Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
mdeeks
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
15 ms
·
151.
▲
by
mdeeks
4y ago
TouchID unfortunately does not work with Firefox. Making it non viable for a large rollout. Yubikeys have the advantage of working with all browsers
152.
▲
by
mdeeks
4y ago
It’s too bad the user experience across devices sucks. The best experience by far is a yubikey nano since it is mostly permanently attached to your laptop. It’s always there and you just quickly tap it. Love it. Of course that doesn’t work
153.
▲
by
mdeeks
4y ago
We had rolling outages in the Bay Area in Alameda at least. They did two circuits at a time instead of one too. https://twitter.com/alamedamunipwr/status/156732197303394304...
154.
▲
by
mdeeks
4y ago
For personal use cases this the the best option by far IMHO. At work we deployed Tailscale company wide but we almost entirely use subnet routers and don't have Tailscale on each node. So it only gets you as far as an SSH bastion. We i
155.
▲
by
mdeeks
4y ago
This is great! I was just looking into buying some hardware for a Pi-hole but this is a much easier way to try it out. I think you can solve this limitation by passing in a static machine key. Redeploying or upgrading Pi-hole leads to
156.
▲
by
mdeeks
4y ago
My mistake! The docs I linked weren't clear about it.
157.
▲
by
mdeeks
4y ago
I think the OP means so that it can be used without an app and so it can be used with Apple's "Always On VPN" setup. Right now I believe "Always On VPN" only works with the OS supported VPNs: IKEv2, L2TP, SSL VPN, a
158.
▲
by
mdeeks
4y ago
The SSH agent symlink tip will not fully work. If you connect with a second SSH session and then disconnect it will point to a stale SSH_AUTH_SOCK that doesn't work. The only way I found to solve this is by having a prompt command that
159.
▲
by
mdeeks
4y ago
Is it possible to view video on the web? What about sharing videos or clips of videos? I assume you have to leave your Apple TV running 24/7 then? Also, can Android users use it?
160.
▲
by
mdeeks
4y ago
I'm somewhat more comfortable with making ACL changes because they have tests I can write in the ACLs themselves, plus I can specifically target users with new ACLs. I'm more concerned about making any DNS changes at all. Or addin
161.
▲
by
mdeeks
4y ago
Agreed this is a big limitation. The only way to do it is if you have secondary email address domains. Say mdeeks@company.com and mdeeks@company.team. You can create a separate tailnet for company.team but you also have to roll out addition
162.
▲
by
mdeeks
4y ago
It's a small icon in the top bar on macOS. You click login, it opens your browser, you Google/Okta auth in your browser using any factor you want (push, totp, yubikey), and you're done. Login literally takes seconds and there
163.
▲
by
mdeeks
4y ago
Because they didn't specifically set it up. That is just how Okta MFA over LDAP works: https://help.okta.com/en-us/Content/Topics/Directory/LDAP-in... Also people just forget. Some people may only n
164.
▲
by
mdeeks
4y ago
Probably the main concern around Google is for personal accounts where it sounds like people often find no way of recovering their accounts when Google thinks you did something bad. For business users that isn't as much the case since
165.
▲
by
mdeeks
4y ago
They offer custom SSO providers using SAML or OIDC https://tailscale.com/kb/1119/sso-saml-oidc/ Unfortunately they are locked behind Enterprise pricing because of the extra help and debugging needed to get th
166.
▲
by
mdeeks
4y ago
SSO is not the only method of authenticating things. They have auth keys specifically for the purpose of authing headless servers. e.g. sudo tailscale up --authkey tskey-abcdef1432341818 You can also apply an ACL tag to it so that it is n
167.
▲
by
mdeeks
4y ago
We just adopted it to consolidate multiple different OpenVPN installations. Why? * The Tailscale clients are dead simple and good quality (but not perfect). OpenVPN clients for mac and iOS are pretty bad. Onboarding OpenVPN users was a larg
168.
▲
by
mdeeks
4y ago
I get the tunnels. They are an order of magnitude cheaper (or more) even if they are tiny and single file. You could build 10 of them for the same cost as a regular tunnel and you could do it in less time. Makes sense to me. I do NOT get th
169.
▲
by
mdeeks
4y ago
It doesn't, but getting regular folks to use it at home is how they become known enough to get recommended for businesses. They have a post specifically about this: https://tailscale.com/blog/free-plan/ "
170.
▲
by
mdeeks
4y ago
Yeah I just found it. The hard map of Jira project to a Team makes it tough. We currently do 1 Org (hundreds of people) = 1 Jira project. Teams are mapped to Jira Components. I think without some level of customization on the sync we wouldn
171.
▲
by
mdeeks
4y ago
Good to hear! Any write ups on how the larger companies organize and manage their Workspace? Moving us from Jira/Confluence would probably take an act of god, but I could see teams going rogue and doing their internal planning in Linea
172.
▲
by
mdeeks
4y ago
I haven't ever seen it be as perfectly done as you've described. It is always shades of gray across teams and companies. They have most of what you described, but not uniformly across the company. e.g. versioning may be enabled, b
173.
▲
by
mdeeks
4y ago
RTO is so hard to state properly even with regular testing. If someone blows away a critical database, sure you can meet your published RTO. What if we lose 300 of our databases and need to copy snapshots from another region. AWS limits you
174.
▲
by
mdeeks
4y ago
The Real Engineering youtube link in one of the comments above mine in this thread has an example where putting it in the desert yields three times more than putting it on location in Germany. So there is a significant difference in some pl
175.
▲
by
mdeeks
4y ago
My understanding is that one of the big problems is transmission. It reduces the cost competitiveness when you have to factor in running many more high voltage transmission lines across the US. You need them to get the power from the desert
176.
▲
by
mdeeks
4y ago
I'm trying a demo of it and it looks like its mainly aimed at small to medium companies. There isn't enough hierarchy. The top level organization in Linear is a Workspace. As far as I can tell this should be what your entire compa
177.
▲
by
mdeeks
5y ago
Blockchain can help with this. We can record all defects on the blockchain and have tamper proof evidence of those who consistently fail to adhere to this RFC. It will encourage developers to write bug proof code everywhere. Employers can f
178.
▲
by
mdeeks
5y ago
It’s atrocious. We are using OpenVPN with Okta LDAP and you have to type “password,totpcode” as your password. Alternatively you can type just your password and wait for it to send a push to your phone while OpenVPN is completely blocked wa
179.
▲
by
mdeeks
5y ago
Zoqfot is definitely the joke ship. Completely worthless. I can do some damage with a Shofixti at least
180.
▲
by
mdeeks
5y ago
Earthling cruiser can take out an Ur-quan. It takes some tricky gravity and speed management but you can usually do it. I've never had much luck (or fun) with the Spathi. I guess you can just keep playing keep away and slowly butt gun
More ›