Skip to content

Instantly share code, notes, and snippets.


Sebastian Schmidt publicarray

Block or report user

Report or block publicarray

Hide content and notifications from this user.

Learn more about blocking users

Contact Support about this user’s behavior.

Learn more about reporting abuse

Report abuse
View GitHub Profile
publicarray / wg-quick.zsh
Last active Apr 28, 2019
Slowly progress to a posix compatible script... for embedded devices with busybox
View wg-quick.zsh
#!/usr/bin/env zsh
# SPDX-License-Identifier: GPL-2.0
# Copyright (C) 2015-2019 Jason A. Donenfeld <>. All Rights Reserved.
set -e -o pipefail
export LC_ALL=C
publicarray /
Last active Mar 9, 2019 — forked from thde/
A script to install alpine linux on a dedicated server. Tested on Hetzner, Kimsufi / OVH
set -ex
KEYMAP="us us"

Terraform on OHV

  1. Create a project
  2. Cloud->Servers->Project Name->Tecnical Management->Openstack Users
  3. Add user
  4. Download an Openstack Configuration File (v3)


But use the following provider, fill in the blanks from the configuration file you downloaded earlier:

publicarray /
Last active Aug 11, 2018
Docker & Prometheus node-exporter

docker run --rm -h

docker run -d --net=host --pid=host --name "node-exporter" --cap-add=SYS_TIME -v "/proc:/host/proc:ro" -v "/sys:/host/sys:ro" -v "/:/rootfs:ro" --path.procfs /host/proc --path.sysfs  /host/proc --collector.filesystem.ignored-mount-points "^/(sys|proc|dev|host|etc)($|/)"
publicarray / AU-banking&
Last active Jul 8, 2018
Australian Internet banking and CDNs
View AU-banking&

Australian Internet banking and CDNs

Note: I do not care if their home page is on a CDN what matters is that the banking credentials and financial information is end to end encrypted from the financial institution and to your browser. There are no grantees that this is the case even with TLS. TLS might be terminated earlier e.g by a load-balancer or a CDN. I only checked the login pages since I don't have an account in all of the banks, that would be crazy. I tried to use Whois data and HTML headers to determine CDNs. This method is not foolproof so please take it with a grain of salt

Hostname CDN / Cloud Firewall Uses 3rd party assets without Subresource Integrity SSL Labs score comments Incapsula Yes A IP is owned by Incapsula B IP address owned by ANZ but has relation to "SingTel Optus Pty Ltd". Uses lots of type="hidden" fields on login form,
View worker.js
// A Service Worker which adds Security Headers.
// Checks:
publicarray / make-doc
Created Jan 6, 2018
Make a FreeBSD Handbook docset for Dash
View make-doc
set -e
if ! command -v dashing >/dev/null 2>&1; then
if command -v go >/dev/null; then
go get -u
echo "Missing go. Install golang first 'brew install golang'"
return 1
publicarray /
Last active Jan 5, 2018
Minecraft with SocketBuffer - on Vultr (CentOS 6.9)
ln -sf paperclip-1294.jar minecraft_server.jar
service minecraft restart

service iptables stop
chkconfig iptables off
# systemctl disable iptables

yum install tuned tuned-utils
publicarray /
Last active Jan 2, 2018
Install fishshell on OpenBSD
pkg_add curl gcc g++ gmake
curl -Lo /tmp/fish.tar.gz
tar -xzvf /tmp/fish.tar.gz -C /tmp/
cd /tmp/fish-*
CC=egcc CXX=eg++ ./configure
gmake install
echo '/usr/local/bin/fish' | sudo tee -a /etc/shells > /dev/null
publicarray / dnscrypt-autokey.conf
Last active Mar 24, 2019
DNSCrypt - Better key management with dnscrypt-wrapper. Use this script to automatically rotate keys and restart Unbound/DNSCrypt-wrapper
View dnscrypt-autokey.conf
# Sample config file, place it at /usr/local/etc/dnscrypt-autokey.conf
## Key Config
# Location to store the provider key pair. Default is /usr/local/etc/dnscrypt-wrapper/keys
KEY_DIR=$(dirname "$0")/keys
# Location to generate the short-lived keys and certificates. Default is $KEY_DIR
# Note: Do not manually add, move, modify or touch files in this folder!
# Certificate expiration time in days
You can’t perform that action at this time.