Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
codelitt
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
61.
▲
by
codelitt
10y ago
Codelitt Incubator | Miami | 3 Month Contract w/ option to extend | ONSITE / REMOTE Position: Designer with web + mobile experience You'll be working with a team developing the design language and systems, UX, and UI for a so
62.
▲
by
codelitt
10y ago
People keep saying mobile is the future, however, I just can't imagine desktops leaving us anytime soon. If I'm on the go, then sure I want it on my mobile device, but 99% of the time when I'm at work I want quick and easy ac
63.
▲
The Simple, Elegant Algorithm That Makes Google Maps Possible
(motherboard.vice.com)
2 points
by
codelitt
10y ago
|
0 comments
64.
▲
by
codelitt
10y ago
I've been volunteering teaching Latin American journalists how to research, communicate, and store data privately to protect themselves and their sources against attackers. The threat against freedom of expression there is just as real
65.
▲
by
codelitt
10y ago
Codelitt Incubator | Miami | Full-time | ONSITE / REMOTE Position: Software Engineer with Game Dev/3D Experience - Mobile experience a bonus Product: Interactive Virtual and Altered Reality and data viz for Hololens. You'll h
66.
▲
by
codelitt
10y ago
Thanks man! I'll take a look.
67.
▲
by
codelitt
10y ago
You're right. Took mwpmaybe's suggestion for the time being and only will accept IPv4 from ssh for now till that's fixed.
68.
▲
by
codelitt
10y ago
Nothing! (Except I doubt I can manually get it all done in 5 minutes =) ) Thanks for your great article. We just ended up adapting your approach with a couple modifications (like 2FA) and extending it to be more of a primer and explain the
69.
▲
by
codelitt
10y ago
You still can't login to the system. Root login is disabled as well as password authentication. The root password is just in case you lose your sudo password but it doesn't provide you a way to login if you don't have your ke
70.
▲
by
codelitt
10y ago
Get a PW manager instead. No passwords should be stored in your head (because every one should be different) and they should be stored behind encryption -- definitely not plain text nor sticky notes. http://keepass.info/down
71.
▲
by
codelitt
10y ago
I mention Ansible and other tools in the article. The idea, as others have mentioned, is to teach a man to fish. You're much better off with having an automated way to perform this, but you shouldn't ever run anything automated t
72.
▲
by
codelitt
10y ago
Someone on /r/netsec rightly pointed out that you shouldn't ever add a user directly to sudoers anyways. You should add them to the sudo or wheel group. I've since updated the article. What I've described is a more
73.
▲
by
codelitt
10y ago
Great! Thanks for the answer.
74.
▲
by
codelitt
10y ago
Ooo. Fair point. I'll add that now and link to your comment.
75.
▲
by
codelitt
10y ago
So it looks like from the `passwd` man page that `-l` locks it, but doesn't actually remove it completely? I wonder if there are any disadvantages to this.
76.
▲
by
codelitt
10y ago
It depends on your VPS, but many give a root password by default. I do make sure later in the article that `/etc/ssh/sshd_config` does not allow root login: PermitRootLogin no But you make a good point that a simple
77.
▲
by
codelitt
10y ago
Thank you for the notes. I'm on the go right now so sorry for the short reply, but I agree with what you've said. This was more of a primer with some hope to quickly explain the basic steps and what they were doing to younger engi
78.
▲
by
codelitt
10y ago
Also good reading is: https://en.wikipedia.org/wiki/Principle_of_least_privilege
79.
▲
by
codelitt
10y ago
Out of curiosity, how does it compare to fail2ban?
80.
▲
by
codelitt
10y ago
Yes. You should still keep your eye out on patches. If a big vulnerability gets patched requiring a reboot, you'll want to attend to the upgrades yourself.
81.
▲
by
codelitt
10y ago
Yes. We originally just put this together just as a primer for younger engineers to understand the basic steps. The guide you posted looks really good though. It looks like it covers some of the application side of things as well.
82.
▲
by
codelitt
10y ago
Hahaha great quote. I haven't seen this article before. It looks quite good. Thanks for posting it.
83.
▲
My First 10 Minutes on a Server
(codelitt.com)
1282 points
by
codelitt
10y ago
|
290 comments
84.
▲
by
codelitt
10y ago
Codelitt Incubator | Miami | Full-time | ONSITE / REMOTE (US or LATAM) Position: Full Stack Engineer (Ruby, Javascript, bit of Go, and quite a few other technologies that you can work on if you're interested in branching out - we
85.
▲
by
codelitt
10y ago
I said this in a reddit thread[1], but I really just have a philosophical aversion to this. The industry has moved forward because of open source code. If I come up with a great algorithm, it is in my best interest to share it with others,
86.
▲
by
codelitt
10y ago
Here's an article including first hand account and quotes from Moxie: http://news.softpedia.com/news/wire-drops-lawsuit-alleging-e... IMHO, no credence should be given to lawsuits and accusations made without proo
87.
▲
Online tracking: A 1M-site measurement and analysis – Princeton
(webtransparency.cs.princeton.edu)
2 points
by
codelitt
10y ago
|
0 comments
88.
▲
by
codelitt
10y ago
Codelitt Incubator | Miami | Full-time | ONSITE / REMOTE (US or LATAM) Position: Full Stack Engineer (Ruby, Javascript, bit of Go, and quite a few other technologies that you can work on if you're interested in branching out - we
89.
▲
by
codelitt
11y ago
A few others to test out: - https://www.houndify.com/ - http://api.ai/ - https://wit.ai/
90.
▲
by
codelitt
11y ago
Thank you so much for your reply. I'll have a look at the plugin_weather and see how that one works. Regarding the neural net, I think that's an important feature because the most difficult part about guessing triggers is, well, g
More ›