Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
profmonocle
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
31.
▲
by
profmonocle
3y ago
It's not just WordPress. A company I used to work for has tens of thousands of lines of jQuery code powering their enterprise SAAS product. A rewrite in a modern JS framework is just not going to happen unless it becomes absolutely nec
32.
▲
by
profmonocle
3y ago
I wonder if this is another unstated motivation for RTO? A much larger portion of my day-to-day conversations are over text than when I worked in an office. This has a huge upside - when I can't remember what someone said to me about s
33.
▲
by
profmonocle
3y ago
> IPv6 users now account for 45 per cent of Google visitors. It's hard to estimate how increasing percentage of users with IPv6 access is impacting the demand for public IPv4 addresses. My instinct is "not by a lot", but i
34.
▲
by
profmonocle
3y ago
> though it smells like the opposite of responsible disclosure He's not sharing the key itself, just proof that it's been leaked. Unlike disclosing a security issue without warning, this disclosure doesn't give any bad act
35.
▲
by
profmonocle
3y ago
> However, several CAs disliked having to revoke all those certificates, because it cost them staff time (and hence money) to do so. They went so far as to change their procedures from the standard way of accepting problem reports (email
36.
▲
by
profmonocle
3y ago
I worked with someone who was a Blizzard GM around when they rolled this out. Recovering stolen accounts was some absurdly large % of their customer service tickets. People would use the same email & password on WoW as on various shady
37.
▲
by
profmonocle
3y ago
Any CDN or shared hosting provider could implement this same standard. The only way it's truly useless is if a web site has its own IP address / small set of IP addresses. (Or if the user isn't using some form of DNS privac
38.
▲
by
profmonocle
3y ago
This is very wise of them. Rolling out new network features is always going to be something of an experiment, no matter how confident you are that the feature meets all the standards and works in all browsers and all OSes. You never know wh
39.
▲
by
profmonocle
3y ago
If I'm reading this right, blocking this would result in a denial of service rather than a security downgrade. And Cloudflare is so large that blocking all of its hosted sites would effectively look like a partial internet outage. That
40.
▲
by
profmonocle
3y ago
Cloudfront as well.
41.
▲
by
profmonocle
3y ago
c) nudge all the services your CI system interacts with to enable IPv6 to save their AWS users money. ;-)
42.
▲
by
profmonocle
3y ago
This is one thing Google Cloud does well - traffic to Google services bypasses NAT gateway, even over IPv4. I was curious how they do this, so I set up a service on Google Cloud Run that just echo'd the user's public IP address. W
43.
▲
by
profmonocle
3y ago
For me it's the ecosystem. I like my desktop browser syncing with my Android browser, and I really like built in chromecast support in my browser. I know that Firefox has a mobile version with sync, but last time I tried it, I didn
44.
▲
by
profmonocle
3y ago
> Imagine not having to share bandwidth with your neighbors. 6 GHz Wi-Fi ("Wi-Fi 6E") is going to be a big help with this. Many more channels than 5 GHz, and the higher frequency means it doesn't travel as far. As someone
45.
▲
by
profmonocle
3y ago
This solution wasn't perfect. Although things were mostly resolved pretty quick, it led to one of the longest threads I've ever seen on the LE forums: https://community.letsencrypt.org/t/help-thread-for-dst-ro
46.
▲
by
profmonocle
3y ago
Let's Encrypt is switching to a different root certificate (their own root certificate), which means that extremely outdated devices will no longer be able to access servers using Let's Encrypt certificates. The biggest concern
47.
▲
by
profmonocle
3y ago
> then 1/3 of those using Android would have encountered certificate errors while attempting to browse Let's Encrypt secured websites. It was 50% when they announced the plan initially. :-|
48.
▲
by
profmonocle
3y ago
Let's Encrypt killed the business model of selling domain-validated certificates for $10 a year. (Much more if you wanted a wildcard!) A company like RapidSSL or GoDaddy would never have cross-signed Let's Encrypt, unless they o
49.
▲
by
profmonocle
3y ago
Cross-signing a CA is many orders of magnitude more work than signing a single domain leaf cert. Sure, on a technical level the result is similar - a signed X.509 cert, just with the "CA" flag set to true, but it's a very d
50.
▲
by
profmonocle
3y ago
I remember when Let's Encrypt announced they were going to do this in summer of 2019. They listened to community feedback and postponed. I really want to shout out the LE team for how they handled this. Back in 2019 I was one of the lo
51.
▲
by
profmonocle
3y ago
A big difference is things like BASE jumping / cave diving / mountain climbing require active participation and skill from the people experiencing them. I assume most fatalities in these sports are because of mistakes made by thos
52.
▲
by
profmonocle
4y ago
I went to Home Depot last weekend wearing lounge pants with cartoon foxes on them, because that's what I was wearing at home and I didn't want to change. The benefits to me (saved time, comfortable) greatly outweighed the negative
53.
▲
by
profmonocle
4y ago
If you try to post a link to a mastodon profile, it will fail. Old links will bring up a "this site may be harmful" interstitial. Most large instances seem affected.
54.
▲
by
profmonocle
4y ago
The ratings drop-off is interesting: https://en.wikipedia.org/wiki/Westworld_(TV_series)#Ratings Seasons 3 and 4 had basically steady viewership through their whole runs, but each had way fewer viewers than the precedi
55.
▲
by
profmonocle
4y ago
> but very soon not having charging at apartment buildings will be a non-starter. My HOA has been discussing this and they came to the same conclusion - not installing chargers in the garage will make it very difficult to sell condos her
56.
▲
by
profmonocle
4y ago
It "works offline" in that you can create commits, view project history, and view every branch while offline. But fetching and pushing are such a common part of an engineer's day-to-day workflow that a poorly-timed outage of
57.
▲
by
profmonocle
4y ago
apple.com is just a redirect to www.apple.com, which does have IPv6. Apple has been slowly but surely adding IPv6 to their public network services - App Store and OS downloads come over IPv6, and their NTP resolver just added IPv6 support.
58.
▲
by
profmonocle
4y ago
Some middlebox in your network is probably mucking with something. Are you behind a corporate firewall?
59.
▲
by
profmonocle
4y ago
> There must be new IPv8 with backward compatibility with ipv4 How would you accomplish this? How could an IPv4-only system send a packet to an IPv8 address? IPv4 packets only have 32 bits for the destination and source IP addresses, the
60.
▲
by
profmonocle
4y ago
> At that point it's hard to see why anyone would continue pushing on Sunk cost fallacy?
More ›