Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
kazuho
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
Stellite – a tool for developing client-server application using QUIC protocol
(github.com)
3 points
by
kazuho
10y ago
|
0 comments
2.
▲
Conformance test suite for BoringSSL and other TLS implementations
(ietf.org)
1 points
by
kazuho
10y ago
|
0 comments
3.
▲
IBM to open-source JIT & GC for CRuby
(github.com)
26 points
by
kazuho
11y ago
|
1 comments
4.
▲
by
kazuho
11y ago
It is true that RSA operation over IPC is slower than doing it internally. But the latter is by magnitudes faster than the former, therefore the slowdown is negligible in practice. You can find the numbers in the FAQ section of the linked
5.
▲
by
kazuho
11y ago
Wrong. You seem to have confusion between TLS handshakes and RSA operations. In OpenSSL (which is used by many servers including node.js, nginx), RSA operation is always synchronous. Therefore, using Neverbleed does not impose new limits r
6.
▲
by
kazuho
11y ago
I assume you are referring to Keyless SSL. https://blog.cloudflare.com/keyless-ssl-the-nitty-gritty-tec... For Keyless SSL, it is necessary to make RSA operations asynchronous, since the operations are requested over the TC
7.
▲
Show HN: Neverbleed – privilege separation engine for OpenSSL and LibreSSL
(github.com)
47 points
by
kazuho
11y ago
|
12 comments
8.
▲
Edward Snowden at IETF93
(youtube.com)
1 points
by
kazuho
11y ago
|
0 comments
9.
▲
by
kazuho
11y ago
Libh2o (the protocol implementation) support both libuv and evloop (our tailor-made event loop). The default event loop of libh2o is libuv, since libuv is popular and has bindings to other protocols (which you would need if you want to impl
10.
▲
by
kazuho
11y ago
Thank you for your comment. I doubt if anybody is using the mruby handler in production, considering the fact that functions necessary to modify the requests in the handler was committed this week :-)
11.
▲
H2O 1.4.0 released with support for forward secrecy
(blog.kazuhooku.com)
40 points
by
kazuho
11y ago
|
5 comments
12.
▲
Snowden Meets the IETF
(mnot.net)
204 points
by
kazuho
11y ago
|
76 comments
13.
▲
Show HN: H2O HTTP2 server 1.3 provides faster response to user, supports FastCGI
(blog.kazuhooku.com)
2 points
by
kazuho
11y ago
|
0 comments
14.
▲
Show HN: Jailing – super-easy chroot jail builder/runner for Linux
(github.com)
1 points
by
kazuho
11y ago
|
0 comments
15.
▲
by
kazuho
11y ago
Unfortunately the block was always found on the test machine. The test was conducted using a VM running running on a host on which the web browsers were run, so there were no noise or packet loss; the results were reproducible.
16.
▲
by
kazuho
11y ago
Thank you for the suggestion. In case of the benchmark, I run the server as a VM instance on the client machine so that the results would be reproducible (with network latency added by `tc qdisc` command). PS. PageSpeed is a really nice ser
17.
▲
by
kazuho
11y ago
As described in note 5, "the network chart of Chrome includes a 0.2 second block before initianting the TCP connection, which has been subtracted from the numbers written in this blog text". That explains the differences of the n
18.
▲
Show HN: Dependency-based prioritization makes HTTP/2 much faster than SPDY
(blog.kazuhooku.com)
67 points
by
kazuho
11y ago
|
8 comments
19.
▲
CURL as DSL
(shibukawa.github.io)
6 points
by
kazuho
12y ago
|
0 comments
20.
▲
by
kazuho
12y ago
Thank you for the comment. I think you did not understand my comment. It is true that the software is used for MITM. It is true that _Superfish_ is in the middle, decrypting the communication. OTOH the author claimed that it might be likel
21.
▲
by
kazuho
12y ago
why minus votes?
22.
▲
by
kazuho
12y ago
While the blogpost is interesting, I am skeptical of the author's claim that the recovered private key may be used for decrypting user data transmitted over the wire, since private keys cannot be used for encrypting data sent to someb
23.
▲
by
kazuho
12y ago
A new product by frsyuki, the original developer of Fluentd / MessagePack. His presentation slides can be found at http://www.slideshare.net/frsyuki/embuk-making-data-integrat...
24.
▲
Embulk – a plugin-based parallel bulk data loader
(github.com)
4 points
by
kazuho
12y ago
|
1 comments
25.
▲
OpenSSL 1.0.2 is now available, a major release
(openssl.org)
17 points
by
kazuho
12y ago
|
0 comments
26.
▲
Yrmcds – memcached compatible KVS with master/slave replication
(cybozu.github.io)
1 points
by
kazuho
12y ago
|
0 comments
27.
▲
H2spec – the conformance test tool for HTTP/2 servers
(github.com)
1 points
by
kazuho
12y ago
|
0 comments
28.
▲
by
kazuho
12y ago
Kind of off-topic, but I wonder when they will release OpenSSL 1.0.2. 1.0.2 includes important fixes (e.g. support for ALPN which is mandatory in HTTP/2, adds support for cross-root certificate validation).
29.
▲
by
kazuho
12y ago
Yes, assuming that you wanted to say: "web-browser connect to H2O via HTTPS".
30.
▲
by
kazuho
12y ago
Sorry for the confusion. HTTP and HTTPS (both version 1 and 2) are supported for downstream connections (i.e. connection bet. H2O and web browsers). Only plain-text HTTP/1 is supported for upstream connections (connection bet. H2O and
More ›