{"id":2150,"date":"2013-10-03T00:32:31","date_gmt":"2013-10-02T22:32:31","guid":{"rendered":"http:\/\/www.hackerspace.lu\/?p=2150"},"modified":"2013-10-03T00:32:31","modified_gmt":"2013-10-02T22:32:31","slug":"decrypting-network-at-the-hackerspace","status":"publish","type":"post","link":"https:\/\/syn2cat.lu\/?p=2150","title":{"rendered":"Decrypting network traffic at the hackerspace"},"content":{"rendered":"<p style=\"text-align: justify;\"><a href=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/MbitVUmeter.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\" wp-image-2163 alignright\" style=\"margin: 5px;\" alt=\"MbitVUmeter\" src=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/MbitVUmeter-265x300.jpg\" width=\"159\" height=\"180\" \/><\/a>You know the VU meter showing the network traffic on our Internet connection. The needle also bounces when the hackerspace is empty. Looking a bit more closely shows that it&#8217;s mostly encrypted traffic. What is going on here?<\/p>\n<p style=\"text-align: justify;\">To store our members credentials and information for our WiFi network and our Openduino lock system, we use <a href=\"http:\/\/en.wikipedia.org\/wiki\/Lightweight_Directory_Access_Protocol\">ldap<\/a>, a kind of database.<br \/>\n<a href=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/openvpn_logo.png\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-2165 alignleft\" style=\"margin: 5px;\" alt=\"openvpn_logo\" src=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/openvpn_logo.png\" width=\"125\" height=\"32\" \/><\/a> The ldap server at the hackerspace communicates and synchronises regularly with our master ldap server on the Internet over a permanent ipsec\/openvpn tunnel with strong crypto.<\/p>\n<p style=\"text-align: justify;\">Another VPN is the one that only gets activated for the annual <a href=\"http:\/\/events.ccc.de\/congress\/?language=en\">Chaos Communication Congress<\/a>. During the congress, the network at the conference gets extended to the hackerspace with its own dedicated WiFi access point and without any connection to a syn2cat network. Don&#8217;t connect to it unless you are prepared to completely reinstall your device and are sure it doesn&#8217;t contain any confidential data. On the other side of that tunnel are some black hats waiting for easy pray. Please don&#8217;t use syn2cat&#8217;s computers to connect there.<\/p>\n<p style=\"text-align: justify;\"><a href=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/ssh.gif\"><img loading=\"lazy\" decoding=\"async\" class=\" wp-image-2166 alignleft\" style=\"margin: 5px;\" alt=\"ssh\" src=\"https:\/\/www.hackerspace.lu\/wp-content\/uploads\/2013\/10\/ssh-300x89.gif\" width=\"240\" height=\"71\" \/><\/a><br \/>\nOther pseudo VPNs are those established by our members using ssh to either enter or exit the hackerspace&#8217;s network. SSH can easily be used to tunnel a secure connection for any program; see <a href=\"https:\/\/wiki.hackerspace.lu\/wiki\/SSH_-_Secure_Shell\">Gunstick&#8217;s ssh presentation<\/a> to learn more. If you want to know how to set up your own VPN, visit a <a href=\"http:\/\/www.cryptoparty.lu\/\">cryptoparty<\/a>, where you can get help or ask a friendly syn2cat member.<\/p>\n<p style=\"text-align: justify;\">The last category of communications happening without people at the space, and generally unencrypted, are things like <a href=\"https:\/\/wiki.hackerspace.lu\/wiki\/OpenDuino\">Openduino<\/a> updating the status, computers not being shut down or servers syncing their time from the internet or checking for updates, raspberry pis being left turned on and communicating via internet, etc.<\/p>\n<p style=\"text-align: justify;\">Please don&#8217;t run a tor node (client is ok) or freenet inside the space, as it quickly eats up all available bandwidth. This also counts for any peer to peer software. Stop the torrent client on your laptop before connecting to the syn2cat lan.<\/p>\n<p style=\"text-align: justify;\"><strong>It is a good idea to always use encrypted protocols<\/strong>, e.g. https, imap+ssl, smtp+ssl \u2014 not just at public hotspots, hotels, and conferences, but also at the hackerspace and at home. Even the most secure network can&#8217;t fully protect you from a bad guy who wants to sniff unencrypted secrets.