Hi all, Sony loves these data collection messages at the beginning of their games. They don’t even give you the option to opt-out. It is mandatory and is either “Full data” or “limited”. I don’t want to give them either. Is there a straight forward way to do this? Thanks in advance.

    • @[email protected]OP
      link
      fedilink
      120 days ago

      The three dots are what? The path to the .exe file? I tried that and it broke the game. It was complaining about some dx12 something. Also, I tried the firetool app, but it doesn’t have anywhere that shows the blocked apps/files. You just have to trust it.

      • dm9pZCAq
        link
        fedilink
        720 days ago

        yes, … is path to .exe, and yes I also has similar problems with some games with default wine

        but for gaming I use lutris with proton, and using firejail from lutris has better results for me (almost all games works without issues)

        [SomeGame] > Configure > System options > Command prefix > firejail --noprofile --net=none --

        • @[email protected]OP
          link
          fedilink
          120 days ago

          firejail --noprofile --net=none –

          Is there anything after the two dashes in the firejail --noprofile --net=none -- ?

          • dm9pZCAq
            link
            fedilink
            520 days ago

            in lutris no, it will automatically launch as ${COMMAND_PREFIX} ${WINE} ${EXECUTABLE}

            • @[email protected]OP
              link
              fedilink
              120 days ago

              Awesome, thank you so much. Do you know what the equivalent is in Heroic games launcher? They have so many options there, wrapper command, environment variables, scripts and some others. I have games there, too.

              • dm9pZCAq
                link
                fedilink
                420 days ago

                I’ve never used the Heroic launcher, but I think the “wrapper command” is what you need

                • @[email protected]OP
                  link
                  fedilink
                  120 days ago

                  Thank you. I like Heroic better because of the layout. It has all stores on one screen, unlike lutris. The wrapper is asking me to put the “path” in quotes. Oh well, I I’ll have to get used to Lutris.

  • @[email protected]
    link
    fedilink
    English
    820 days ago

    Easier than…?

    There are dozens of ways to block that traffic, from DNS to firewall rules to just disconnecting entirely.

    • @[email protected]OP
      link
      fedilink
      120 days ago

      Easier than messing with the terminal. I remember on windows, you set an “outbound” rule for an .exe and you’re done. I tried to do that with firejail, but the firetool doesn’t have a spot in the app where it shows what you blocked. You just have to trust it. Unless I’m blind. I looked everywhere in the app and the wizard.

      • @[email protected]
        link
        fedilink
        English
        320 days ago

        Well there are probably GUI firewall rule apps, but it’s be faster just to use a command, since the apps are going to take all the same info anyway. Or you could just disconnect entirely.

  • @[email protected]
    link
    fedilink
    English
    620 days ago

    DNS blocking if their telemetry domains are separate from game domains. They could technically do their own DNS resolution though.

    • @[email protected]
      link
      fedilink
      320 days ago

      This was my thought too. Seems easiest to me to DNS block on the firewall side (and be network wide).

      • @[email protected]
        link
        fedilink
        English
        4
        edit-2
        20 days ago

        Anything attempting to leave the LAN on port 53 or 853 gets redirected to my pihole and logged. It’s mostly google stuff, but TV’s do it too. A determined enshittifier could implement DoH or DoT.

        • @[email protected]
          link
          fedilink
          119 days ago

          Smart. Right now I just rely on various blacklists that seem to block everything I need to. I might do something like this at some point though to be sure.

          • @[email protected]
            link
            fedilink
            English
            119 days ago

            I’m running opnsense virtualized. I’d recommend a spare PC with two nics to learn it on first.

            • @[email protected]
              link
              fedilink
              119 days ago

              Yeah, I’m already running opnsense on an old PC with an added network card. Then I use Unbound DNS with various blacklist filters on my outbound traffic.

              It honestly seems good enough because I monitored it for a while when I set it up. But I don’t monitor it continually and I don’t have specific blocks that I set up myself, just the published blacklists. If something new is phoning home I’d be unaware until I check it, which is what I like about your setup.

    • IngeniousRocks (They/She)
      link
      fedilink
      220 days ago

      It is possible to tighten security to the point where the system is unusable. Security and convenience must be balanced. The trick is to create a secure and useful system. ——The Arch Wiki, Security

      Seems OP wants to play online only games, disconnecting might make that impossible.

  • @[email protected]
    link
    fedilink
    317 days ago

    I use OpenSnitch https://github.com/evilsocket/opensnitch

    It prompts me each time a game attempts to make an outbound connection. I can allow or deny the connection from the process or to the host etc and it can set it as a rule with different time frames like once, until reboot, permanently etc.

    • @[email protected]OP
      link
      fedilink
      1
      edit-2
      19 days ago

      That was actually a part of the main question, but then I decided not to include it. Opensnitch shows so many popups that I get confused which is to allow and which to deny. Sometimes things could break and a reboot is necessary.

      Edit: I’m going to install it regardless. Thanks

      • @[email protected]
        cake
        link
        fedilink
        English
        119 days ago

        That will be the case with any firewall, you’ll have to block everything and then figure out what is needed for the game to work as expected.

        • @[email protected]OP
          link
          fedilink
          019 days ago

          True, but I think firewalls don’t have that scary popup opensnitch has. They do their thing silently. lol

          • @[email protected]
            link
            fedilink
            English
            1
            edit-2
            19 days ago

            Why not spin up a pihole instance? Once you setup your blocklists you barely have to maintain it besides the occasional update.

            Hell, if you don’t have a spare machine to run it on, you can likely run it locally and then change your PC’s network to use it as your DNS resolver.

      • Luffy
        link
        fedilink
        -116 days ago

        Let me guess, it was the usuall you dont own the game shill?

        In that case, if you want m8, i have more than enough ropes for ya