Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
9dev
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
21 ms
·
601.
▲
by
9dev
6mo ago
You're probably an iCloud services user. Try a Mac without an iCloud account - it's nagging you pretty heavily to set it up, get an iCloud+ subscription, use TV and Music and Game Center subscriptions, and so on.
602.
▲
by
9dev
6mo ago
> offset by the insane performance of the M* series chips I'm really afraid of that one. MacOS engineers don't have to worry about performance optimizations anymore, because the chips gobble it up anyway. Ever more powerful har
603.
▲
by
9dev
6mo ago
That was the reason we ditched Slack. I hate Teams with a passion, but we're not going to pay 6k per year for a chat app if we get Teams for free. There's just no way to defend that decision.
604.
▲
by
9dev
6mo ago
Hey, and if that works, let's get really wild. Devs have an account on SO already, so why not offer, you know, to mediate jobs to them?
605.
▲
by
9dev
6mo ago
How did you approach the security angle?
606.
▲
by
9dev
6mo ago
You’re absolutely right!
607.
▲
by
9dev
6mo ago
You have no idea what you are talking about, really. We don’t "frequently" pass such laws. Nobody is accessing private messages, even if there have been such attempts. The EU has still the strongest privacy laws world wide, and in
608.
▲
by
9dev
7mo ago
This sort of ridiculous reductionism has never been true. Do you seriously think all the conflicts we experience have never been there before? "Only true power is respected"—what’s this even supposed to mean? Right now, the Americ
609.
▲
by
9dev
7mo ago
Seconded. Don’t use certbot; it’s an awful piece of user-hostile software, starting from snap being the only supported installation channel. Everything it does wrong, acme.sh does right.
610.
▲
by
9dev
7mo ago
Which is probably exactly what happened. Reportedly Apple is all-in on Claude across the board.
611.
▲
by
9dev
7mo ago
Yes. I know. And Poettering was mean in an online comment.
612.
▲
by
9dev
7mo ago
Have fun debugging your brittle init scripts. All my systemd servers are working flawlessly, have done so for years, and will continue to do so. The Linux ecosystem would be such a vastly more enjoyable place if you people would take all
613.
▲
by
9dev
7mo ago
That's wild. In Europe, we generally only have front-facing dials, but either they have a built-in push to recess function, or they require some force to turn from their off position, and for the most part heat and mode are also two se
614.
▲
by
9dev
7mo ago
> If anyone wants to rewrite PAM in Rust... :-D If you do, offer support for writing modules in a scripting language like Lua or Python. PAM could make it a lot easier to just add OAuth with your company IdP, for example…
615.
▲
by
9dev
7mo ago
Yet somehow, none of the other high security tools I have ever interacted with seem to do this for some reason. No auditor flags it. No security standard recommends hiding it. But SUDO is the one bastion where it is absolutely essential to
616.
▲
by
9dev
7mo ago
This is literally never identified as an issue in any other system processing passwords. This feels like a debate by someone who once thought they had a clever idea and can’t let go despite everyone telling them it’s awful.
617.
▲
by
9dev
7mo ago
Besides the fact that he's an especially awful specimen (the lying and manipulation alone made it to the news several times), I just don't think that a rather clear-sighted blog post from 12 years ago is a valid reason to change y
618.
▲
by
9dev
7mo ago
Yeah, maybe don't. He's a smart guy for sure, but that really doesn't redeem him from the awful qualities he undoubtedly has—insatiable greed, a compulsion to lie and manipulate, a special flavour of god complex, no moral com
619.
▲
by
9dev
7mo ago
Yeah, fair point, I didn't get to that yet. Here's a bunch from my current development state: https://imgur.com/a/KhgTg6Y
620.
▲
by
9dev
7mo ago
Yeah, I was a long time Swarmpit user, but as you said it’s abandoned, has lots of unfixed bugs, and is pretty heavy. So I set out to build something light on Go to replace it. I love swarm! If only it wasn’t the unloved step child…
621.
▲
by
9dev
7mo ago
> Ofcom really thinks that their laws apply globally. Curious time to complain about the UK doing this (*points broadly eastwards*)
622.
▲
by
9dev
7mo ago
Going for a shameless plug - I am working on an observability dashboard for Docker Swarm: https://github.com/Radiergummi/cetacean Also works for a single node cluster. Maybe that’s closer to what you’re looking for.
623.
▲
by
9dev
7mo ago
Is that because people interested in social science are generally left leaning, or because when actually researching social issues you discover that progressive liberalism has the better answers?
624.
▲
by
9dev
7mo ago
Birds can fly with two wings and humans should be able to fly with X number of limbs.
625.
▲
by
9dev
7mo ago
You can't, reasonably. It's just a heuristic against many exploits using non-standard ports to avoid detection by proxies or traffic inspection utilities.
626.
▲
by
9dev
7mo ago
I definitely block outgoing ports on all our servers by default; Established connections, HTTP(S), DNS, NTP, plus infra-specific rules. There is really no legitimate reason to connect to anything else. The benefit is defence against exfiltr
627.
▲
by
9dev
7mo ago
What a great case of "you're holding it wrong!" I need to add individual configuration to every host I ever want to connect to before connecting to avoid exposing all public keys on my device? What if I mistype and contact a
628.
▲
by
9dev
7mo ago
I'm not sure I understand your point; if exe.dev operates a dedicated IP solely so a specific mythical IPv6-less developer can connect to a specific server, then there's no tunnelling involved at all.
629.
▲
by
9dev
7mo ago
Asking back, when I limit the outgoing connections from a network, why would I account for any nonstandard port and make the ruleset unwieldy, just in case someone wanted to do something clever?
630.
▲
by
9dev
7mo ago
It's a nice solution for sure, but a problem by choice. You could just have an AAAA record for the domain in addition to the A record, and as GP pointed out, resolve SSH sessions via the IPv6. If the user wants SSH to work with IPv4
More ›