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>You know the VU meter showing the network traffic on our Internet connection. The needle also bounces when the hackerspace is empty. Looking a bit more closely shows that it&#8217;s mostly encrypted traffic. What is going on here? To store our members credentials and information for our WiFi network and our Openduino lock system, we &#8230;<a class=\"post-readmore\" href=\"https:\/\/syn2cat.lu\/?p=2150\">read more<\/a><\/p>\n","protected":false},"author":2,"featured_media":2163,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3,1],"tags":[],"class_list":["post-2150","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-articles","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Decrypting network traffic at the hackerspace - syn2cat<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/syn2cat.lu\/?p=2150\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Decrypting network traffic at the hackerspace - syn2cat\" \/>\n<meta property=\"og:description\" content=\"You know the VU meter showing the network traffic on our Internet connection. The needle also bounces when the hackerspace is empty. Looking a bit more closely shows that it&#8217;s mostly encrypted traffic. What is going on here? To store our members credentials and information for our WiFi network and our Openduino lock system, we ...read more\" \/>\n<meta property=\"og:url\" content=\"https:\/\/syn2cat.lu\/?p=2150\" \/>\n<meta property=\"og:site_name\" content=\"syn2cat\" \/>\n<meta property=\"article:published_time\" content=\"2013-10-02T22:32:31+00:00\" \/>\n<meta name=\"author\" content=\"gunstick\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"gunstick\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150\"},\"author\":{\"name\":\"gunstick\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#\\\/schema\\\/person\\\/0bd70d712c916f4678f149d462a5bb29\"},\"headline\":\"Decrypting network traffic at the hackerspace\",\"datePublished\":\"2013-10-02T22:32:31+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150\"},\"wordCount\":405,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#primaryimage\"},\"thumbnailUrl\":\"\",\"articleSection\":[\"Articles\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150\",\"url\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150\",\"name\":\"Decrypting network traffic at the hackerspace - syn2cat\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#primaryimage\"},\"thumbnailUrl\":\"\",\"datePublished\":\"2013-10-02T22:32:31+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/syn2cat.lu\\\/?p=2150\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#primaryimage\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/?p=2150#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/syn2cat.lu\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Decrypting network traffic at the hackerspace\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#website\",\"url\":\"https:\\\/\\\/syn2cat.lu\\\/\",\"name\":\"Syn2Cat - The Geek and Hacker community\",\"description\":\"The Geek and Hacker Community\",\"publisher\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/syn2cat.lu\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#organization\",\"name\":\"Syn2Cat - The Geek and Hacker community\",\"url\":\"https:\\\/\\\/syn2cat.lu\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/syn2cat.lu\\\/wp-content\\\/uploads\\\/2018\\\/11\\\/Syn2catLOGO_C.png\",\"contentUrl\":\"https:\\\/\\\/syn2cat.lu\\\/wp-content\\\/uploads\\\/2018\\\/11\\\/Syn2catLOGO_C.png\",\"width\":1181,\"height\":284,\"caption\":\"Syn2Cat - The Geek and Hacker community\"},\"image\":{\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/syn2cat.lu\\\/#\\\/schema\\\/person\\\/0bd70d712c916f4678f149d462a5bb29\",\"name\":\"gunstick\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g\",\"caption\":\"gunstick\"},\"url\":\"https:\\\/\\\/syn2cat.lu\\\/?author=2\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Decrypting network traffic at the hackerspace - syn2cat","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/syn2cat.lu\/?p=2150","og_locale":"en_US","og_type":"article","og_title":"Decrypting network