Large file sharing to, from and within mainland China
- 
 @wrx7m said in Large file sharing to, from and within mainland China: @scottalanmiller Unfortunately, I must also provide them with the means to do that. Maybe they can use one of the Chinese government approved large file transfer services. I understand that you need to do it, I'm just saying that it happens after the NextCloud stage. That's to get the data between the two places. Getting it around in China is likely very easy. 
- 
 @scottalanmiller True but my OP was also for that part  
- 
 @wrx7m said in Large file sharing to, from and within mainland China: @scottalanmiller True but my OP was also for that part  You can do anything you want once past the NextCloud step. The file is inside China. So the sky is the limit - anything you are allowed and/or willing to do. You have bandwidth at that point or can just walk the files around. 
- 
 @wrx7m said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: IF they are not so tech users, dont let them use the desktop client. Just let them use the web based app. The desktop client maybe faster, but I have NextCloud in Prod with Onlyoffice integration and the desktop app keeps asking them question that they fail to understand especially when a folder is cleared. Also cause it tries to keep copy offline on end user machine it can create headache for users working on same files, since you said few clients just let them work directly using the web. Thanks for the information. I don't know how many people would be working on the same files at the same time but I could see how that would be an issue. Also, I wonder how much of an issue any language barrier would be. Does nextcloud have a Mandarin translation option? You have CAD and video. So office integration would be pointless. As for the prompts that @msff-amman-Itofficer mentioned, a little pre thought in folder structure will prevent that. The only time the client prompts about something is when you completely empty a root folder. So if you plan the folder structure with that in mind you will not encounter it. 
- 
 True, but it depends on the users, right ? and i am blessed with my users who cant even bypass HTTPS SSL warning for internal sites. 
- 
 @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: True, but it depends on the users, right ? and i am blessed with my users who cant even bypass HTTPS SSL warning for internal sites. Well, I don't want my users clicking though anything like that in the first place. So I get real certs for internal stuff too. 
- 
 Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. 
- 
 @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. Let's Encrypt, bit of a pain for internal only things, but still better than nothing. 
- 
 @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? [edit: I see, for internal, a bit more of a pain but there are ways for that, too.] 
- 
 @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert If you have a MS network, you could always use an internal CA, but that would be my last choice. Larger places will invoice or accept bank transfers, etc. You have options. You will not get the service (certificate) until the invoice is paid, but you can go that route. I know GoDaddy accepts banks transfers and will do invoice, but as it is not typical, you will likely have to make personal contact to get things setup right. 
- 
 Even without an MS network, you can make a free CA with Linux, too. 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. However, for internal, when do you need to pay for a CA? That he mentioned paying, seems like external is the issue. If it is internal, just issue your own certs and trust them. It's only for external that paying would even come up, right? 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? [edit: I see, for internal, a bit more of a pain but there are ways for that, too.] Replying to the edit. Yes, you can get around it, but it is not easy and depending on what type of servers you have running internally, it gets even harder. /me glares at IIS. 
- 
 In case it is needed, here is a guide to doing it internally for free. 
- 
 @scottalanmiller said in Large file sharing to, from and within mainland China: @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. Normal people reply to entire post context, which even if not directly quoted, does generally involve the posts preseeding the one being replied to. 
- 
 @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @JaredBusch said in Large file sharing to, from and within mainland China: @scottalanmiller said in Large file sharing to, from and within mainland China: @msff-amman-Itofficer said in Large file sharing to, from and within mainland China: Well at MSFF we do not have credit cards and we can not use them, so tell me again how can I get SSL cert.. we can send a pigeon with the money. I'm confused. SSL Certs are free, we've not paid for one in quite a while. Why do you need a credit card? I am tired of having this arguement with you. LetsEncrypt is not some magic fucking pill. It has limitations. Internal services being the primary. The entire world does not revolve around hosted external services. Specifically to this thread, @msff-amman-Itofficer stated internal services. If you look, I had already edited that I didn't see that it was internal as he didn't mention that in the post that I had responded to. Normal people reply to entire post context, which even if not directly quoted, does generally involve the posts preseeding the one being replied to. There was no quote, I didn't know that he was implying more than he said. He asked how to get SSL Certs without a CC. 
- 
 I know my options, either Windows server acting as CA or OpenSSL in Linux, to be honest both routes was difficult to setup and requires a VM to be running at all times, to be the point I said screw it let them click the Advanced button and proceed to the site. Cause encryption is occurring, with the self created ssl key + cert. And our infrastructure is bit limited to be honest, so each VM has to be really needed to open one. And the theoretical issue of 0.00001% of someone hijacking the server and do Man in the middle attack by routing to his SSL keys + cert is out of the park, if there is someone there with I.T skills I will pay him to help me. 



