Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
dastbe
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
13 ms
·
91.
▲
by
dastbe
4y ago
probably, but not HIPAA or PCI or many of the other ones people care about. Even for FedRAMP there is a distinction between the lower-tier of compliance which is applied to us-east and us-west (whose only interesting requirement is "do
92.
▲
by
dastbe
4y ago
> You'll notice cloud providers host their government customers on a separate tier for this reason. But it takes a lot of work to segregate the traffic. the primary reason for this is that nobody but us citizens can touch these serv
93.
▲
by
dastbe
4y ago
not discounting your experience but > The senior manager was hell bent on proving leadership he could deliver projects in impossible deadlines and not rarely did he warned SDEs that failing to deliver on those promises were firable offen
94.
▲
by
dastbe
4y ago
i'd (probably apocryphally) heard at announcement it was just s3 under the hood to support customers while they built the dataplane out :)
95.
▲
by
dastbe
4y ago
I can't really speak to amazon retail, but in my 7 odd years in aws I found most people left because * working in infrastructure means doing a lot not quite so exciting things. most people aren't actually excited by ops, and a lot
96.
▲
by
dastbe
4y ago
for all of the commenters, i'm fairly sure the macbook being referred to is the 12-inch macbook. that was absolutely a failure due to lack of a power efficient and performant cpu
97.
▲
by
dastbe
4y ago
you're conflating management of external dependencies with internal dependencies. Ideally, Stripe is actually as a Library Vendor here and so these are long-lived major versions with well-defined upgrade paths and surface area. Within
98.
▲
by
dastbe
4y ago
> Vendoring/Versioning for discrete packages is a heavily invested in problem space for most tech stacks you'll come across. 100% disagree. The problem of "How do I define my dependencies and have a package manager reify t
99.
▲
by
dastbe
4y ago
> All signs for the rest of the world point to the opposite conclusion: unless you're Google-scale, you don't have Google level resources. Google has more engineers working on developer experience than most companies will ever
100.
▲
by
dastbe
4y ago
individual software is more disposable, but the systems themselves still have immense value. the software in the system will be updated or replaced (because it is easier to do so!) if it’s valuable for the system.
101.
▲
by
dastbe
4y ago
do it with grpc and regular curl.
102.
▲
by
dastbe
4y ago
so another thing i have to install. and i also need to set up the introspection endpoint on my service to make sure it works well.
103.
▲
by
dastbe
4y ago
this seems hyperbolic? the overwhelming majority of aws apis are json over the wire (with some variation in how the operation is defined. there is no perceivable downside to this practice, and they’ve built quite the “oil refinery”. being a
104.
▲
by
dastbe
4y ago
there is something nice about being able to just write some json and curl an endpoint. getting to this point with grpc is effort.
105.
▲
by
dastbe
4y ago
i think the benefit of client expectations around verbs isn’t the be-all-end-all. i can still write a non-idempotent fairly easily. writing resource oriented apis does benefit quite a bit, as it often forces you into good api patterns aroun
106.
▲
by
dastbe
4y ago
isn't it wild that not once in this article do they talk about working with governments to handle blocking in cloudflare's proxy layer? they go on and on about why ip blocking sucks, but don't actually propose anything better
107.
▲
by
dastbe
4y ago
i suspect its more likely that there are pools for c5a.large, xlarge, etc. and that they just aren't prioritizing as much buffer/liquidity in the large instance type pools. with chip shortages it may be worth it to them to priorit
108.
▲
by
dastbe
4y ago
> What's consumption in case of Slack? Number of messages? Storage+CPU usage+bandwidth? Sure, I don't know what their primary driver of scale is for a customer. Maybe it is users for all I know; I just know that for many busine
109.
▲
by
dastbe
4y ago
just charge for consumption. and if your users wants to pre-pay for fixed amounts of consumption then give them that opportunity. per user pricing always seems like a heuristic for how much you think a company can pay rather than getting th
110.
▲
by
dastbe
4y ago
surveying definitions of blockchain, decentralized consensus is consistently a part of the definition. a blockchain without distributed consensus is something less specific. i also don’t know why you put “centralized in quotes”. amazon qldb
111.
▲
by
dastbe
4y ago
> The only way to guard against that risk is to replicate and publicize the data, make sure all data modifications are cryptographically signed and valid according the logic of the application, and incorporate into each new version of th
112.
▲
by
dastbe
4y ago
in AWS, authentication and authorization happens within the application. For the purposes of authorization, services integrate with a library that handles retrieving and caching policies based on caller identity. services create a context t
113.
▲
by
dastbe
4y ago
can you speak to commit throughput of the sapling server? While there's tooling to make git scale better (like sparse checkouts) scaling commit throughput for automation is a pain.
114.
▲
by
dastbe
4y ago
I always forget that cassandra wasn't built by yahoo because it absolutely fits with their model of taking a whitepaper and building an unmaintainable heap out of it.
115.
▲
by
dastbe
4y ago
so you mention bearer tokens in another comment, so i’ll speak to that. while bearer tokens are simpler, the protection they provide is more limited. for example, a bearer token has no request affinity so if i get your token for service foo
116.
▲
by
dastbe
4y ago
when a request hits the server authenticating you, it has to recreate the signature. aws doesn’t want to provide those services your raw credential because that makes any aws host a very juicy target. instead, they provide the partially eva
117.
▲
by
dastbe
4y ago
That's an awfully impolite accusation
118.
▲
by
dastbe
4y ago
> It's impolite to assume on someone's behalf in public. They asked a question, they didn’t state an assumption. And why is it impolite. > Could you explain how messaging in private is so hard to do if you have no problem ma
119.
▲
by
dastbe
4y ago
> Be polite. Could you explain how messaging in private is more polite?
120.
▲
by
dastbe
4y ago
> Turns out it is more diplomatic to reach out to someone privately first. Why
More ›