Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
mpaepper
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
151.
▲
Monte Carlo for better time estimates of your work
(paepper.com)
1 points
by
mpaepper
5y ago
|
0 comments
152.
▲
Axyl – Linux distro for tiling window managers
(axyl-os.github.io)
4 points
by
mpaepper
5y ago
|
1 comments
153.
▲
An analysis of 7M NFT transactions on the Ethereum blockchain [pdf]
(github.com)
1 points
by
mpaepper
5y ago
|
0 comments
154.
▲
Signal influential sources by putting money on them via cryptocurrencies
(ideamarket.io)
3 points
by
mpaepper
5y ago
|
0 comments
155.
▲
Deep learning app scans Lego bricks to find out what you can build
(fastcompany.com)
2 points
by
mpaepper
5y ago
|
0 comments
156.
▲
by
mpaepper
5y ago
Alternatively: "Mosquitos hate this trick"
157.
▲
Pyramidal Convolution: Rethinking Convolutional Neural Networks for Vis. Recogn
(paepper.com)
1 points
by
mpaepper
6y ago
|
0 comments
158.
▲
by
mpaepper
6y ago
Nice, looks like they pretty much automated what I described in my article as a service.
159.
▲
by
mpaepper
6y ago
Great question, I haven't tested this, yet. One thing I'm sure would work if the user has generated two separate public-private key pairs and you sign two different certs. Not so sure about having several certs for the same key. I
160.
▲
by
mpaepper
6y ago
Of course, if your CA is taken over, you are in big trouble. However, the attack vector here is much lower given you can have this on a local machine which is not even connected to a network if you like. The single point of failure for cent
161.
▲
by
mpaepper
6y ago
Thank you, I agree that this should be avoided as much as possible in general. Actually, in my company, we are pushing the logs to an external service, so I guess that line I wrote there was not totally thought out. ;) However, it still mig
162.
▲
by
mpaepper
6y ago
What about having different access roles for certain people to certain servers? Is that covered in the NixOS approach as well? Sounds interesting!
163.
▲
by
mpaepper
6y ago
The certificates have an expiration date, so if something goes wrong on that end at least it will expire after some time. Also, this takes care of role-based access - this you might not have with an authorized_keys file solution?
164.
▲
by
mpaepper
6y ago
It's the one I submitted: https://www.paepper.com/blog/posts/how-to-properly-manage-ss...
165.
▲
by
mpaepper
6y ago
A while ago, I asked here: "Ask HN: What do you use for SSH key management of teams?" ( https://news.ycombinator.com/item?id=24157180 ) And in this blog entry I am summarizing what I learned and what I think is a ve
166.
▲
How to properly manage SSH keys for server access
(paepper.com)
373 points
by
mpaepper
6y ago
|
182 comments
167.
▲
What the Heck Is ~~ In JavaScript?
(paepper.com)
3 points
by
mpaepper
6y ago
|
0 comments
168.
▲
by
mpaepper
6y ago
I am, but my question is how to control for people still adding keys in addition to having logged in with a certificate.
169.
▲
by
mpaepper
6y ago
Thanks for your answer. Of course, in general, the users are not evil. However, I am thinking about the security concerns when someone is leaving the company. Maybe for some reason they turn evil and decide to place their key to still have
170.
▲
Ask HN: Avoid Manipulation of .ssh/Authorized_keys
8 points
by
mpaepper
6y ago
|
11 comments
171.
▲
Ask HN: What do you use for SSH key management of teams?
31 points
by
mpaepper
6y ago
|
32 comments
172.
▲
Visual Paper Summary: Accurate, Large Minibatch SGD: Training ImageNet in 1 Hour
(paepper.com)
3 points
by
mpaepper
6y ago
|
0 comments
173.
▲
Reactive snake in ~200 lines of code
(github.com)
1 points
by
mpaepper
6y ago
|
0 comments
174.
▲
PyTorch Model in Production as a Serverless REST API
(paepper.com)
3 points
by
mpaepper
6y ago
|
0 comments
175.
▲
Build Your Own JavaScript Browser Game in 5 Minutes
(paepper.com)
3 points
by
mpaepper
6y ago
|
0 comments
176.
▲
Visualizing Neural Networks with the Grand Tour
(distill.pub)
2 points
by
mpaepper
6y ago
|
0 comments
177.
▲
Look at what your neural network is seeing
(paepper.com)
3 points
by
mpaepper
6y ago
|
0 comments