Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
phlo
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
23 ms
·
181.
▲
by
phlo
13y ago
You're attacking the problem from the wrong angle. The fault lies with whomever builds the application /interfacing/ with the DB, not whomever manages the database. In an application you may need to read user-selected data fr
182.
▲
by
phlo
13y ago
Well, only two typical use cases will lead to owning a hard drive filled with (pseudo-)random noise: secure deletion or encrypted data. If you used either, you've got something to hide and it's a well-known fact only terrorists an
183.
▲
by
phlo
13y ago
In order to provide any forward secrecy, the PFS keys are generated randomly for each session. They are not derived from the certificate holder's RSA keys. A snooping agency holding the private key of, say, Google would still need to i
184.
▲
by
phlo
13y ago
Azure is , as far as I'm aware, still run by Microsoft (a US company).
185.
▲
by
phlo
13y ago
Done right, contract-to-hire seems like a great solution to me. It's actually a chance for the employer and employee to get to know each other and make sure their mutual expectations match. Assuming the position were to be salaried at
186.
▲
by
phlo
13y ago
I'm way late to the party, but if you still have an invite left, I would love to get it. Email in profile. Thanks!
187.
▲
by
phlo
13y ago
If you liked "How Complex Systems Fail", you may be interested in "Normal Accidents" [1]. It's basically the long-form complete version of the paper you mentioned and packed with interesting examples. [1] http:
188.
▲
by
phlo
13y ago
As far as I can tell, Flights doesn't "officially" support flights from Switzerland yet. If you try to select ZRH as your only departure airport, you'll get an error message stating as much. If you were recommended flyin
189.
▲
by
phlo
13y ago
STUN[1] does a very similar thing, including some trickery to get through all kinds of plastic boxes messing with your packets. AeroFS[2] is another, interesting approach. It's basically a dropbox clone where all data remains on the us
190.
▲
by
phlo
13y ago
The data will be part of my bachelor's thesis, to be published in July. Well, pseudo-published, as such theses tend to end up. Ping me at ycombinator at y dot ly for your choice of either raw (collected using Qualys' SSL Server Te
191.
▲
by
phlo
13y ago
Since you mentioned banks, I just need to chime in: I recently (May, June) surveyed 100 european banks (in Germany, Switzerland, France, Italy, Austria), roughly selected for the 20 specimens with the greatest total assets per country. None
192.
▲
by
phlo
13y ago
With regard to your latter question, [1] gives a good overview on PFS in TLS. You'll need to exchange keys using (EC)DHE, essentially. As for subpoenaing keys: Most CAs will allow for you to generate your key pair and certificate signi
193.
▲
by
phlo
13y ago
If we assume the adversary controls all network traffic as well as all Tor exit nodes but the would-be whistleblowers and the New Yorker's systems are out of bounds, a valid solution is still possible: - The plainly accessible page needs to
194.
▲
by
phlo
13y ago
Not all that off-topic. For your example, you should get a certificate made out to ("Subject CN") example.com or * .example.com, then list both the wildcard and the subdomainless entry as Subject Alternative Names. Bing is doing something
195.
▲
by
phlo
14y ago
As batiste suggested below, some countries do have a mandatory army service. As someone who served a bit more than a year in just such an army, let me point out how paying taxes in cash is vastly superior a solution to paying in work: I am
196.
▲
by
phlo
14y ago
And here's why those points don't matter: 1) The debate is centered on Google News. As far as I know, News is one of the few services where Google haven't, don't and won't show ads. "Systematic clipping of one or two sentences [...] for the