Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ffk
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
31.
▲
by
ffk
6y ago
One pattern I like to use is to write my documents using markdown which can be compiled into pdf via latex with a template of my choosing. It is also capable of compiling to other formats which may be more accessible such as plain text, htm
32.
▲
by
ffk
6y ago
I've seen a few streams of people who are like this, and they seem to do ok. One of the pidgin devs migrated their mercurial repos from bitbucket to their own self-hosted environment, live, on stream. I think the personality of the per
33.
▲
by
ffk
6y ago
I was unclear in my comment. I was describing a before and after set of solutions. The former allows for server side decryption. The latter approach would prevent server side decryption.
34.
▲
by
ffk
6y ago
It looks like what they have now is openssh like. Client 1 sends data to the server encrypted. Server decrypts. Server reencrypts and sends to client 2. This describes how to communicate in such a way where the client 1 and 2 can communicat
35.
▲
by
ffk
7y ago
Right now would be a fantastic time for these ISPs to start installing Open Connect Appliances. It'll keep most Netflix traffic off of the backbone. https://openconnect.netflix.com/en/appliances/
36.
▲
by
ffk
7y ago
I'm sure we'll laugh about most things we are currently using and gasp when we need to revisit them in legacy systems. :)
37.
▲
by
ffk
7y ago
I don't believe I suggested getting rid of the MAC address altogether. Ethernet isn't going away anytime soon. The suggestion is simply this: Don't embed your MAC address into your IPv6 address because it's a unique iden
38.
▲
by
ffk
7y ago
This runs Amazon lambda, so presumably well enough?
39.
▲
by
ffk
7y ago
This is enabled by disabling anything that depends on pinned kernel memory. You get a VM with user space networking and a one button keyboard. This allows the kernel too aggressively swap out unused resources and ultimately increase the to
40.
▲
by
ffk
7y ago
This is more comparable to runc. Firecracker can be used in kubernetes through containerd+kata containers integration. (Containerd from docker is a key tech behind both docker and K8s, kata containers from Intel enables containerd to run vm
41.
▲
by
ffk
7y ago
Not all networks are private. Also, many IPv6 addresses contain the MAC address which would effectively deanonymize you over the internet.
42.
▲
by
ffk
7y ago
Most IPv6 packets are encapsulated in Ethernet frames which use MAC addresses. What may change is the vendor specific MAC address could be replaced with a MAC address generated by a cryptographic hash to preserve privacy.
43.
▲
by
ffk
7y ago
MACs can be spoofed. There are entire companies which begin their sales pitch with "So, I can poison the ARP cache to take over your DNS in your Kubernetes Cluster" due to the NET_RAW capability required to respond to ICMP (ping).
44.
▲
by
ffk
7y ago
In most scenarios, you want to avoid L2 tunnels to reduce complexity and/or performance issues. The chain of thought typically goes like this: * Remote networks are connected via L2 tunnel. * ARP requests are broadcasted over L2 tunn
45.
▲
by
ffk
7y ago
Wouldn't it be nice if preserving your privacy simply meant not wearing your QR code?
46.
▲
by
ffk
7y ago
The example before shows the author typing Prin with autocompletion. Maybe that was the original intent? I think that context is lost though and it would be better to just highlight the entire thing as you suggest.
47.
▲
by
ffk
7y ago
Docker was not written in Java. It was shell scripts, python, then go. Dotcloud was primarily a python shop. Perhaps you are thinking of a different project?
48.
▲
by
ffk
7y ago
Oh on multi arch support. This was purely about keeping focus and reducing the original scope. I shared the same concerns and brought up this exact topic with Solomon. A change here meant changes in docker hub and other key places including
49.
▲
by
ffk
7y ago
Sorry for the slow response, just got off an airplane. These were not after the fact. Instead, we knew these were the potential benefits and we moved over. I personally wasn't happy about having to run a daemon to get a container, but
50.
▲
by
ffk
7y ago
There were a few reasons for this. The original golang version of docker required root, full stop. There was no difference between the client and server. The first reason was to reduce privileges of the client interface. This would provide
51.
▲
by
ffk
7y ago
For me, the exciting part of 5G is the connection density. The estimated density for a 4G network is: 4,000 devices / km^2. The estimated density for a 5G network is: 1,000,000 devices / km^2. The density means we can scale up mac
52.
▲
by
ffk
7y ago
This is one of the reasons things like Federated Kubernetes is being worked on. Stick a CDN in front and your compute can be migrated from cloud to cloud. You still need to do a lot of thinking about data though.
53.
▲
by
ffk
7y ago
Fun fact, tcpdump is one of the BPF killer apps. eBPF extends the BPF with a more modern architecture (e.g. 64 bit support) and being generalized so that it can support things like more fine grained security control in seccomp which limit w
54.
▲
by
ffk
8y ago
My understanding is all frequencies interfere with all other frequencies. When averaged, the total power is probably not affected, but the power at any given point at a small enough time interval should be noticeable. But then, I'm not
55.
▲
by
ffk
8y ago
The main thing I got from the MIT article is this: "This system relies on an array of antennas that emit radio waves of slightly different frequencies. As the radio waves travel, they overlap and combine in different ways." This i
56.
▲
by
ffk
9y ago
Nice project, definitely a very important effort. Also, I recall hearing about how some people or villages opt in to deforestation because they are offered a significant amount of money which can be used to feed their kids and provide an ed
57.
▲
by
ffk
9y ago
You are correct, docker images don't generally contain kernels (and if they do, they don't load them). A more apt comparison would be vs alpine standard which is 109 MB and contains a kernel.
58.
▲
by
ffk
9y ago
Thanks for reproducing the experiment. :) I sent a message to tianon asking him if he remembers what the original numbers were. He told me long ago, I think it was around 1000. This was well before the go shim or dockerd existed.
59.
▲
by
ffk
9y ago
I'll have to ask tianon to see what he says. I don't remember the number.
60.
▲
by
ffk
9y ago
The smallest useful container I know of is 129B. It was created to test how many containers docker can spin up while reducing the overhead of what was in the container itself. tianon/sleeping-beauty latest 2e8193709fa7
More ›