Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jaas
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
14 ms
·
121.
▲
by
jaas
6y ago
I don't understand what you're asking for. Can you explain?
122.
▲
by
jaas
6y ago
Just to be a little more clear - I believe the original lock-in agreement with GF has expired, but they negotiated a new one. So they have an agreement about chip purchasing, but they aren't still in the agreement from the spinoff.
123.
▲
by
jaas
6y ago
Let's Encrypt| letsencrypt.org | Senior Software Engineer | Remote (US or Canada) | Full-Time We’re making HTTPS easier for developers to use, we’re doing it at scale, and we need your help. We’re a first-of-our-kind Certificate Autho
124.
▲
by
jaas
6y ago
Yes it does. Quantum is not new from scratch, it's (excellent) improvement and reorganization of largely the same code base. Some code and components are new, but that's rare all in all.
125.
▲
by
jaas
6y ago
It says "for personal reasons," which is not text I would expect if he was just going to another company.
126.
▲
by
jaas
6y ago
But hopefully you care about one much, much more than the other. They are not comparable in terms of needing discussion at this moment in history. (Edit: In the event that you honestly don't know which one is the more important topic,
127.
▲
by
jaas
6y ago
Yes, most roads should be toll roads. The benefits to society would be enormous.
128.
▲
by
jaas
6y ago
Let's Encrypt | Senior Software Engineer | Full-time | REMOTE from U.S. or Canada We’re making HTTPS easier for developers to use, we’re doing it at scale, and we need your help. We’re a first-of-our-kind Certificate Authority (CA). We
129.
▲
by
jaas
6y ago
No there aren't. All HTTP traffic can be modified, which means it can deliver any malicious payload to the server or client. It's dangerous not to use HTTPS, period.
130.
▲
by
jaas
7y ago
Head of Let's Encrypt here. We have an on-call rotation and a system for getting others notified and online quickly when necessary. We make sure not to bring too many people online so that some people are fresh and can rotate in later
131.
▲
by
jaas
7y ago
Probably because it includes pre-certificates. I have to run so I don't have time to explain, but basically at a certain point we started submitting each certificate twice, the first one being a "pre-cert." You can probably G
132.
▲
by
jaas
7y ago
It's surprisingly hard to tell which certificate was the billionth issued. You'd have to decide on a source of truth, and CT is probably not a good one for this purpose. Submissions to CT are not necessarily made and processed in
133.
▲
by
jaas
7y ago
This is correct. We currently serve about 195 million websites, where website is defined as a unique Fully Qualified Domain Name.
134.
▲
Let's Encrypt Has Issued a Billion Certificates
(letsencrypt.org)
1160 points
by
jaas
7y ago
|
258 comments
135.
▲
by
jaas
7y ago
"If you looked at that table and went like "Oh, just 0.2% for me, great! No need to worry!" you are a terrible person." Or, with a bit more empathy, they just haven't put it in the right context yet. Any death from
136.
▲
by
jaas
7y ago
If operating systems had taken care of the problem already then Mozilla might not have to. I'm glad Mozilla isn't waiting around for them to protect my privacy.
137.
▲
by
jaas
7y ago
It doesn't "resolve" BGP attacks. The point is an attacker would have to pull off three or four successful attacks at once, which is harder than pulling off just one, especially if they hope to go unnoticed.
138.
▲
by
jaas
7y ago
The blog post is probably more understandable and relevant for readers here: https://letsencrypt.org/2020/02/19/multi-perspective-validat... Maybe we can get the link changed?
139.
▲
Multi-Perspective Validation Improves Domain Validation Security
(letsencrypt.org)
7 points
by
jaas
7y ago
|
0 comments
140.
▲
by
jaas
7y ago
This math is off because the vast majority of Silver sponsors are at $10k, and some of the sponsors at all levels are in-kind, meaning we get something other than cash from them. In 2019 we spent $3.35M in cash (we came in a little under ou
141.
▲
by
jaas
7y ago
I didn't say that.
142.
▲
by
jaas
7y ago
This is a naive and dangerous perspective. You're basically saying that memory safe languages don't solve all problems so it's fine to use unsafe languages. Don't write code in unsafe languages unless you have to (almost
143.
▲
by
jaas
7y ago
Licensing. Cisco has an all you can eat distribution license for the codec, so Firefox downloads from Cisco to piggyback on the Cisco license. If Firefox bundled it Mozilla would need a distribution license, and that's expensive.
144.
▲
How Let's Encrypt Runs CT Logs
(letsencrypt.org)
9 points
by
jaas
7y ago
|
1 comments
145.
▲
by
jaas
7y ago
You can read more here: https://community.letsencrypt.org/t/2019-11-17-autoincrement... Once a post-mortem is done there will be more information. Status.io is where we post status information, not long-form explanatio
146.
▲
by
jaas
7y ago
In case it's helpful for you to know, you can set up Bitlocker without a TPM. Google for instructions. It works well.
147.
▲
by
jaas
7y ago
Yes. There are many cheap food options in NYC and if they need to charge a bit more to pay a fair wage then so be it. Providing even cheaper prepared food off the backs of staff not getting paid a living wage is not ok.
148.
▲
by
jaas
7y ago
Seems like you're making quite the leap in assuming they can't buy effective replacement parts.
149.
▲
by
jaas
7y ago
"probably had bad memories" Speaking as someone who was at Mozilla at that time, you can change "probably had" to "definitely has". In hindsight I'd go ahead and call it a disaster. The X weeks release cad
150.
▲
by
jaas
7y ago
I don't think a percentage is the best way to think about it. There is a lot of variability in lifetimes and the time it takes to resolve issues is not related to the lifetime of the cert. Just pick a discrete number of days before exp
More ›