Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Leace
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
61.
▲
by
Leace
7y ago
Works on mobile. See countless comments here.
62.
▲
by
Leace
7y ago
> No one wants to look at their entries from 2005 from when they screwed up while learning about subkeys Yeah, it's interesting that even platforms such as Keybase that allow changing or removing data timestamp them in irremovable w
63.
▲
by
Leace
7y ago
Project looks definitely interesting. Too bad the code looks like callback-hell from 10 years ago: https://github.com/tdjsnelling/dat-keyserver/commit/12fa3e83... Still, an interesting alternative for people
64.
▲
by
Leace
7y ago
Do you use Lttrs daily? I'm wondering if it works in practice (even when using non-standard setup) or if it's just a proof-of-concept (that'd mean it may take some time to mature).
65.
▲
by
Leace
7y ago
> That's what didn't happen with PGP. Yes. And your software suggestions are excellent for 2019. I just wonder whether in 10 years it would be better to have a standard improved/developed, instead of a collection of one-ve
66.
▲
by
Leace
7y ago
Minus the network of independent logs as from what I remember only keybase.io runs their own log system. Although they do timestamp their Merkle tree roots into Bitcoin.
67.
▲
by
Leace
7y ago
> persistent global public identity Certificate Transparency could be reused/abused to host it. If, for example, you issued a cert for name <key>.contact.example.com and the tooling would check CT logs this could be a very p
68.
▲
by
Leace
7y ago
If you have to trust the package maintainer what's the difference between having package signed by them or not? For the record AUR packages can use GPG keys, see e.g. GPGKEY variable: https://wiki.archlinux.org/index.ph
69.
▲
by
Leace
7y ago
I guess they mean putting the key on a webpage or using Web Key Directory or a centralized service such as https://keys.openpgp.org
70.
▲
by
Leace
7y ago
> Long term keys are almost never what you want. If you keep using a key, it eventually gets exposed. You want the blast radius of a compromise to be as small as possible, and, just as importantly, you don’t want users to hesitate even f
71.
▲
by
Leace
7y ago
> there’s a simple meta-problem with it: it was designed in the 1990s, before serious modern cryptography SSL was designed in 1994 but it has been properly maintained and today no-one argues that TLS should be replaced by noise/stro
72.
▲
by
Leace
7y ago
OpenPGP is not a product, it's a standard. Maybe you're thinking of https://sequoia-pgp.org/ or https://neopg.io/ ?
73.
▲
by
Leace
7y ago
> I'd strongly recommend it to anyone who writes software. In contrast, this opinion from another game developer is not positive: https://www.goodreads.com/review/show/647929167?book_show_ac...
74.
▲
by
Leace
7y ago
This article goes into more detail of RPM: https://xyrillian.de/thoughts/posts/argh-pm.html
75.
▲
Google to Reimplement Curl in Libcrurl
(daniel.haxx.se)
281 points
by
Leace
7y ago
|
118 comments
76.
▲
by
Leace
7y ago
Maybe it's my selection bias but I found books that I read [0] to have higher information density than what I find online. [0]: I usually pick books with "Advanced" in title (or similar) even when I'm beginner in the sub
77.
▲
by
Leace
7y ago
> * Carriers CAN and likely WILL charge for it, because they can and because sadly (as noted above) RCS is visible to them as something more than an encrypted stream of data I need to agree on this one too. I just recently found out that
78.
▲
by
Leace
7y ago
That would be great! One thing that makes working with a language pleasant is good tooling.
79.
▲
by
Leace
7y ago
Rust may hopefully get better autocompletions if they work on their Language Server implementation. C# compiler was explicitly rewritten so that it is IDE friendly and I fully agree with this decision. That said even good, old Java has exce
80.
▲
by
Leace
7y ago
Some parts of mutt look like unmaintained and on life-support. I've seen the GPG interface code and it's full of deprecated code (e.g. PKA support) or subtle bugs.
81.
▲
by
Leace
7y ago
I was about to ask about PGP support too so thanks for the screenshots, they look great! Is PGP key discovery based on email planned/welcome? I'm talking about Web Key Directory introduced by GnuPG [0], being standardized by IETF
82.
▲
Some Bad News for Dane (and DNSSEC)
(blog.apnic.net)
2 points
by
Leace
7y ago
|
0 comments
83.
▲
by
Leace
7y ago
If it's signed with Secure Boot keys it's no different for loading signed Grub image. Grub would also need to be unencrypted to work. As for signing kernel: https://github.com/andreyv/sbupdate
84.
▲
by
Leace
7y ago
> If you have a signed Grub EFI loader, remove the default secure boot keys and add in just the CA/certs for your system and password your BIOS/setup, you have the potential for a very secure system (ignoring the Intel/AMD
85.
▲
by
Leace
7y ago
Interesting because I've got Firefox 67 and Paypal.com does show EV indicator. Actually I see the same in Google Chrome 74.
86.
▲
by
Leace
7y ago
> Obviously, I'm a bit biased, as I run a project for creating transparent open source infrastructure. But I do think this is a important issue, and I'm getting more and more scared GitHub is out to make open source development
87.
▲
by
Leace
7y ago
I've been thinking about using PureScript years ago as I've enjoyed the PureScript by Example book [0] and the language that seems like a cleaned-up version of Haskell. I didn't like that the compiler is not written in PureSc
88.
▲
by
Leace
7y ago
> International Editions differ often in the problems at the ends of the chapters in order to protect US and other western markets. Protect in what way? By not disclosing secret problems based on US-centric data?
89.
▲
by
Leace
7y ago
I'm using btrfs for a year on my laptop and there are no problems. I did some research before as I considered ZFS too but it seems most btrfs criticism is from old versions that did have bugs or using configurations that have known fla
90.
▲
by
Leace
7y ago
Yes, especially that Kotlin already targets various architectures.
More ›