Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
nrr
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
151.
▲
by
nrr
2y ago
No, I've never worked for Cisco, but I did have my own firewall product at one point. (: That's another story for another day though. Plan 9 is, at its core, still an ambient authority system, and I will never try to misrepresent
152.
▲
by
nrr
2y ago
Yeah, that was the subtext that I left unsaid through this. rfork(RFNOMNT|RFCNAMEG) got you both a completely clean namespace and a namespace that denied additional mounts (as well as dereferencing pathnames beginning with #, as in #s). The
153.
▲
by
nrr
2y ago
I strongly suspect that a good GUI implementation will look like how file choosers on RISC OS work, and the command line environment might be inspired by both Plan 9's namespaces and how data definitions (and their accompanying data co
154.
▲
by
nrr
2y ago
"but can you even pass a file descriptor across a file descriptor in plan9 the way scm_rights lets you do in bsd and linux?" No, the mechanism was even simpler. We had the #s device (usually bound as /srv) for this, whereby y
155.
▲
by
nrr
2y ago
Right. On Plan 9, this kind of composition usually took the form of rfork()ing to inherit the parent process's namespace, mutating it in a handful of ways deemed useful, and then exec()ing the new image. The mechanics are clear to me,
156.
▲
by
nrr
2y ago
My experience with this on Plan 9 (while not an object-capability operating system, it gets IMO most of the way there in the ways that matter in order to experiment) was that it worked a treat for long-running services, but it was a little
157.
▲
by
nrr
2y ago
The thing that still puzzles me is how we determine which workload gets which capabilities. On Plan 9, I took a lot of glee in rfork()ing my way into a tightly curated namespace that disallowed subsequent use of mount and bind, but that was
158.
▲
by
nrr
2y ago
Sorry, I was imprecise. If a principal starts a new process that indiscriminately inherits the same capabilities of its parent, the security posture is no different from what we have today.
159.
▲
by
nrr
2y ago
I don't disagree that the prevailing ambient authority model is less than ideal, but I'm left scratching my head at how capability security would solve the more acute problem we're facing. Of particular note, the kinds of ran
160.
▲
by
nrr
2y ago
As someone who straddles the Austrian and Swabian ways of doing things, if I had to pinpoint the true underlying German fetish, it's one of avoiding risk. The bureaucracy and obsession with paper-based processes really do stem from tha
161.
▲
by
nrr
2y ago
I haven't looked too deeply into how EDRs are implemented on Linux and macOS, but I'd wager that CrowdStrike goes the way of its own bit of code in kernel space to overcome shortcomings in how ETW telemetry works. It was never mea
162.
▲
by
nrr
2y ago
Yeah, that's about right. The most insidious part of this is when there are entire swaths of infrastructure in place that circumvent the usual code review process in order to execute those configuration changes. Boolean flags like your
163.
▲
by
nrr
2y ago
Writing from the SRE side of the discipline, it's commonly a configuration change (or a "flag flip") that ultimately winds up causing an outage. All too seldom are configuration data considered part of the same deployable sur
164.
▲
by
nrr
2y ago
Pay for what exactly though? Cybersecurity incidents result in material loss, and someone somewhere needs to provide dollars for the accrued costs. Reputation can't do that, particularly when legal liability (or, hell, culpability) is
165.
▲
by
nrr
2y ago
Not likely, not unless the disk is also not BitLockered.
166.
▲
by
nrr
2y ago
Here you go. < https://www.reddit.com/r/crowdstrike/comments/1e6vmkf/commen... >
167.
▲
by
nrr
2y ago
I don't have a technical writeup to offer, but your assessment around the BSOD seems correct enough. Without having an affected machine but knowing how NT loads drivers like this, I'd hazard a guess that the OS likely isn't e
168.
▲
by
nrr
2y ago
Not quite. Insurance is a product that provides compensation in the event of loss. Deploying CrowdStrike with an eye toward enterprise risk management falls under one of either changing behaviors or modifying outcomes (or perhaps both).
169.
▲
by
nrr
2y ago
"Too bad TimApple has no sense of how to do anything other than chase growth …" I feel like this is more emblematic of the wider industry trend than Apple's own strategy that they chose to impose on us. The focus shifted very
170.
▲
by
nrr
2y ago
I would argue that understanding the pathological behavior in something is critical to developing an accurate intuition for it, yes. These cases don't show up often, but when it comes to having a good sense of smell for when part of a
171.
▲
by
nrr
2y ago
This is true (i.e., the struggle is productive) only if the struggle allows for students to develop the intuition of the subject required for synthesis. Even then, before you get to that point, you have to prime students for it. Throwing th
172.
▲
by
nrr
2y ago
One person's heresy is another person's sickos.png. This sounds exactly like my favorite sort of object code vivisection.
173.
▲
by
nrr
2y ago
The odd part is that, at its core, Windows still is file-based. Managing it isn't, but anyone who's gone digging around in NT's Object Manager will be familiar with using CreateFile() to get a handle for manipulating things t
174.
▲
by
nrr
2y ago
Not quite. What I'm more alluding to is something like, say, rewriting smss.exe and csrss.exe to be CLR programs (along with the implication of porting the CLR to the Native API) and giving PowerShell access to their internals directly
175.
▲
by
nrr
2y ago
This is all technically true, but the thesis is that PowerShell makes it all horribly clumsy to use. From the perspective of the Lisp Machine or, hell, even the AS/400, PowerShell (and, while we're here, the CLR) doesn't quit
176.
▲
by
nrr
2y ago
It's less of a problem in today's Linux monoculture, but I actually initially learned Perl and Tcl precisely because of subtle incompatibilities between systems for tools like sed and awk, not to mention utilities like ps and tar.
177.
▲
by
nrr
2y ago
I use a build system (and means of running project tasks) other than make, and I nonetheless usually include a Makefile in the root that does nary more than say something to the effect of, "What you're likely looking for is elsewh
178.
▲
by
nrr
2y ago
That's spelled `dotnet publish -r ${GOOS}-${GOARCH}` with the new ahead-of-time (branded Native AOT) compilation features installed and enabled. It isn't without a whole list of caveats if you're used to Go's way of doin
179.
▲
by
nrr
2y ago
Oh, this looks like a real gem. Thank you for making my day today.
180.
▲
by
nrr
2y ago
I'm still holding out for a Tcl port to the CLR (StrongTcl? IronTcl? Tcl#?) for exactly this reason.
More ›