Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
va1en0k
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
va1en0k
6y ago
It'd be probably easy to guess which communities I mean, but I'd rather not name names myself and hope someone supports me with a datapoint to offset my personal paranoia. Lately I encountered quite a lot of software - fringe and
2.
▲
by
va1en0k
6y ago
Nix is slowly becoming a major point of contention. In some communities, it’s already scary to even hint that one dislikes it.
3.
▲
by
va1en0k
6y ago
looking forward to reading the postmortem
4.
▲
Wages For Facebook
(wagesforfacebook.com)
1 points
by
va1en0k
13y ago
|
0 comments
5.
▲
by
va1en0k
13y ago
I really like Facebook's codemod.py for stuff like that: https://github.com/facebook/codemod It has something like automatic and manual modes, so you can check (and fix) every diff during the replacement
6.
▲
by
va1en0k
14y ago
You should try https://uploadcare.com/
7.
▲
Against Maintenance
(blog.uploadcare.com)
1 points
by
va1en0k
14y ago
|
0 comments
8.
▲
by
va1en0k
14y ago
Wow, thank you! We were wondering if it does the job :)
9.
▲
by
va1en0k
14y ago
For now, it can be only a separate table. In the future, of course, there're going to be buckets and everything, stay tuned! If you have some specific ideas about this in mind, my email is valentin@uploadcare.com
10.
▲
by
va1en0k
14y ago
Hey, Yes, we're working on it! :-)
11.
▲
by
va1en0k
14y ago
And, of course, you can use multiple different dj.FileFields for that in one model, if you need only a limited number of images.
12.
▲
by
va1en0k
14y ago
Ha-ha, I'm on it.
13.
▲
by
va1en0k
14y ago
Hi! We're working on several things you can do to avoid having a separate table, make sure to be in touch :-) Please continue to provide feedback, it's very valuable to us, thank you!
14.
▲
by
va1en0k
14y ago
Hi! Thank you, this was our goal (not to be similar with filepicker.io, but to have a clean, straightforward way to handle files). :-)
15.
▲
by
va1en0k
14y ago
please try again... we weren't ready for the prime time probably :-) works for us now
16.
▲
by
va1en0k
14y ago
Yeah. I'll edit my post to add your points, but I can't do it right now
17.
▲
by
va1en0k
14y ago
Why the hell is that advanced? Nice to know, though. Thanks!
18.
▲
by
va1en0k
14y ago
Well, having to use hacks for that is just plain wrong. I think we can consider this as bugs in these mainstream languages. Probably you could file them?
19.
▲
by
va1en0k
14y ago
You can use nginx as a proxy on your side for any APIs. Just proxy_pass it to the API, and listen only on the local side. It can provide caching and other stuff that way.
20.
▲
by
va1en0k
14y ago
I'd actually recommend just get the exact certificates you're going to work with. For example, if I'm using GitHub's API, it makes sense not to check all the chain, but just keep the GitHub's original cert.
21.
▲
by
va1en0k
14y ago
yep however, encrypted connection without this checks allows, for example, Man-In-The-Middle attack
22.
▲
by
va1en0k
14y ago
many servers are deployed using Linux which doesn't have any cert manager (see citation in the blog)
23.
▲
by
va1en0k
14y ago
Exactly. Security is something that should just work - arguably, the first thing with such requirement. Even though it simply can't just work in many cases, it should be as close to just-working as it can.
24.
▲
by
va1en0k
14y ago
better than /etc/hosts approach, yeah
25.
▲
by
va1en0k
14y ago
Probably they can. However, I don't know anything about using nginx that way. If you give me a link or something like that, I'll happily add it to my article. Or I'll just investigate later.
26.
▲
Do you check HTTPS certificates in your API clients?
(unfoldthat.com)
114 points
by
va1en0k
14y ago
|
72 comments
27.
▲
by
va1en0k
15y ago
yeah, I've been thinking about it. thank you for suggestion! I'm going to contact a lawyer as soon as it becomes reasonable
28.
▲
by
va1en0k
15y ago
I don't believe all of these problems can be reasonably fixed without worries about security and stuff. However, in my dream, the service becomes so awesome so it inspires new, better standards! :-)
29.
▲
by
va1en0k
15y ago
we have actually a much simpler hack: we just send file into an iframe we don't need anything back, because we generate uuid on the client
30.
▲
by
va1en0k
15y ago
ouch, thank you very much. I'll definitely think about dropping it
More ›