Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
TriNetra
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
121.
▲
by
TriNetra
5y ago
When we do a selfless act we experience the joy from our soul – that's what we're truly are: an eternal, complete drop in the infinite ocean of pure consciousness. Our ego (which makes us feel that we're separate from others)
122.
▲
by
TriNetra
5y ago
A conditioned mind (of an unrealized one) needs to be engaged in some activity to feel worthwhile (one of the definitive ways of measuring your progress in meditation is to check how long you can sit with just yourself without engaging in a
123.
▲
Eight Signs of Progress in Meditation
(os.me)
3 points
by
TriNetra
5y ago
|
0 comments
124.
▲
Meditation Doesn’t Stop When You Think It Does – It Stops When You Think
(blacklotus.app)
2 points
by
TriNetra
5y ago
|
0 comments
125.
▲
by
TriNetra
5y ago
Before science can appreciate the mental/causal causes of the depression and related diseases, it needs to find an evidence for and establishes the separation of mind from physical brain. Hopefully an intensive exploration of conscious
126.
▲
by
TriNetra
5y ago
Ok, you have hit the reality of most startup enthusiasts. Most of us when starting are without much connections and of course no big marketing budgets. How to go from here? If you truly believe it solves a real problem, then proceed. First
127.
▲
by
TriNetra
5y ago
Do you plan to add ABAC permission policies consisting of an expression of arbitrary attribute-based conditions for the object? Say 'o.group = 'guest' AND o.location in ['CA', 'WA']. Recently a prospective
128.
▲
by
TriNetra
5y ago
Soon we'd read a story on HN "500 million brains got leaked, terabytes of private thoughts published online" and, a clone of haveibeenpwned will popup asking people to enter their brain scans to check if their brain was in th
129.
▲
by
TriNetra
5y ago
well, you need to be a bit verbose I guess. Smile please, to like and frown to dislike. If you are mad at a post then, you can just smash on the wall to show that reaction on person's FB wall :).
130.
▲
by
TriNetra
5y ago
Very pertinent question. with ASPSecurityKit, you get the whole auth/user management stack right as part of your application while with AuthZero, it's offered as a service. Your cost and risk will increase with such SaaS services
131.
▲
by
TriNetra
5y ago
I don't know how will it play out for Signal in countries which have banned or are planning to ban crypto as a currency. RBI had issued policy to banks to stop providing banking services to people/organizations holding/tradin
132.
▲
by
TriNetra
5y ago
Perfectly put. Btw, ASPSecurityKit supports MVC/web API/ASP.NET Core/ServiceStack, but not web forms! More info here: https://aspsecuritykit.net/docs/article/introduction/#suppor...
133.
▲
by
TriNetra
5y ago
Yes you can integrate with any provider. the pipeline [0] is the enforcement part – performing MFA checks like "Is MFA enabled on user? is it applicable for this request (can be turned off for programmatic api-based access, for example
134.
▲
by
TriNetra
5y ago
The focus here is on resource authorization, and for that there's no default in policy authorization. You've to write code in action body, capturing each id input from the request object, and authorizing it via the default authSer
135.
▲
by
TriNetra
5y ago
Yes, it's based on Microsoft Neural speech [0]. We made it in quick turn-around, with frequent changes, so thought of doing it first with Neural speech. Can definitely switch to a real human speech now as the content is relatively stab
136.
▲
by
TriNetra
5y ago
Hi HN! I'm back again (after sleep and meditation) for any question you may have
137.
▲
by
TriNetra
5y ago
it's all bubble IMO. Maybe the social media and consumption fads have gone extreme.
138.
▲
by
TriNetra
5y ago
Yes, under business/enterprise plan [0], you'll get access to the complete source code on our private GitHub repository. 0: https://ASPSecurityKit.net/pricing/#enterprise
139.
▲
by
TriNetra
5y ago
Not sure what was the particular issue you faced, but ASP.NET Core has come a long way – you can run .NET Core apps on Linux as well, not to mention the whole thing is open source under DotNet Foundation [0]. 0: https://dotnetfou
140.
▲
by
TriNetra
5y ago
Glad you asked! I'd incurrage to go through this [0] guide, or watch [1] video. But briefly: ASP.NET Core policy authorization works on full trust mode when it comes to the data sent by the callers. This means unless you write code to
141.
▲
by
TriNetra
5y ago
from [0]: > The zero-trust security model assumes breach as the default phenomenon and therefore, it advocates verifying every request with all possible options available to ensure the legitimacy of the request. It also emphasizes follow
142.
▲
by
TriNetra
6y ago
Not a crime IMO, but a little prank, and the principle understood it. It was pleasurable to read btw!
143.
▲
by
TriNetra
6y ago
I have used Black Lotus app [0] and on multiple occasions, its novel framework called RARE (Reflect, Act, Reinforce and Evaluate) has helped me come out of the stress/anxiety I'd suddenly found myself trapped into. There are diffe
144.
▲
Lessons from Ubiquiti breach: Advice on protecting admin user accounts
(aspsecuritykit.net)
1 points
by
TriNetra
6y ago
|
0 comments
145.
▲
by
TriNetra
6y ago
When you're operating such massive services, at minimum you should protect the admin accounts not just with 2FA, but also with IP firewall. Looks like both were missing from here ...
146.
▲
by
TriNetra
6y ago
You'll get millions of dollars invested in hype-and-nothing-really-to-show-for-it startups, or sold for hundreds of millions of dollars to a fortune 500 the product which is then phased out into a black whole in an year two from the bu
147.
▲
by
TriNetra
6y ago
And unfortunatley, the web will be forced to move toward verified human identities to fight with such junk and anonymous browsing will become a thing of the history.
148.
▲
by
TriNetra
6y ago
Congratulation! Looks like a quite an interesting problem and domain to build software for. How did you get your first customer? Was it easy because of Nick connections or, did the customer require lot of convincing and value demonstration?
149.
▲
by
TriNetra
6y ago
In reality, most of the applications are using it for authentication: to identify who you are using your GitHub, FaceBook or Google account. Authorization is the process of determining whether the identity can perform the specified action
150.
▲
by
TriNetra
6y ago
You can use HMAC [0]. Create a UI to collect username/password and make an API call to login endpoint, which should return sessionId/secret. going forward sign API requests using the HMAC protocol without ever revealing the secret
More ›