Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
time4tea
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
31.
▲
by
time4tea
6mo ago
Thanks for the info, but I'm a bit confused, sorry. The reason for hitch was that tls and caching are a different concern, and the current recommendation is to use haproxy, which also isnt integrated into varnish/vinyl. But you sa
32.
▲
by
time4tea
6mo ago
Thanks for this. You dont mention hitch though. Is that now deprecated/discouraged? It hasn't seen much action in a while, but maybe thats cos it works?
33.
▲
by
time4tea
6mo ago
just use the tool that does the job. TLS in -> hitch or caddy Cache -> varnish/vinyl TLS out -> haproxy Connect them up with Unix sockets, if you like.
34.
▲
by
time4tea
6mo ago
One of the most uplifting things I've seen for a long while. Amazing artistry and skills.
35.
▲
by
time4tea
6mo ago
Quite hard take an article seriously with this line in it: int hour = order.timestamp().atZone(ZoneId.systemDefault()).getHour(); (Because... does the hour you did the thing change according to where you run the code? no - it should use eit
36.
▲
by
time4tea
6mo ago
You can block CN, RU, SG, KR, and the level 3 from "ipsum" and the numbers go down a lot. People might not know about ipset - dont use individual rules in iptables. Nginx can reject easily based on country. geoip2 /etc/G
37.
▲
by
time4tea
7mo ago
Its because, although sometimes a delivery cyclist might be annoying, the reality is that there are almost zero KSI due to cyclist in any country worldwide. The rules designed for SUV dont actually make sense for human-scale transport.
38.
▲
by
time4tea
7mo ago
Its a spectrum, like all things. It crosses from everyone has the keys like in this example, to centralising a signing service using just software, or using something like KMS or CloudHSM, or YubiHSM, or going big and getting a HA Luna (or
39.
▲
by
time4tea
7mo ago
Private key material should not be kept in the clear anywhere, ideally. This includes on your dev machine, serialised in a store, in the heap of your process, anywhere. Of course, it depends on your threat environment, but the article did m
40.
▲
by
time4tea
7mo ago
From article: Private key redis key public static string PrivateKey(string kid) => $"{Root}:jwks:private:{kid}"; // full private material (short life)
41.
▲
by
time4tea
7mo ago
The key material is in redis? Seems odd. Should be in fips 140 hsm? Else key can be stolen easy. Maybe missed something.
42.
▲
by
time4tea
7mo ago
Copying production data to dev is widely regarded as being a bit of a bad idea, if the data contains any information that relates to a person or real life entity. Uncontrolled access, inability to comply with "right to be forgotten&quo
43.
▲
by
time4tea
7mo ago
Can confirm tape-to-tape worked 100%... it got a bit less reliable after copy-of-copy-of-copy though.
44.
▲
by
time4tea
7mo ago
Useless use of cat error/award But also | isnt a redirection, it takes stdout and pipes it to another program. So, if you want stderr to go to stdout, so you can pipe it, you need to do it in order. bob 2>&1 | prog You usually d
45.
▲
by
time4tea
7mo ago
Did anyone click through? That is a horrible website! Wow
46.
▲
by
time4tea
8mo ago
Sewage Map is great. You can get a great picture of the scale of the problem in the UK at https://top-of-the-poops.org It shows live and historic sewage dumps for the last 5 years for constituencies, beaches & shellfish area
47.
▲
by
time4tea
8mo ago
TBD - its pretty great... aligned also with continuous deployment: It allows you to get feedback from customers very fast. It allows you to improve the software very fast. It allows you to react to the feedback you just got very fast. Yes
48.
▲
by
time4tea
9mo ago
Its what commit messages are for! The diff tells the 'what' - no point in writing 'added method bob()' The message tells the why. You can bet that over time, the jiras, the issues and the confluence, slack, o365, will al
49.
▲
by
time4tea
9mo ago
Medium is mid.
50.
▲
by
time4tea
9mo ago
A lot of "regular expressions" are just text searches, or can be, and then you can use aho-corasick - which is implemented in many languages, and check a few regular expressions for the ones that really are. Sure, nor perfect, but
51.
▲
by
time4tea
9mo ago
The abstract says it really: "It was clearly a top-down decision" Many many things that are imposed like this will fail. Its not willful non-compliance even, its just that its hard for people to do things differently, while still
52.
▲
by
time4tea
9mo ago
Nice icon for Ced, aka Cygnus Ed, I'm thinking. Such a great and fast editor..
53.
▲
by
time4tea
10mo ago
Same guy invented CFCs. What a **! https://www.bbc.co.uk/sounds/play/p0m89fqk?partner=uk.co.bbc... Cautionary Tales: The Inventor who almost ended the world. BBC Sounds Podcasts Edit: add title Edit: typo
54.
▲
by
time4tea
10mo ago
There is also py-hole https://github.com/time4tea-net/py-hole/ You can run it on your openwrt router - see readme. Its just a python script that updates a file that dnsmasq uses. No funny business, you are in char
55.
▲
by
time4tea
10mo ago
The point really was that the unused method parameter should in almost all cases be removed, not that some trick should be used to make it seem used, and this is the wrong trick!
56.
▲
by
time4tea
10mo ago
a = a; // misra Actual code i have seen with my own eyes. (Not in F-35 code) Its a way to avoid removing an unused parameter from a method. Unused parameters are disallowed, but this is fine? I am sceptical that these coding stand
57.
▲
by
time4tea
10mo ago
Dec 2023: 96GB (2x48) DDR5 5x00 £260 today £1050 128GB (4x32 ) DDR5 5x00 £350 today £1500 Wut? Edit: formatting
58.
▲
by
time4tea
10mo ago
100% test coverage is a bit of a distraction. You can get to 100% by having tests that run the code, but have no assertions. You can run tests that test unimportant code just as much as super critical code. There's no differential betw
59.
▲
by
time4tea
11mo ago
"all your data are belong to us" ftfy
60.
▲
by
time4tea
11mo ago
Been saying this for years! All the security theatre! False urgency is red flag when it comes to emails and sms.. I dont see why people don't see the same when it comes to dependency alerts. The vast vast majority of alerts are totally
More ›