Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
luizfelberti
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
15 ms
·
61.
▲
by
luizfelberti
6y ago
I'm confused, as you don't seem to be replying to any point I've made... > ~1.5x reed solomon is the default these days, again, unless you need read throughput performance I'm not surprised that Reed-Solomon is the &q
62.
▲
by
luizfelberti
6y ago
Everything you just said is on point, but I think that's an orthogonal thing to what the paper is going for. Hot data should absolutely have a fully-materialized copy at the node where operations are made, and an arbitrary number of re
63.
▲
by
luizfelberti
6y ago
Oh I am absolutely aware that erasure codes are an old thing, Reed-Solomon codes exist since the 1960's, but this is not simply a trivial application of erasure coding to a storage system: erasure codes alone don't provide the sam
64.
▲
by
luizfelberti
6y ago
CDs (remember those? lol) also implemented Reed-Solomon erasure codes for the stored data, erasure codes in storage systems aren't new at all, and that's not what this paper is about. I actually found out about this paper because
65.
▲
by
luizfelberti
6y ago
For me, it was "Erasure Coding in Windows Azure Storage" from Microsoft Research (2016) [0] The idea that you can achieve the same practical effect of a 3x replication factor in a distributed system, but only increasing the cost o
66.
▲
Ask HN: What's the best paper you've read in 2020?
705 points
by
luizfelberti
6y ago
|
192 comments
67.
▲
by
luizfelberti
6y ago
The ∅ symbol (U+2205 in Unicode), even though it's inspired by, is not the same as the letter Ø (U+00D8 in Unicode), and has been, for almost a century already, the "correct" way to represent an empty set in mathematical nota
68.
▲
The Theory of Reconstruction Attacks (Differential Privacy)
(differentialprivacy.org)
1 points
by
luizfelberti
6y ago
|
0 comments
69.
▲
by
luizfelberti
6y ago
I think this means that the Linux kernel only doesn't support the proprietary vendor-specific ASIC offloading mechanisms. Linux already supports offloading even arbitrary eBPF/XDP programs to compatible NICs, which is already exte
70.
▲
by
luizfelberti
6y ago
This has been one of the biggest pain points for me when using Rust, and I think this is a bad philosophy. Leaving the implementation of basic functionality, that everyone needs in any language if you're trying to do anything even slig
71.
▲
by
luizfelberti
6y ago
The people from Cilium (the k8s service mesh) launched this website[0] recently that lists a few tools from the landscape, and I also had the same pleasant surprise to find these things out this week I thought we were still tied to `bcc` an
72.
▲
by
luizfelberti
6y ago
Another good reason for having unbound is enabling internal DNS resolution for things that are in the VPN. For example, resolving build-server.mycompany to the in-VPN IP of your build server, and so on.
73.
▲
by
luizfelberti
6y ago
Not really, physical access to the machine violates pretty much any chain of trust you can conceivably have for most (all?) security models. Federated distributed computing relates to what you're thinking of, but it is an extremely dif
74.
▲
by
luizfelberti
6y ago
You're delirious. Setting aside the fact that BitTorrent came about long before BitCoin was a glint in Satoshi's eye, it's still massively used for content distribution, on top of being a foundational technology to several in
75.
▲
by
luizfelberti
6y ago
I was partly aware of many of these, and like I said I'm not 100% sure if this really is the culprit. Your comment is a solid reference on this topic though (better than most of what's on SO), but here's a few comments regard
76.
▲
by
luizfelberti
6y ago
I'll test that out later today/tomorrow, thanks! I guess the questions I'd have regarding this that I'd need to validate would be: - Does this setting persist across reboots? - Does it stop phoning-home altogether, or wi
77.
▲
by
luizfelberti
6y ago
I used to use Moom and then Divvy, but switched over to a lighter weight and OSS alternative: Rectangle [0], which is a successor to (now unmaintained) Spectacle Easier to automate setup through Homebrew, no need to store/activate the
78.
▲
by
luizfelberti
6y ago
Does anyone have a tip to keep macOS from phoning home when you run unsigned binaries? I almost locked up my entire computer this week, presumably because of this... here's the story for that: I had setup unbound listening on 127.0.0
79.
▲
by
luizfelberti
6y ago
You might be able to find it out without installing Quartz Debug by using the system's DTrace probes, most of Apple's stuff already comes pre-instrumented. Haven't tested or validated that it can be done though, just an idea.
80.
▲
by
luizfelberti
6y ago
For work and "power usage", Fedora Workstation has the best "Ubuntu" experience outside of Ubuntu I'd say. You can also go for Fedora Silverblue to get some NixOS-like powers with your Fedora (I expect that to be
81.
▲
by
luizfelberti
6y ago
> Which hash you choose slightly tweaks the margin Yes, but only if you assume that an adversary's power is stable over time, and that it's safe to amortize the risk over an extended period of time, both of which are wrong as
82.
▲
by
luizfelberti
6y ago
I originally used categorically to mean "unambiguously explicit and direct" , but adding to what you said (with which I mostly agree), Scrypt actually does provide a categorical increment to security by being ASIC-resilient. Th
83.
▲
by
luizfelberti
6y ago
So nothing but FUD and ignorance, as expected... If you wanna get angry at Google, get angry at removing URLs from Chrome, not at the good things that they do. > QUIC is what happens when corporations define standards so their own servi
84.
▲
by
luizfelberti
6y ago
lol in what way am I being hand wavy? It was a sincere question, and the use case you're pointing to is very different than what the post was discussing That being said, for these cases you could use Argon2 which is mostly (entirely?)
85.
▲
by
luizfelberti
6y ago
Agreed, one is not always easily available, and for those cases any of Scrypt, Argon2, and Bcrypt are fine (but preferrably in that order :) If you're on Golang, Rust, or C though: leverage your options!
86.
▲
by
luizfelberti
6y ago
While I agree with the sentiment of what you're saying, I take issue with this part specifically: > For the vast majority of developers, bcrypt, scrypt, argon and PBKDF2 provide functionally equivalent security 1) The "vast
87.
▲
by
luizfelberti
6y ago
Password hashing is done server side, the client only needs to worry about TLS. Are you thinking about some specific use case? Also, it's not a good idea to base your security parameters on the compute power of the most underpowered de
88.
▲
by
luizfelberti
6y ago
Step 1) Use Scrypt instead Step 2) There is no step 2
89.
▲
by
luizfelberti
6y ago
Hard to take someone saying what you're saying seriously, when this is given in such a crass and uninformative manner QUIC is a vastly superior transport to TCP in every technical regard. What exactly makes it a "purely corporate
90.
▲
by
luizfelberti
6y ago
I'm well aware of these things actually lol, it's pretty obvious that if the protocol is built on top of UDP it'd need to implement some FSM to handle retransmission and flow control > A lot of the challenges that are par
More ›