thảo luận Hướng dẫn dùng Cloudflare Zero Trust

  • Người tạo chủ đề Người tạo chủ đề Fioren
  • Ngày bắt đầu Ngày bắt đầu
cứu! có bác nào đổi được colation center không :(
của mình nó dính vào HKG mạng chậm còn có 4mbps
trước đây xài vẫn là ở SGN hoặc HAN, mà server này vẫn đang chạy nhưng warp cứ bá vô HKG :angry:
1734839680446.png
 
các bác cho em hỏi có cách nào cài zerotrust trên linux không ạ? em đang dùng steamdeck giờ e muốn cài mà kiếm cách sử dụng nó khó quá:adore:
 
cho hỏi cái vụ cập nhật ddns mình chưa hiểu rõ lắm.,

cập nhật ddns là phải domain trên cloudflare hay domain ở host nào cũng được?
nếu dùng ddns của dịch vụ khác thì mình cập nhật IP bằng tay dc ko ạ
 
lại phiền mod @Fioren tino có biết bọn oracle nó gửi mail này là gì ko nhỉ, nó gửi 2 lần rồi mà chưa biết vào chỗ nào, nhớ là xưa có đổi cái gì mục security đâu :v.

Mã:
Action Required

Oracle Cloud Infrastructure Identity and Access Management - Second Reminder: Review Changes to the Security Policy for OCI Console Sign-On Policy

Oracle Cloud Infrastructure Customer,

Earlier this year, Oracle enabled MFA across all tenancies via the "Security Policy for OCI Console sign on policy". Use these instructions only if any of your tenant administrators or domain administrators have modified the "Security Policy for OCI Console" sign-on policy. If you haven't made any changes to this sign-on policy, then this email does not apply to you.

If the "Security Policy for OCI Console" sign-on policy has deviated from the Oracle security defaults, you must provide explicit consent to either retain the current state of the sign-on policy or restore it to the Oracle security defaults. To review the sign-on policy, sign in to the Console as a tenancy administrator or domain administrator. Once signed in, the "Review sign-on policy changes" page will be displayed, if the sign-on policy has been modified, where you can make one of the following choices and then save the change:

Keep changes: Select this option if the sign-on policy changes meet your custom requirements and you want to keep your policy as is. By accepting consent, you acknowledge the risks of deviating from Oracle's security defaults. We will record your consent and notify the domain administrators via email.

Restore to default policy: Select this option to revert to the Oracle security defaults. By accepting consent, you agree to restore all elements of the "Security Policy for OCI Console" sign-on policy, including phishing-resistant factors, to the Oracle security defaults. Restoration consent is recorded, and email notifications are sent to the domain administrators of the respective domain.

Note: Oracle sends three email reminders to all tenancy administrators, reminding them to review the "Security Policy for OCI Console" sign-on policy for each of their domains and to either keep any customizations to the policy or restore the policy to the Oracle security defaults. After three email reminders, at least one administrator must provide consent before you can continue working in the Console.

For more information about making changes to the OCI default security posture, see Changing and Restoring a Domain's Default Security Posture Using the Required Consents.

We highly recommend that you use phishing-resistant MFA for all users.

Please contact Oracle support with any questions.
 
lại phiền mod @Fioren tino có biết bọn oracle nó gửi mail này là gì ko nhỉ, nó gửi 2 lần rồi mà chưa biết vào chỗ nào, nhớ là xưa có đổi cái gì mục security đâu :v.

Mã:
Action Required

Oracle Cloud Infrastructure Identity and Access Management - Second Reminder: Review Changes to the Security Policy for OCI Console Sign-On Policy

Oracle Cloud Infrastructure Customer,

Earlier this year, Oracle enabled MFA across all tenancies via the "Security Policy for OCI Console sign on policy". Use these instructions only if any of your tenant administrators or domain administrators have modified the "Security Policy for OCI Console" sign-on policy. If you haven't made any changes to this sign-on policy, then this email does not apply to you.

If the "Security Policy for OCI Console" sign-on policy has deviated from the Oracle security defaults, you must provide explicit consent to either retain the current state of the sign-on policy or restore it to the Oracle security defaults. To review the sign-on policy, sign in to the Console as a tenancy administrator or domain administrator. Once signed in, the "Review sign-on policy changes" page will be displayed, if the sign-on policy has been modified, where you can make one of the following choices and then save the change:

Keep changes: Select this option if the sign-on policy changes meet your custom requirements and you want to keep your policy as is. By accepting consent, you acknowledge the risks of deviating from Oracle's security defaults. We will record your consent and notify the domain administrators via email.

Restore to default policy: Select this option to revert to the Oracle security defaults. By accepting consent, you agree to restore all elements of the "Security Policy for OCI Console" sign-on policy, including phishing-resistant factors, to the Oracle security defaults. Restoration consent is recorded, and email notifications are sent to the domain administrators of the respective domain.

Note: Oracle sends three email reminders to all tenancy administrators, reminding them to review the "Security Policy for OCI Console" sign-on policy for each of their domains and to either keep any customizations to the policy or restore the policy to the Oracle security defaults. After three email reminders, at least one administrator must provide consent before you can continue working in the Console.

For more information about making changes to the OCI default security posture, see Changing and Restoring a Domain's Default Security Posture Using the Required Consents.

We highly recommend that you use phishing-resistant MFA for all users.

Please contact Oracle support with any questions.
1735093391724.png


Nếu bạn ko làm gì tới cái chính sách bảo mật đăng nhập thì thôi. Skip nhé.
 
