Category: Tips

State of The Mac 2022- Updated Feb 2022

If you’re buying a new Mac this year, what specs to recommend? I have updated each of the categories with new recommendations as needed. All prices lifted directly from Apple Australia MacBook Pro 13 inch models Models Updated November 2020- now with M1 chip! Entry level- M1, 8 core CPU, 8 core GPU, 256GB SSD $1899 Nice machine, but I’d

Read More »

Slack Nebula Secure Mesh on Synology

**Warning- this post isn’t finished, I’m posting it so I can get help!   Synology install Instructions here https://github.com/slackhq/nebula/pull/357/files/7d4b460d1a1054c2eeab53b14d9c648baaf7bd5f Grab the shell script, modify it to your requirements – Script requires you to set the location of both .pid and log files. Shouldn’t have been difficult but it took me ages to figure out ok on my Intel based Synology

Read More »

Slack Nebula Secure Mesh on Docker

**Warning this post isn’t finished! there’s also another project to consider now at https://github.com/elestio/nebula-rest-api From a look at the GitHub issues, it seems that there’s problems getting Slack’s Nebula open source project to run in an Alpine Docker image. But just recently, someone has packaged up, apparently with a new base image. So I downloaded it, and deployed it on

Read More »

Signing and Notarising a Mac binary written in Go

This post is heavily ‘borrowed’ from this post on Stack Overflow- https://stackoverflow.com/questions/64652704/how-to-notarize-an-macos-command-line-tool-created-outside-of-xcode And I’ve also liberally borrowed from this script, with many thanks to Armin Briegel. In fact, the way things turned out I could have just used that script, because what I needed was to sign and notarise a command line tool, and that’s exactly the contents of that post.

Read More »

Wireguard and Netmaker on Synology

This post is meant for people who already have Netmaker server set up- something that is covered pretty well in the documentation and also on Youtube. If you want to add an Intel based Synology device to your existing Netmaker network with Netclient, read on! First install Wireguard There are some prebuilt binaries here, but not for DSM 7. I

Read More »

Retrospect Full Disk Access via Mosyle MDM

According to this doc- https://www.retrospect.com/en/support/kb/macos_full_disk_access We need to give Full Disk Access to both RetrospectInstantScan and Retrospect Client. For this we need to find out the App Identifier and Code Requirements for each. Retrospect Client application is in /Library/PreferencePanes/Retrospect\ Client.app RetrospectInstantScan item is in /Library/Application\ Support/Retrospect/RetrospectInstantScan.app For these examples the first line is the command, the subsequent lines are the

Read More »

Migrate LDAP Data between Synology units

This is a bit of a crappy tip because it’s so obvious, but all the other walkthroughs either wouldn’t bring across passwords or looked really complicated! There wasn’t anything online with specifics, so here we go- If you want to move an LDAP Server from one Synology unit to another without replacing the entire DSM and associated bits, do this-

Read More »

Slack Nebula Secure Mesh Network Install

We’ve been intrigued by Slacks’ open source secure mesh software ‘Nebula’ for a while, and finally got some time to see if our clients could benefit from an implementation. In short, the answer is yes. **note this article became too big so deployment will be next, but this will get you running Goals It solves a lot of problems and

Read More »

3CX Door Control for Fanvil and Grandstream

We’ve recently installed a 3CX system where the phones are Fanvil and the door intercoms are Grandstream. Maybe this is just balancing the one from last year with Grandstream phones and a Fanvil PA2 to control the door… 3CX doesn’t have any native way to control these relays. so for the Fanvil phones you have to log into each phone

Read More »

Macs on Unifi Split-Tunnel VPN can’t browse internet- Solved

The Short Version TL;DR – add a DNS server that’s not on either network and is publicly accessible, and possibly also a static route. Also maybe set the VPN profile to a higher priority… **I’ve thought over this and of course the solution seems obvious. But the doc from Ubiquiti makes it sound difficult, so not really sure what is

Read More »