💾 Archived View for gemini.susa.net › cgi-bin › gemini-irc captured on 2023-06-14 at 14:13:17. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2023-05-24)

➡️ Next capture (2023-06-16)

🚧 View Differences

-=-=-=-=-=-=-

#gemini IRC log

Show most recent first

2023-06-13

07:42 - low-key

congratulations! :D

08:13 - tomasino

congrats, jcowan !

11:35 - jcowan

Thanks to all

11:46 - amby

what if instead of nickserv is was nickserb

something to think about

11:51 - jcowan

amby: My first thought is that someone would create a rival bot named nickcroat

17:01 - mhj

Good day all and AHOY

19:01 - giggles

helo mhj

20:33 - tomasino

o/

20:42 - giggles

\o tomasino

I dont even know gemini, someone can tell me a bit about how its used?

20:43 - kensanata

Think of it as an alternate web. You have Gemini browsers and Gemini sites.

20:44 - giggles

It resembles gopher in some way?

20:44 - tomasino

yep!

https://ino.is/small-internet-talk - i talk about it here

tomasino's link to 'https://ino.is/small-internet-talk'

20:45 - kensanata

Exactly. Somewhere between Gopher and the Web, actually.

20:45 - tomasino

and here: https://www.youtube.com/watch?v=DoEI6VzybDk&list=PLH6DGA0TYVjrN5sSGSghUjoRqh9_8PWhV&index=3

tomasino's link to 'https://www.youtube.com/watch?v=DoEI6VzybDk&list=PLH6DGA0TYVjrN5sSGSghUjoRqh9_8PWhV&index=3'

but short version: gopher-like with markdown-like syntax and TLS

20:52 - giggles

I get into tilde world looking to have fun on internet gain

I still not tried gopher and gemini, those seem good

20:53 - amby

gemini is pretty simple

i made my own server in like. one weekend

20:53 - giggles

I love simple things ><

tomasino: your website is blocking tor exit nodes?

nevermind it loaded now

20:56 - thrig

gopherlike, weblite

20:56 - tomasino

for fun and profit

21:35 - alexlehm

to browse gemini (to get started), you can use the gemini gateway from tilde

gemini.tildeverse.org

tomasino: i just noticed that your short domain is "ino", so you could use tomas.ino.is

21:36 - tomasino

i could! but i also own tomasino.is and tomasino.org so ... ;)

21:37 - kensanata

(which my office firewall unhelpfully blocks).

I finally got my web/gemini setup working for The Transjovian Council. https://transjovian.org/ and gemini://transjovian.org/ both work with different certificates. No more port 1965 for the web (which resulted in conflicts with web browers or gemini browsers depending on whether I used a self-signed cert or not), no more port 1966 for the web

kensanata's link to 'https://transjovian.org/'

kensanata's link to 'gemini://transjovian.org/'

I'm always surprised that people still connect to the MUSH gemini://campaignwiki.org/play/ijirait/type?who

kensanata's link to 'gemini://campaignwiki.org/play/ijirait/type?who'

21:49 - alexlehm

the gemini url currently gives me incomplete headers with Lagrange

21:54 - kensanata

alexlehm: Strange. I see no problems. The gemini://transjovian.org/ URL? I'm using Lagrange Version 1.13.7. Perhaps I should make another build?

kensanata's link to 'gemini://transjovian.org/'

21:55 - alexlehm

the one with /play/

21:55 - epoch

that campaignwiki.org link isn't returning anything it seems

maybe I should have a checker script people can use to test if it is just them or not

21:57 - alexlehm

i use a web-gemini page to check usually

21:57 - epoch

maybe a gemini proxy?

righ

21:57 - alexlehm

gemini.tildeverse.org

21:59 - kensanata

Ah, my servers end up blocking almost all web proxies because the web proxies don't handle 44 SLOW DOWN and so they're incrementally blocked for longer and longer.

As soon as a search engine discovers the web proxy and starts indexing, it eventually triggers the trap… and then everybody else using the web proxy is blocked along with them.

22:01 - alexlehm

its not working from my windows ip either or from my shared linux host

22:02 - tomasino

i do have robots blocking gemini.tildeverse.org, so hopefully you won't get any search traffic through that entryway

22:02 - kensanata

Let me check the logs.

OK, alexlehm. You found another bug. :D

22:04 - tomasino

he's good at that

22:05 - kensanata

Apparently I never triggered it because there's a character for my client certificate, but using a cheap command line script, the client gets no reply and the server crashes: "Main process exited, code=killed, status=11/SEGV"

Wow.

22:06 - tomasino

haha

22:07 - alexlehm

i have written the most simple test script that just calls openssl s_client, that has found a lot of bugs in my stuff

22:11 - kensanata

Sadly, it works if I contact my server at home. "60 You need a client certificate to play" How strange.

I think I know what my problem is.

Remember how I bragged about having finally resolved the HTTPS/gemini dual hosting situation.

Well, that involved the web server acting as reverse proxy and the gemini server running HTTP.

And so whenever there is code that wants to know whether you are logged in… it's actually not an encrypted socket.

And all bets are off.

Fuuuuuuh

Hm.

Waitaminute. That's not right.

23:17 - alexlehm

proxying client certs likely will not work

or it requires alpn-based proxying which does not really terminate the tls connection, which supposedly works with nginx, but i have not tried that

23:22 - kensanata

I think the problem is somewhere else. As far as I can tell, the Perl library is broken somehow (ever since the Debian 12 upgrade?). The IO::Socket::SSL get_fingerprint() crashes.

And leads into the OpenSSL innards.

Uuugh

23:28 - thrig

major perl version changes or openssl updates could cause problems

23:29 - kensanata

Indeed. Skimming https://www.openssl.org/docs/man3.0/man7/migration_guide.html

kensanata's link to 'https://www.openssl.org/docs/man3.0/man7/migration_guide.html'

When I think of all the hassle TSL has given me over the Gemini years, I wonder if it was worth it.

Probably not.

23:37 - tomasino

should have rolled our own crypto. ;)

23:38 - thrig

both have their bad points

23:42 - kensanata

Should have stuck to Gopher and Spartan.

23:48 - thrig

allowing the NSA and your ISP to do all sorts of naughty things

2023-06-14

00:09 - epoch

should have never come down from the trees

crawled out of the ocean*

replicated molecules*