Earlier quoted context omitted.
It’s so sketch… anyone who trusts NetBoot.xyz is asking to be pwned. You need to serve your own iPXE files and cached ISOs.
... Via netboot.xyz? https://netboot.xyz/docs/selfhosting/
Bootimus – A Self-Contained PXE and HTTP Boot Server
51–53 of 53 posts
Re: Bootimus – A Self-Contained PXE and HTTP Boot Server
#52Has anyone else noticed how readily identifiable AI generated text is? This is a very cool project, and I suppose it's hard to know for sure, but everything about the site describing the project "feels" AI generated to me. I do not say this to detract from the value of the project or its very interesting nature, by the way. Just an orthogonal observation.
There is a note on there around AI coding which gives a little more hope. But what i would expect from such a component is also a clear indication of how its security is being vetter, tested and attempted to be assured. When using such a server, its of critical importance its secure. If someone can enter it, they can change your images, knock over a machine and get it to boot a rogue image etc. Id be interested what…
What you are describing can happen with any tool, iVentoy literally injects code into your images without you knowing as it's closed source. NetbootXYZ have crazy CI Pipelines and ansible to make it work.
I tried to make it as single binary, open and single shot as possible.
Re: Bootimus – A Self-Contained PXE and HTTP Boot Server
#53Has anyone else noticed how readily identifiable AI generated text is? This is a very cool project, and I suppose it's hard to know for sure, but everything about the site describing the project "feels" AI generated to me. I do not say this to detract from the value of the project or its very interesting nature, by the way. Just an orthogonal observation.