3 ms·
> not possible to accidentally rm -rf with proper design. Can you say more about this? I understand rm -rf, but not sure how I could design that to be impossi
by thunderrabbit 6y ago
> not possible to accidentally rm -rf with proper design.
Can you say more about this?
I understand rm -rf, but not sure how I could design that to be impossible for the most dangerous credentials.
- heavenlyblue 6y agoJust don’t use the most dangerous credentials. The most dangerous credentials are cosmic rays and we use the Earth’s atmosphere and ECC to fight that.
- auggierose 6y agoHe said "difficult", not impossible.
- ikiris 6y agoYou can make the most dangerous credentials involve getting a keycard from a safe, and multi party sign off, not possible to deploy to more than X machines at a time with a sliding window of application, independent systems with proper redundant and failback design, canary analysis, etc etc etc. I didn't even mean you can only make it difficult, I meant you can make it almost impossible to harm a real production environment in such a nuclear way without herculean effort and quite frankly likely collusion from multiple parties.