Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
skarap
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
61.
▲
by
skarap
11y ago
I'm one such sys admin. "Ok" with sysvinit, sort-of "like" systemd and "hate" supervisor. Btw: almost nobody considers the point about supervisor. A lot of clients' systems I manage are sysvinit or up
62.
▲
by
skarap
11y ago
Use a good password.
63.
▲
by
skarap
11y ago
It does. PAM (which is a central piece of software handling authentication on Linux) makes you wait 1 second after each failed attempt.
64.
▲
by
skarap
11y ago
`curl|bash` is just as secure, as downloading and executing a binary or as downloading and "make"-ing a tarball or downloading an .rpm or .deb file. And all these are absolutely ugly and definitely less secure than your distro
65.
▲
by
skarap
11y ago
To be honest, exposing host's /var/run/libvirtd.sock to a guest VM will have exactly the same consistencies.
66.
▲
by
skarap
11y ago
> Whereas the way Docker is using Linux containers doesn't seem secure enough... Which is totally expected, because docker tries to be useful to the largest user-base possible. It would be quite harder to use if didn't support
67.
▲
by
skarap
11y ago
Unfortunately it doesn't work in the reverse direction. Nobody will stop AVG (or any other company) from selling their paying customers too for additional profit.
68.
▲
by
skarap
11y ago
9 days. There is a bunch of commits, sure. But if nodejs team is really aiming for stability as was stated in the 4.0.0 announcement IMO they should give it longer time to stabilize.
69.
▲
by
skarap
11y ago
The thought of an eternal life obviously raises questions about the meaning of (eternal or not) life. Nobody has the right answer to those questions. That's why I think there will always be different (but equally valid) opinions about
70.
▲
by
skarap
11y ago
> these movements are not about everybody living much longer, only selected wealthy elite This is probably what concerns me the most. And in fact this is already reality. E.g. in my country if an average person discovers they have cancer
71.
▲
by
skarap
11y ago
Not only it is an inevitable fact of life, it (and death) is the single most important attribute of life. Especially in the case of humans aging and death limit the amount of damage one single person can do. I'm not saying it's ab
72.
▲
by
skarap
11y ago
More likely when problems arise you "team up" with someone who knows [almost] everything. And I agree with other posters that this isn't something new. That's the separation between senior and junior specialists (and no
73.
▲
by
skarap
11y ago
I like how strict Fedora Packaging Policy is regarding this ( https://fedoraproject.org/wiki/Packaging:JavaScript ). "If a JavaScript library typically is shipped as minified or compiled code, it must be compiled or
74.
▲
by
skarap
11y ago
While I agree that science is currently seeing only small part of the picture, I don't believe scientists have stopped trying to find explanations. And what is more important - it's very hard to judge if the explanation is rationa
75.
▲
by
skarap
11y ago
Every time I read something on quantum theory I can't help but notice how close to notion of magic it feels like. And I've studied physics in college. Some time ago I thought how strange these all would look to someone who had no
76.
▲
by
skarap
11y ago
At one company I worked at we named the two border routers after two hot girls from Sales. Not sure it's a best practice though.
77.
▲
by
skarap
11y ago
fatal: unable to access ' https://github.com/SOMETHING/' : TCP connection reset by peer. Yeah - that's pretty bad
78.
▲
by
skarap
11y ago
Because NoSQL!
79.
▲
by
skarap
11y ago
EM64T then.
80.
▲
by
skarap
11y ago
The slideshow fails to mention X86_64 (or, let's be honest, AMD64), which is at least as important as Itanium.
81.
▲
by
skarap
11y ago
> Key files encrypted with passwords are weak because an attacker who compromises the key file can then crack the password offline. If like to see them try with a 18 character long password. Btw: is there a way to convert a private key t
82.
▲
by
skarap
11y ago
Did some reading on ScaleFT website. To be honest - I'm a bit conservative especially when dealing with security. I don't believe you should "put your ssh keys in the cloud" to make them more secure. So I'm somewhat
83.
▲
by
skarap
11y ago
Can you explain on how it (new key for every use) could work? If you already have a system (e.g. similar to the current CA system) to tell the remote server to allow a newly generated key in, what purpose does the key serve here at all? Al
84.
▲
by
skarap
11y ago
I'm not sure I get it. Looks like the idea is to protect form private key compromise. In which case why is having N instead of one private keys sitting in the same directory more safe? It's not that you are more likely to leak the
85.
▲
by
skarap
11y ago
He didn't tell him to fuck off, he just told he doesn't owe him anything (not that it's a good thing to say).
86.
▲
by
skarap
11y ago
I agree but partially. We are not talking about some complex interactions between multiple components which lead to a security vulnerability. This is some trivial stuff like "don't give your passwords to anybody" or "don
87.
▲
by
skarap
11y ago
I really do - round and tall. This was supposed to be a joke, but I guess I don't know how to interact with HN community yet.
88.
▲
by
skarap
11y ago
Woohoo, another phallic gadget, almost exactly looks like a Mac Pro!
89.
▲
by
skarap
11y ago
> once you can query instance meta data or obtain an SSH key, it's game over It's usually the public SSH key which is stored in instance metadata. IAM roles/STS is much more scarier in this case.
90.
▲
by
skarap
11y ago
Yet another service discovered which was built/deployed with no regard for security whatsoever. I'm beginning to realize - this is the norm. Security is the least important thing for most of the IT companies. I guess the DevOps tr
More ›