Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jamiesonbecker
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
31.
▲
by
jamiesonbecker
2y ago
Very nice for a first project! (the clipboard integration is a nice touch) Seeing this passion is great! TBH, some of the negative comments here might be warranted: SSH is an especially important and tricky area to start in as your first
32.
▲
by
jamiesonbecker
2y ago
That's not what the article is talking about.
33.
▲
by
jamiesonbecker
2y ago
I replied below about our homegrown solution, but this is very cool! I wish it'd existed when we wrote Userify, but we'll definitely plan on it for our next app! Kudos for solving this so elegantly!
34.
▲
Github flags copy of own site policy as medical disinformation [fixed]
(github.com)
3 points
by
jamiesonbecker
3y ago
|
0 comments
35.
▲
by
jamiesonbecker
3y ago
Agreed, but Okta's still a $14B company.
36.
▲
by
jamiesonbecker
3y ago
(former Userify CEO, so probably a bit biased, but we only focus on SSH/sudo, so not too much overlap) I agree completely, except with the obvious stipulation that Google seems to be only SaaS and thus extremely high-value target, but
37.
▲
by
jamiesonbecker
3y ago
In our case, Python (because of the GIL) required us to have a single python process per core in order to take advantage of multiple cores, and so we needed Redis to maintain a unified memory state across all the cores, but Go can automatic
38.
▲
by
jamiesonbecker
3y ago
Exactly. Write-through cache is exactly how Userify[0] used to work for self-hosted versions. (when it was Python, we used Redis to keep state synced across multiple processes, but now that it's a Go app, we do all the caching and stat
39.
▲
by
jamiesonbecker
3y ago
The punchline is that the pip package is apparently malware.
40.
▲
by
jamiesonbecker
3y ago
Technical explanation: Userify synchronizes your team's SSH authorized_keys files. Using a web dashboard (red=root, green=user, white=none), change permissions or remove access for that user across all server/instances in that g
41.
▲
Show HN: Userify SSH Key Manager
(userify.com)
1 points
by
jamiesonbecker
3y ago
|
1 comments
42.
▲
by
jamiesonbecker
3y ago
And who can forget "peace, love, Linux" ;) https://www.zdnet.com/article/ibm-gets-100000-fine-for-peace...
43.
▲
by
jamiesonbecker
3y ago
Yes, certifying DB2 for Linux (back in 1998, https://slashdot.org/index2.pl?fhfilter=db2+linux , scroll to bottom) was an absolutely earth-shattering event that announced that Linux had arrived. I think that event (and of co
44.
▲
by
jamiesonbecker
3y ago
> There should be a way to try out your application and ideally a step-by-step instruction for how to self host it. To increase adoption provide people with Ansible, Chef, Docker, Cloud init and other pre-baked scripts so they can just a
45.
▲
by
jamiesonbecker
3y ago
We have done both of those, but results were meh. Seems like content is king. That's probably a good thing, since it's how we can effectively compete against competitors whose ad budgets run into 7 figures.
46.
▲
by
jamiesonbecker
3y ago
> even more enjoyable FEDRAMP audits ha, that's excellent. This is a really good point. We have already helped a lot of companies going through their SOC2 or ISO 27001, so that's an excellent suggestion. Not sure if companies w
47.
▲
by
jamiesonbecker
3y ago
Done, thanks Doreen! I'm mostly a lurker but btw really appreciated your comments and insights over the years, and your story is very inspirational.
48.
▲
by
jamiesonbecker
3y ago
Thanks Paul - yes, agreed! content marketing == SEO. Is there any way to do ads also or are ads basically dead?
49.
▲
by
jamiesonbecker
3y ago
Excellent advice. Lots of technical stuff on there already, but you're right, a blog would be useful. Maybe content stuff like "Stupid SSH tricks" too.
50.
▲
by
jamiesonbecker
3y ago
Fair point, and I appreciate this, but no, I'm intending it (mostly!) as an honest question.. How do we actually advertise to fellow HN'ers without irritating them. Most of our customers aren't journalists. They usually work
51.
▲
by
jamiesonbecker
3y ago
Looks like not a lot of significant changes. Seems like Debian has reached a sort of stable equilibrium, except for the occasional controversial sea-change (like systemd, but that was seven or eight years ago!). Are Linux distributions slow
52.
▲
Ask HN: How to Advertise to HN Users?
7 points
by
jamiesonbecker
3y ago
|
19 comments
53.
▲
by
jamiesonbecker
4y ago
Thanks Colin, this is great! The new unprivileged sshd -G to do auditing of the SSH configuration will be really useful when we start putting SSH daemon auditing into Userify.
54.
▲
by
jamiesonbecker
4y ago
ah, thanks! for future internet seekers: https://twitter.com/userify/status/1631047395889774592
55.
▲
Are microservices still what Google chooses for Google-scale problems?
(twitter.com)
1 points
by
jamiesonbecker
4y ago
|
2 comments
56.
▲
by
jamiesonbecker
6y ago
This slightly reduces risk, but it's inconvenient and probably better to just use agent forwarding as little as possible.
57.
▲
by
jamiesonbecker
6y ago
Agreed. But the reason why might be because agent caching was a lot more difficult 20 years ago. It was a pain, especially for new users; you had to start the agent and then launch a new bash session, until Daniel Robbins wrote GNU keychain
58.
▲
by
jamiesonbecker
6y ago
> vm per pod .. firecracker agreed. AWS gets a lot of flak, but open sourcing firecracker was really great. I'd really prefer to see us move toward vms instead of containers, even if we kept the same k8s abstractions. > .. covert
59.
▲
by
jamiesonbecker
6y ago
To say nothing of sidechannel attacks[0] People need to stop looking at containers as a cheap way to get security. They might be a more convenient way to get lots of apps running on a single machine, but they're not very secure. https
60.
▲
by
jamiesonbecker
6y ago
> I wanted to ensure that, should an attacker gain access to one of my servers, they can’t use that access to move onto any other computer I control... SSH agent forwarding is used to allow me to SSH from one server Unfortunately, that
More ›