Decrypting a Headless Server on Boot... Remotely

Like the title says, how do you decrypt a headless server at boot time that has it's root partition LUKS encrypted.. while not on site? I've been running my server for almost two years and I knew this problem would come up eventually so it's been at the back of…

UFW VPN Kill Switch

NetworkManager unfortunately doesn't have a kill switch in case your VPN connection drops but you can achieve the same effect through firewall rules. I'm using ufw here but you can achieve the same using iptables or firewall-cmd. I haven't looked into automating this when VPN connects yet but opening Gufw…