Image 1 — Can confirm door pockets are waterproof
Image 2 — Can confirm door pockets are waterproof

Can confirm door pockets are waterproof

When your dog plays in the river but swallows too much water. Then decides to very accurately throw up in the rear door pocket. 🤪

Luckely had some old towels in the car, and glad i bought the rubber inserts to take the chunky bits out…

We love dog mode and it was a game changer for us. Now she can go on every holiday with us, hot or cold climate, knowing she’s comfortable and safe in the car. On our 3rd Tesla now and still liking it!

u/Important_Ad_3602 — 2 days ago

[WTS](EU) Omega Planet Ocean 43.5mm Orange SS/RU Black Dial SCF A8900

Working, i would say near 'mint' condition. Rep bought from Mary. Hasn't been worn much, nor has it been in the watch winder. The strap could use a little cleansing, but don't want to scratch it so i'll leave that to the buyer.

For sale from the Netherlands. Only EU based.
Asking price €250, but negiotiable. Ask me anything.

u/Important_Ad_3602 — 1 month ago

12v trunk outlet

Every roadtrip i run a 12v wire from the socket in the center console, through the seats, back to the trunk where my Mestic portable compressor fridge (5A) lives. The cable isn't liking that, since the center console lid and back seat, are pressing down on it.

I'm looking for a more permanent solution, adding a 12v outlet in the trunk. What's the easiest place to take 12v from, and should i put a fuse (which rating?) in between? What's the max. allowed amperage on the center console socket?

I need a power source that is kept active when enabling the "Keep Accessory Power On" toggle.

Tesla Model 3 LR 2019.

reddit.com
u/Important_Ad_3602 — 1 month ago

L2TP ipsec dialup traffic not hitting policies?

I'm on FortiOS 7.4.7.
Created remote access vpn via wizard (Windows Native). Connecting goes fine, but from there i can't reach anything. I have 3 policies and opened it all up for testing. Even when creating a new one via wizard from scratch it fails to pass traffic. Why is it not hitting the policies and what can i check?

edit 34
set name "vpn_ext ipsec_l2tp"
set uuid 50ae110a-633a-51f1-1973-551b08a60d1f
set srcintf "ext ipsec"
set dstintf "virtual-wan-link"
set action accept
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "L2TP"
set logtraffic all
set comments "VPN: ext ipsec (Created by VPN wizard)"
next

edit 35
set name "vpn_ext ipsec_remote_0"
set uuid 50b146ae-633a-51f1-e26e-f50374413bd7
set srcintf "l2t.root"
set dstintf "any"
set action accept
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set nat enable
set port-preserve disable
set comments "VPN: ext ipsec (Created by VPN wizard)"
next

edit 36
set name "ipsec vpn - internet"
set uuid 6e8072e8-6346-51f1-c78b-b2d94087c9ff
set srcintf "l2t.root"
set dstintf "any"
set action accept
set srcaddr "all"
set dstaddr "all"
set schedule "always"
set service "ALL"
set nat enable
set port-preserve disable
set comments "VPN: ext ipsec (Created by VPN wizard) (Copy of vpn_ext ipsec_remote_0) (Copy of )"
next

reddit.com
u/Important_Ad_3602 — 2 months ago

Physical PAW with daily VM

So PAW wise the consensus seems to be:

  1. Ideally use 2 physical machines
  2. If you can’t PAW is the physical machine, VM your daily driver

Some questions about the second setup:
- how do you deal with Teams, copy / paste, etc? You don’t want the VM to have any interaction with the PAW’s hardware right?
- is it ok to take the PAW home? There’s always the risk of it getting stolen?
- is the PAW an Intune device with separate hardening policies, excluded from all application deployments? Or not join it at all?

reddit.com
u/Important_Ad_3602 — 3 months ago

Shell / Enovates firmware upgrade

So i have this Shell Recharge Home Advanced 2.0 charger, which is basically a rebranded Enovates. I have the admin password and can change all the settings. It's on version 1.13.1.3. ChargepointModel 'HOMEADVANCED'.

version=1.13.1.3, name=ChargePointControllerLight, groupID=com.enovates.lccl, artificatID=ChargePointControllerLight, buildNumber=1744126097163, buildDate=2025-04-08 15:28 +0000

Now i'm trying to activate modbus tcp ems, but it's refusing connections. I'm guessing it's firmware doesn't support it.

