted.

> [ZoneAlarm] I always found it weird that Linux never really had anything like it. There was simply no need for it. GNU provided most of the software, spyware was unknown. Only since comercial vendors package for linux and bring their spyware along, the desire to inspect network rose.

This is such a naive view on computer security. It’s not just about spyware, which is also not exclusive to commercial vendors.

It's not, though. There simply wasn't enough malware to worry about. Why would I run a firewall when I was unlikely to ever encounter a malicious program?

Re: LittleSnitch for Linux

#365
post #6

I remember before Little Snitch there was ZoneAlarm for Windows[0] (here is a good screenshot[1]). No clue if the current version of ZoneAlarm does anything like that (have not used it in 2 decades). I always found it weird that Linux never really had anything like it. [0]: https://en.wikipedia.org/wiki/ZoneAlarm [1]: https://d2nwkt1g6n1fev.cloudfront.net/helpmax/wp-content/upl...

Completely forgot about ZoneAlarm. I remember using it in the early 2000s!

Same. And in a similar vein--AnalogX NetStat Live.

Re: LittleSnitch for Linux

#366

Earlier quoted context omitted.

This is such a naive view on computer security. It’s not just about spyware, which is also not exclusive to commercial vendors.

What else is this about? Debian repositories still contain no malware and if you install software exclusively from them, you'll be safe.

Yeah I will also be safe if I never turn on the PC, but some of us use computers to do actual work.

Re: LittleSnitch for Linux

#367
post #84

Earlier quoted context omitted.

I just tried littlesnitch and it did not resolve very many ips to domains, which is pretty basic. It also failed to identify most processes, and they were grouped under "Not Identified". It appears these are known limitations of the Linux version [1]. So for that alone I need to stick with opensnitch. [1] "Little Snitch for Linux is built for privacy, not security, and that distinction matters. The macOS version can…

Regarding unidentified processes: Little Snitch daemon must have been running when the process started in order to identify it reliably. It's best to reboot after installation so that Little Snitch starts before everything else. I should probably note this somewhere. And regarding failed reverse DNS names: Little Snitch is sniffing DNS lookups. If lookups are encrypted, there is little it can do. We usually recommend…

If I don't know who my machine is talking to, the information is not very useful. So there needs to be a fallback on some level.

Perhaps there should be a mode where littlesnitch just does its own lookup using the system-configured rDNS, for example from the ui or for specific processes, etc? It should be cached if it is a recent lookup, so minimal performance implications; and offloaded to the system rDNS resolver, so minimal instruction set.

Re: LittleSnitch for Linux

#368
post #6

I remember before Little Snitch there was ZoneAlarm for Windows[0] (here is a good screenshot[1]). No clue if the current version of ZoneAlarm does anything like that (have not used it in 2 decades). I always found it weird that Linux never really had anything like it. [0]: https://en.wikipedia.org/wiki/ZoneAlarm [1]: https://d2nwkt1g6n1fev.cloudfront.net/helpmax/wp-content/upl...

isn’t this essentially built into Windows these days? although it seems to come with a lot of programs pre-approved.

Iirc the firewall was already in XP. Maybe earlier but sp2 for sure.

Default allows everything though but you could even set outbound blocking rules. Cumbersome UI and no really good visibility though.

Re: LittleSnitch for Linux

#369
post #296

Earlier quoted context omitted.

> Yeah just yolo install whatever That's not even remotely what I said. > it’s not like applications or libraries such as axios iTerm doesn't use NPM. Little Snitch doesn't use NPM. I don't use NPM.

[flagged]

WTF? This is not an acceptable comment on HN, no matter who or what you're replying to. This style of commenting is not what this site is for, and destroys what it is for.

If you wouldn't mind reviewing https://news.ycombinator.com/newsguidelines.html and taking the intended spirit of the site more to heart, we'd be grateful.

Re: LittleSnitch for Linux

#370
How does it compare to Portmaster?

https://news.ycombinator.com/item?id=29761978

Portmaster – Open-source network monitor and firewall [315 points | 113 comments]

https://news.ycombinator.com/item?id=23539687

Show HN: Block trackers system-wide on Linux/Windows, a Pi-hole “to go” alt

[6 points by davegson on June 16, 2020 | 2 comments]

https://news.ycombinator.com/submitted?id=davegson

Post reply on HN