Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ekr____
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
ekr____
5mo ago
This really isn't the case, because people still have firewalls.
32.
▲
by
ekr____
5mo ago
Why do you think the existing records weren't also set under good conditions?
33.
▲
by
ekr____
5mo ago
To add some color here: It is very helpful to have someone pace you so that you can run an ideal pace without worrying about whether you are running the right speed. However, the rules require that pacers start with you [0], which means tha
34.
▲
by
ekr____
5mo ago
Correction: 100g of carbohydrate/hr. That's approximately 400 calories/hr.
35.
▲
by
ekr____
5mo ago
A few points about the IETF process: - As a practical matter, anything that is a Proposed Standard RFC is a standard. In principle, there is a two-level system with PS and Internet Standard (down from three levels) but most WGs don't b
36.
▲
by
ekr____
5mo ago
> It is very hard to prevent a proposal from becoming a RFC. You have to generate ongoing opposition for longer than the supporters. I don't think this is really true. A huge fraction of proposed documents just go nowhere, and it&#x
37.
▲
by
ekr____
6mo ago
> What the internet would need is something like IPv6 with automatic encryption via IPSEC, with IKE provided by DNSSEC. I understand the appeal of this vision, but I think history has shown that it's not consistent with the realitie
38.
▲
by
ekr____
6mo ago
Well, if you have MDM you should be able to just disable ECH.
39.
▲
by
ekr____
6mo ago
Even if the browsers and servers don't support it, you could still enable it because the system is designed to be backward compatible.
40.
▲
by
ekr____
6mo ago
+100 to this. Because Yosemite keeps getting called out, I would also mention that Sequoia/Kings Canyon National Park is right next to Yosemite, just as spectacular in many ways (e.g., Rae Lakes Loop), and far less crowded.
41.
▲
by
ekr____
6mo ago
See also: https://nationalparkobsessed.com/reviews-of-the-us-national-...
42.
▲
by
ekr____
6mo ago
If you are fit, you can absolutely do this. In fact, you can go all the way to the other rim and back (rim-to-rim-to-rim). The current record is sub 6 hrs by Ultrarunner Jim Walmsley. [0] https://fastestknowntime.com/route&#
43.
▲
by
ekr____
6mo ago
I mostly agree with this, but... if you're a hiker or a trail runner the alps really are amazing, and the infrastructure is far better than in the States. Once you get outside of really built up places like Yosemite Valley, the trails
44.
▲
by
ekr____
6mo ago
> In Yosemite, all you have to do is outhike the "Reebok hikers" as we called them back then. An hour's serious walk gives you relative solitude. You actually don't even need to do this if you park somewhere other tha
45.
▲
by
ekr____
6mo ago
TL;DR. Explore Yosemite on foot. I don't know Yellowstone, but the situation with Yosemite is a bit complicated. There are basically two congestion issues: 1. Congestion in the park itself. 2. Traffic. Yosemite is huge, but the only pl
46.
▲
by
ekr____
6mo ago
The problem with the Canyon is that (1) what's really interesting is seeing the whole thing top to bottom and (2) the really spectacular views are when you're partway down, with the best locations depending on the time of day. How
47.
▲
by
ekr____
6mo ago
Reason number 10^6 why TLS 1.3 is so directive about the protocol invariants: https://www.rfc-editor.org/rfc/rfc8446#section-9.3
48.
▲
by
ekr____
6mo ago
> In both cases, you need to start moving now and gain little from trying to time the switchover. There are a number of "you"s here, including: - The SDOs specifying the algorithms (IETF mostly) - CABF adding the algorithms to
49.
▲
by
ekr____
6mo ago
Yes, though we do know how to solve this problem by using hash-based timestamping systems. See: https://link.springer.com/article/10.1007/BF00196791 Of course, the modern version of this is putting the timestamp a
50.
▲
by
ekr____
6mo ago
As a practical matter, revocation on the Web is handled mostly by centrally distributed revocation lists (CRLsets, CRLite, etc. [0]), so all you really need is: (1) A PQ-secure way of getting the CRLs to the browser vendors. (2) a PQ-secure
51.
▲
by
ekr____
6mo ago
A few points here: There is already very wide use of PQ algorithms in the Web context [0], which is the most problematic one because clients need to be able to connect to any site and there's no real coordination between sites and clie
52.
▲
by
ekr____
6mo ago
We're actually seeing this play out right now with the server-based age assurance systems which are already widely deployed and mandated under the UK Online Safety Act and laws in about 25 US States. In many cases, the sites just compl
53.
▲
by
ekr____
6mo ago
> 1) The parental responsibility is given to the wrong people. You're basically being forced by law to give all apps and websites your child's age on request, and then trusting those online platforms to serve the right content
54.
▲
by
ekr____
6mo ago
I like the term "age indication". Thank you. If I may nitpick, the conventional term for systems which attempt to determine the user's age is "age assurance". This covers a variety of techniques, which are typically
55.
▲
by
ekr____
6mo ago
It actually is more like a flag in most cases. Specifically, in the case of AB1043, you enter your age or your DOB but then the OS provides an age range (<13, 13-15, 16-17, 18+). Also, while some bills do seem to require browsers to prom
56.
▲
by
ekr____
6mo ago
> I personally hope this legislation dies and we can be done with this silly exercise, but if we’re stuck with age verification moral panic than a simple OS-level switch that we set once and then forget about seems like the least intrusi
57.
▲
by
ekr____
6mo ago
> > For instance, if a child buys their own device they could set the age to whatever they want. > If a child has the money to buy a device without the parent knowing about it then they could just buy a used device that has already
58.
▲
by
ekr____
6mo ago
>> Systems are required to ask the user for their age and just trust whatever they say > > This is the thing they actually get right. It removes the inconvenience, privacy invasion, forced use of corporate verifiers with pervers
59.
▲
by
ekr____
6mo ago
OP is certainly right that a lot of this legislation is written in ways that are hard to interpret and that often seem like they would have undesirable side effects even under the assumption that the basic idea is good (whether that's
60.
▲
How not to mandate device-based age assurance
(educatedguesswork.org)
3 points
by
ekr____
6mo ago
|
0 comments
More ›