traffic at the hackerspace - syn2cat","og_description":"You know the VU meter showing the network traffic on our Internet connection. The needle also bounces when the hackerspace is empty. Looking a bit more closely shows that it&#8217;s mostly encrypted traffic. What is going on here? To store our members credentials and information for our WiFi network and our Openduino lock system, we ...read more","og_url":"https:\/\/syn2cat.lu\/?p=2150","og_site_name":"syn2cat","article_published_time":"2013-10-02T22:32:31+00:00","author":"gunstick","twitter_card":"summary_large_image","twitter_misc":{"Written by":"gunstick","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/syn2cat.lu\/?p=2150#article","isPartOf":{"@id":"https:\/\/syn2cat.lu\/?p=2150"},"author":{"name":"gunstick","@id":"https:\/\/syn2cat.lu\/#\/schema\/person\/0bd70d712c916f4678f149d462a5bb29"},"headline":"Decrypting network traffic at the hackerspace","datePublished":"2013-10-02T22:32:31+00:00","mainEntityOfPage":{"@id":"https:\/\/syn2cat.lu\/?p=2150"},"wordCount":405,"commentCount":0,"publisher":{"@id":"https:\/\/syn2cat.lu\/#organization"},"image":{"@id":"https:\/\/syn2cat.lu\/?p=2150#primaryimage"},"thumbnailUrl":"","articleSection":["Articles"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/syn2cat.lu\/?p=2150#respond"]}]},{"@type":"WebPage","@id":"https:\/\/syn2cat.lu\/?p=2150","url":"https:\/\/syn2cat.lu\/?p=2150","name":"Decrypting network traffic at the hackerspace - syn2cat","isPartOf":{"@id":"https:\/\/syn2cat.lu\/#website"},"primaryImageOfPage":{"@id":"https:\/\/syn2cat.lu\/?p=2150#primaryimage"},"image":{"@id":"https:\/\/syn2cat.lu\/?p=2150#primaryimage"},"thumbnailUrl":"","datePublished":"2013-10-02T22:32:31+00:00","breadcrumb":{"@id":"https:\/\/syn2cat.lu\/?p=2150#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/syn2cat.lu\/?p=2150"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/syn2cat.lu\/?p=2150#primaryimage","url":"","contentUrl":""},{"@type":"BreadcrumbList","@id":"https:\/\/syn2cat.lu\/?p=2150#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/syn2cat.lu\/"},{"@type":"ListItem","position":2,"name":"Decrypting network traffic at the hackerspace"}]},{"@type":"WebSite","@id":"https:\/\/syn2cat.lu\/#website","url":"https:\/\/syn2cat.lu\/","name":"Syn2Cat - The Geek and Hacker community","description":"The Geek and Hacker Community","publisher":{"@id":"https:\/\/syn2cat.lu\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/syn2cat.lu\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/syn2cat.lu\/#organization","name":"Syn2Cat - The Geek and Hacker community","url":"https:\/\/syn2cat.lu\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/syn2cat.lu\/#\/schema\/logo\/image\/","url":"https:\/\/syn2cat.lu\/wp-content\/uploads\/2018\/11\/Syn2catLOGO_C.png","contentUrl":"https:\/\/syn2cat.lu\/wp-content\/uploads\/2018\/11\/Syn2catLOGO_C.png","width":1181,"height":284,"caption":"Syn2Cat - The Geek and Hacker community"},"image":{"@id":"https:\/\/syn2cat.lu\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/syn2cat.lu\/#\/schema\/person\/0bd70d712c916f4678f149d462a5bb29","name":"gunstick","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d3c95978edde1f9b7423fb03946777c56fe9517a9ee0f3d837a53b84ff923f9d?s=96&d=mm&r=g","caption":"gunstick"},"url":"https:\/\/syn2cat.lu\/?author=2"}]}},"_links":{"self":[{"href":"https:\/\/syn2cat.lu\/index.php?rest_route=\/wp\/v2\/posts\/2150","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/syn2cat.lu\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/syn2cat.lu\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/syn2cat.lu\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/syn2cat.lu\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2150"}],"version-history":[{"count":0,"href":"https:\/\/syn2cat.lu\/index.php?rest_route=\/wp\/v2\/posts\/2150\/revisions"}],"wp:attachment":[{"href":"https:\/\/syn2cat.lu\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2150"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/syn2cat.lu\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2150"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/syn2cat.lu\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2150"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}