Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Mordak
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
Mordak
11y ago
> ISTM this will just slightly raise the bar so that attackers who get code execution have to force a call to execve. If the program did not pledge 'exec', then calling execve() will cause the program to be killed. Lots of prog
32.
▲
by
Mordak
11y ago
From the man page: http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man4/... Supported hypervisors KVM Kernel-based Virtual Machine Hyper-V Microsoft Hyper-V VMware VMware vS
33.
▲
by
Mordak
11y ago
Looking at a program statically and limiting its privileges automatically would be good (autotame?), but it misses the point that tame appears to be trying to solve. Specifically, it is often the case that programs need more privilege once
34.
▲
by
Mordak
11y ago
The other possibility is that if every company starts doing this (using open source!), the majority of software will be written and maintained by employees of said companies. This is already the case for many projects, isn't it? In the
35.
▲
by
Mordak
11y ago
This is a good suggestion. OP could also mount /usr/ports, /usr/obj, etc. via NFS from a dedicated build machine, and just pkg_add the built packages from /usr/ports/packages/, or 'make install&#
36.
▲
by
Mordak
12y ago
> What does that look like, exactly? What are the steps to roll back to a prior version? I am tracking the -stable branch in ports, which means I periodically sync my local ports tree with upstream and then build / upgrade any updat
37.
▲
by
Mordak
12y ago
It's kind of too bad that this thread started off the way it did, because there is now a bunch of misinformation in it. The OpenBSD ports system makes binary packages (and then installs them). Those binary packages are managed by the p
38.
▲
by
Mordak
12y ago
I switched from an iPhone to a Passport last fall, and have been very happy with it overall. I am a consumer, so this is just for personal use. My reasons for switching were: 1. Real keyboard. I carried the iPhone for 3 years and never like
39.
▲
by
Mordak
12y ago
I don't think you are correct here - pkg upgrade most certainly pulls down updated versions of packages, complete with security patches. In fact, the default freebsd daily job will send you an email listing which packages have security
40.
▲
by
Mordak
12y ago
If you mean that you're looking for a VPS provider that offers FreeBSD images, they are out there. In addition to the ones already mentioned in this thread: Vultr.com[0] offers FreeBSD VPS from $5/month. I've used these guys,
41.
▲
by
Mordak
12y ago
It was just moved from base to ports, so you can still get it from ports/security/heimdal if you want it.
42.
▲
by
Mordak
12y ago
Most of my work is server side (vim!), but on a client I just install firefox-esr with pkg_add. If there's a security update that I think I need, I'll 'make package' on the -stable branch in ports, and install that packa
43.
▲
by
Mordak
12y ago
Yes. I've commented on this sort of thing before, but my preference for OpenBSD over other things really boils down to the Just Works factor, and the simplicity and transparency of the system. I usually find that getting things going o
44.
▲
by
Mordak
12y ago
I suppose there are probably large groups of people who care about multicore performance on the metal, but my dominant use case is herds of single core VMs, each doing one thing (well!). In this case, host CPU and memory consumption matter,
45.
▲
by
Mordak
13y ago
I use OpenBSD in a development environment. The environment happens to be offline, so the win for OpenBSD here is that it is very easy to work with in places where you don't have internet access. The entire system comes on CDs that you
46.
▲
by
Mordak
13y ago
> Macports is an okay solution for package management. People give macports a hard time, but I've never been sure why. It does binary or source distribution. It finds and fixes broken library linkage after upgrades. You can prune yo
47.
▲
by
Mordak
13y ago
> while literally not having an "up one level" button Huh. I have honestly never taken notice that the OS X Finder lacks an 'up one level' button, and I've been on board since 10.0. I guess it's because I ha
48.
▲
by
Mordak
13y ago
As someone who runs OS X day to day, but still loves a traditional unix desktop to get work done, I can see where you're coming from. In my experience you have a couple of options for getting the best of both: 1. You can run XQuartz fu
49.
▲
by
Mordak
13y ago
I agree with you entirely that hosting your own mail doesn't mean drowning in spam. After many years hosting my own mail, I find the most effective anti-spam measures are (in order): 1. RBL: zen.spamhaus.org. This kills 95% of incoming
50.
▲
by
Mordak
14y ago
If they want to offer their contest to residents of Quebec, yes, they must abide by local laws and regulations. Running a contest in a given jurisdiction is a form of doing business in that jurisdiction, and so of course the contest is subj
51.
▲
by
Mordak
14y ago
I guess the significant difference is that with git, all copies of a repository are full working repositories in and of themselves. So there is no difference between the repository on your git server and the copy you cloned onto your workst
52.
▲
by
Mordak
14y ago
This. The OP says he is waiting for the git epiphany. The epiphany is that there is no _the_ remote repository. You can use git like it's subversion, and designate one repo as _the_ repo, but because git isn't designed this way it isn't goi
53.
▲
by
Mordak
14y ago
I've never done any legacy BB development, but coding for the playbook / BB10 is pretty excellent. Write C/C++ like you normally do for any *nix/Qt type system (using the Eclipse based IDE); Compile locally and deploy over the air to the de
54.
▲
Install gcc onto your Playbook over the air. No root required.
(github.com)
2 points
by
Mordak
14y ago
|
0 comments