À quên mất
Anh em cho hỏi, cái Clouflare này có bị giới hạn 300k request như NextDNS không ạ?
Với add vào modem thì chỉ cần chỉnh cái DNS Server chỗ LAN trong modem là được à anh em
 
Sửa lần cuối:
lại phiền mod @Fioren tino có biết bọn oracle nó gửi mail này là gì ko nhỉ, nó gửi 2 lần rồi mà chưa biết vào chỗ nào, nhớ là xưa có đổi cái gì mục security đâu :v.

Mã:
Action Required

Oracle Cloud Infrastructure Identity and Access Management - Second Reminder: Review Changes to the Security Policy for OCI Console Sign-On Policy

Oracle Cloud Infrastructure Customer,

Earlier this year, Oracle enabled MFA across all tenancies via the "Security Policy for OCI Console sign on policy". Use these instructions only if any of your tenant administrators or domain administrators have modified the "Security Policy for OCI Console" sign-on policy. If you haven't made any changes to this sign-on policy, then this email does not apply to you.

If the "Security Policy for OCI Console" sign-on policy has deviated from the Oracle security defaults, you must provide explicit consent to either retain the current state of the sign-on policy or restore it to the Oracle security defaults. To review the sign-on policy, sign in to the Console as a tenancy administrator or domain administrator. Once signed in, the "Review sign-on policy changes" page will be displayed, if the sign-on policy has been modified, where you can make one of the following choices and then save the change:

Keep changes: Select this option if the sign-on policy changes meet your custom requirements and you want to keep your policy as is. By accepting consent, you acknowledge the risks of deviating from Oracle's security defaults. We will record your consent and notify the domain administrators via email.

Restore to default policy: Select this option to revert to the Oracle security defaults. By accepting consent, you agree to restore all elements of the "Security Policy for OCI Console" sign-on policy, including phishing-resistant factors, to the Oracle security defaults. Restoration consent is recorded, and email notifications are sent to the domain administrators of the respective domain.

Note: Oracle sends three email reminders to all tenancy administrators, reminding them to review the "Security Policy for OCI Console" sign-on policy for each of their domains and to either keep any customizations to the policy or restore the policy to the Oracle security defaults. After three email reminders, at least one administrator must provide consent before you can continue working in the Console.

For more information about making changes to the OCI default security posture, see Changing and Restoring a Domain's Default Security Posture Using the Required Consents.

We highly recommend that you use phishing-resistant MFA for all users.

Please contact Oracle support with any questions.
chưa thấy mail này, mà dạo này toàn xài azure rồi, oracle bên jav đứt cáp lag lòi mắt.
À quên mất
Anh em cho hỏi, cái Clouflare này có bị giới hạn 300k request như NextDNS không ạ?
Với add vào modem thì chỉ cần chỉnh cái DNS Server chỗ LAN trong modem là được à anh em
không giới hạn
 
Mới vô app warp promax plus thấy mấy cái key 10 tỷ EB toàn méo dùng được
7PixvC3.png

May quá có ngài florentilo cho quả diệm vân méo tín này thật đúng là ngon phải biết. Tính ưng nhưng thấy nên cho quả :beat_brick:này mới xứng đáng @Fioren
hXH4Qv3.png
 
Xem tệp đính kèm 2847129

Nếu bạn ko làm gì tới cái chính sách bảo mật đăng nhập thì thôi. Skip nhé.
Xưa bật mỗi cái 2fa theo thói quen mà vào tìm mãi ko thấy nó hiện cái bảng gì, sợ mỗi cái thằng này nó hâm hâm @@.
chưa thấy mail này, mà dạo này toàn xài azure rồi, oracle bên jav đứt cáp lag lòi mắt.

không giới hạn
oracle sing xịn lắm, đang xài private dns dot doh ipv6 xes sủng các kiểu ngon vãi :v
 
@Fioren sếp cho em hỏi các trường hợp sau:
1: em xài netdns cài trên router , thì các máy tính + điện thoại sử dụng em check thấy protocol UDP, vì cài trên router ko mã hóa dns ???., còn dùng ID từng máy thì em thấy protocol DOH.
2: cho nên e mới chuyển qua cl test thử,, hình như cl mới thay đổi hay sao, nó khác với hướng dẫn của sếo, e lọ mọ cả buổi ko biết đúng ko . nhưng lướt web thì thấy chặn được quản cáo:D , em dùng coccoc, chỉnh như trang cl hướng dẫn
tets thử dns thấy ghi
"status": "unconfigured",
"resolver": "172.x.x.x",
"ecs": "123.x.0.0/24/0",
"srcIP": "123.x.x.x",
"server": "zepto-tpe-1" ( cái này server ở đâu ??)
ko giống bên netdns, ko thấy protocol. nên ko biết protocol là gì ( udp, doh, dot) ?? ko biết có mã hóa ko????
trên trang cl có chỉ là vào router mục dns chỉnh lại thông số dns ip4 (172) + ip6(2a06) như của cl hướng dẫn là toàn mạng sẽ mã hóa, so với dùng netdns đúng ko ạ ????
3: bên cl này có cập ip wan như bên netdns ko ạ??? xin cảm ơn
 
Sửa lần cuối:

Thống kê chủ đề

Ngày tạo
Fioren,
Người trả lời cuối
tuananhhd88,
Trả lời
4.335
Lượt xem
418.233
Quay lại
Lên đầu trang