Does anyone have newer firmware for this charger? I've tried all below but no dice.

https://preview.redd.it/t3esgp6nxb5h1.png?width=960&format=png&auto=webp&s=65033bf99bbe9638171c21900e012923863259a7

reddit.com
u/Important_Ad_3602 — 3 months ago

Teamviewer OOB access

Ok you're probably going to kill me for this, but i'm going to ask anyway.

We use Teamviewer for OOB access. It runs on a dedicated workstation behind a 4G router, with Teamviewer MFA and DUO Windows MFA.

I've found other solutions fail when you need them, and Teamviewer just works. I know 'just works' often equals 'security risk', but i'm hoping the double MFA tackeled that. Concerns:
- if Teamviewer is hacked they have access, hopefully only the logon screen but still
- the 4G router could be compromised with no firewall between it and the OOB pc

How are you guys dealing with OOB access? Which methods are foolproof and there when you need them? I'm looking for easy to manage, out-of-the-box SMB solutions.

reddit.com
u/Important_Ad_3602 — 3 months ago

So this popped up in service menu after changing tyres and alignment , along with user messages 'camera's not available', and 'auto emergency braking not available'. I'm guessing the second message is collateral.

I've checked the right repeater camera, it has moisture in the led strip. Led still works. The repeater cables are well hidden behind the fender so i don't think the alignment was the cause. My wife powerwashed the car about a week ago but you guys no i can't put the blame there. :-)

Bad Tesla design? Anyone had this issue before? Is this fixable or does it require a new side repeater unit?

2019 M3 LR

reddit.com
u/Important_Ad_3602 — 4 months ago

We (SMB construction company) use Fortigates. Our networks are far from complex, but the rulebase is expanding fast. The Forti's manage intervlan traffic, switches just trunk everything.

I'm reading into zones to simplify our rulebase. If i'm correct i cannot select an interface indiviually once it's in a zone.

What i'm not getting is, how can i be more granular towards that interface, without losing security?

For example:
- vlan10 subnet 10.10.10.0/24 and vlan20 subnet 10.10.20.0/24 are in zone1
- policy1 src int. zone, dst int. wan, src all, dst all
- policy2 src int. zone, dst int. vlan30, src subnet 10.10.10.0/24, dst all

What's stopping someone in vlan20 from spoofing subnet 10.10.10.0/24 and gaining access to vlan30?

reddit.com
u/Important_Ad_3602 — 4 months ago

Deploying apps and updating them is costing me a lot of time.

I'm good at it, but it feels like a total waste of time. Looked into Microsoft Intune Enterprise Application Management, but the main apps we use aren't in there (Autocad, Bricscad, Bluebeam, Revit). All very large apps.

From a security perspective i don't want to install an extra managing client on our workstations. I want Intune to remain the only connection a device has, in terms of possibility to send/update apps, policies, etc.

Now i know PatchMyPc can integrate into Intune and create and update apps. But that means giving DeviceManagementApps.ReadWrite application permissions. This is a big supplychain risk. If someone we're to hack PatchMyPatch they could just create or update a package, deploy it, and watch the mayhem unfold. All coming from trusty Intune.

Is it possible to have PatchMyPc create the installer, but download and upload the intunewin files myself?

reddit.com
u/Important_Ad_3602 — 4 months ago

I edited the question, since being local admin, and logging into portals with administrative rights, are 2 different things.

Our IT department consists of 2 people. Myself being the sysadmin doing all sorts of tasks. Both of us logging into portals from our laptop. Ofcourse with MFA, preferably phishing resitant.

Is it normal for me to loging to a portal from my daily driver? If it isn't and i should hop to a VM, how do you guys manage the MFA requirements? 3 out of 5 days i'm 300km from my workplace, so i can't go touch a Yubikey.

reddit.com
u/Important_Ad_3602 — 4 months ago