Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jamilbk
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
jamilbk
2y ago
I may not be fully understanding the question, but I think you may be referring to DNS-based resources? Those will allow you to manage access to an app or service by its DNS name (wildcards supported). You can also use IP or CIDR resources
32.
▲
by
jamilbk
2y ago
For simple access needs, in Firezone you would likely configure a CIDR resource and grant the Everyone group access to it, which mimics the setup of a traditional VPN. It is a couple extra clicks, though.
33.
▲
by
jamilbk
2y ago
Thanks! We're similar to Twingate in how we model resources, but our policy system has optional conditions you can apply to restrict access further, which works a bit differently. We expect to continue building in that area over time.
34.
▲
by
jamilbk
2y ago
Good question! The main difference is how access is managed. Instead of configuring ACLs, you define policies which are a 1:1 mapping between a user group (manually created or synced from your IdP) and the resource you want to allow access
35.
▲
Launch HN: Firezone (YC W22) – Zero-trust access platform built on WireGuard
115 points
by
jamilbk
2y ago
|
89 comments
36.
▲
Ask HN: What is the state of other types of AI?
6 points
by
jamilbk
2y ago
|
2 comments
37.
▲
by
jamilbk
2y ago
From the diff introducing the bug [1], the issue according to the analysis is that the function was refactored from this: void sigdie(const char *fmt,...) { #ifdef DO_LOG_SAFE_IN_SIGHAND va_list args; va_start(args, fmt);
38.
▲
Improving reliability for DNS Resources
(firezone.dev)
1 points
by
jamilbk
2y ago
|
0 comments
39.
▲
UniFFI: A multi-language bindings generator for Rust
(github.com)
3 points
by
jamilbk
2y ago
|
0 comments
40.
▲
by
jamilbk
2y ago
The article provides a very detailed exploration of all of the fun challenges you can face designing FFIs with Rust, but there's a good chance you can "get away" with simpler approaches if you think ahead a bit. In our case,
41.
▲
Firezone (YC W22) Is Hiring a Senior Rust Engineer (Mountain View)
(ycombinator.com)
1 points
by
jamilbk
2y ago
42.
▲
by
jamilbk
2y ago
I hope this will allow running NetworkExtensions in VMs as well. As it stands today, it's only possible to run NetworkExtensions on physical Apple hardware, making it a pain to apply any modern CI-based workflow to them.
43.
▲
by
jamilbk
2y ago
The author's conclusion to question of "are timing attacks viable?" seems to be... it depends on the nature of the language or library. Are most devs going to understand these nuances though? In the time it takes to research
44.
▲
by
jamilbk
2y ago
Just a quick note -- 1.0 goes a little further and rotates the WireGuard keys upon each auth session, so the private key never leaves the tunnel process memory. You need the Firezone client for that, though.
45.
▲
VMware's end user computing group spun out to Omnissa
(omnissa.com)
2 points
by
jamilbk
2y ago
|
0 comments
46.
▲
How DNS Works in Firezone
(firezone.dev)
6 points
by
jamilbk
2y ago
|
0 comments
47.
▲
by
jamilbk
3y ago
That's neat! But how is everyone testing their Swift codebases? We've found the story around testing to be... lacking. The [docs]( https://developer.apple.com/documentation/xctest ) on the subject are pretty ba
48.
▲
by
jamilbk
3y ago
Looks neat! We could use something like this for profiling certain codepaths in our Android client. Any plans to support native libraries built with the NDK as well?
49.
▲
Firezone (YC W22) is hiring a Rust contractor to build a Windows client
(ycombinator.com)
1 points
by
jamilbk
3y ago
50.
▲
Secure share: Open-source secure share for devs
(github.com)
2 points
by
jamilbk
3y ago
|
0 comments
51.
▲
by
jamilbk
3y ago
Imagine if e-ink displays were as advanced as our current luminous displays: - Outdoor offices would be possible (weather permitting). Levels of Vitamin D deficiency, rates of burnout, and spread of airborne illness would all plummet. - Ent
52.
▲
Gadgetish: Your Android phone as a smart lock for Windows
(gadgetish.com)
1 points
by
jamilbk
3y ago
|
0 comments
53.
▲
Firezone (YC W22) is hiring Rust engineers to build secure networks
(ycombinator.com)
1 points
by
jamilbk
3y ago
54.
▲
Firezone (YC W22) is hiring Rust engineers to build secure networks
(ycombinator.com)
1 points
by
jamilbk
3y ago
55.
▲
Firezone (YC W22) is hiring Rust engineers to scale WireGuard through firewalls
(ycombinator.com)
1 points
by
jamilbk
3y ago
56.
▲
by
jamilbk
3y ago
This is great advice. The best evidence you can perform a job is demonstrating that you’ve done it in the past.
57.
▲
Dave Chapelle rails on San Francisco at surprise show
(sfgate.com)
7 points
by
jamilbk
3y ago
|
5 comments
58.
▲
Firezone (YC W22) is hiring Elixir and Rust engineers
(ycombinator.com)
1 points
by
jamilbk
3y ago
59.
▲
by
jamilbk
3y ago
Congrats on the launch! How long does a typical engagement take? Would it be possible to invite the tester to our Slack workspace to help resolve issues identified?
60.
▲
Firezone (YC W22) is hiring Rust systems engineers (SF / US remote)
(ycombinator.com)
1 points
by
jamilbk
3y ago
More ›