I saw the news about Little Snitch coming to Linux via eBPF and Rust. On paper, it looks fancy. In reality, the backend is closed source.

Personally, I don’t see the point in installing a proprietary black box to monitor other black boxes. I’m sticking with my AdGuard Home setup and OpenSnitch for when I actually need to trace a binary.

I wrote up my thoughts on why I think this is a solved problem for most FOSS-first home labs.

  • paper_moon@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    19 days ago

    I’m confused by this comment, (and the up votes) OpenSnitch is the fully open source version. It even says so in the article.

    “If I ever needed to track down which specific application is making suspicious outbound connections, I would turn to OpenSnitch, the fully open-source, community-driven application firewall for Linux. It is not as polished as the new Little Snitch port, but every line of its code is open for inspection and it does not ask for blind trust.”