Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rodlette
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
61.
▲
by
rodlette
3y ago
See RFC5507: "Why Adding a New Resource Record Type Is the Preferred Solution" DNS providers should support a wide range of RR types, and domain owners should vote with their NS records. See https://github.com/Stac
62.
▲
by
rodlette
3y ago
Consider including SSH known hosts in your cfgmgmt. I have all my machines' public keys, and all major git forge's SSH keys in my git-managed cfgmgmt repo. For NixOS users: https://search.nixos.org/options?channel=
63.
▲
by
rodlette
3y ago
I agree with most of the mitigation suggestions. For high risk targets, consider layering an additional auth mechanism that doesn't rely on trusted CAs: Tor onion services, SSH, or Wireguard. > All issued SSL/TLS certificates a
64.
▲
by
rodlette
3y ago
I considered just writing them, but I was concerned that I'd make a mistake, or be too lazy to do regular test decryptions/restores.
65.
▲
by
rodlette
3y ago
Good point. Thanks!
66.
▲
by
rodlette
3y ago
For backup purposes, I'd like to print some encrypted secrets as QR codes. I don't have much room for a typical printer. Could a small thermal printer print a QR code that encodes 500-1000 bytes? If not, anyone know of a decent, d
67.
▲
by
rodlette
3y ago
AFAIK, Pine64 the company don't do any (?) upstreaming. Upstreaming for Pine64 devices is done by the community: https://lore.kernel.org/all/?q=pine64+rk3399+add QuartzPro64 was recently mainlined by megous. I don