Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
weddpros
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
61.
▲
by
weddpros
1y ago
Sure! yet automation only solves one problem (until it doesn't). Inventory and control/accountability is still needed at scale, and automation doesn't provide it.
62.
▲
by
weddpros
1y ago
You could see expiring certificates as a chance to examine your security regularly: protocols and ciphers change, bugs are fixed, vulnerabilities are discovered and fixed. Setup and forget is never good for security. From what I see with ss
63.
▲
by
weddpros
1y ago
I think it's more a matter of scale. If you need SSL certificates for hundreds of appliances and you want to manage it, rather than hack it, that's the product you need.
64.
▲
by
weddpros
1y ago
There's a scale beyond which the real challenge isn't issuing a certificate. I see organisations with thousands of SSL certificates, and their struggle is real. Even reputable companies with huge teams have their certificates expi
65.
▲
by
weddpros
1y ago
Seeing how people are worried about third parties issuing certificates, I encourage using a tool to monitor CT Logs. It really makes the fog of war disappear around your certificates. https://crt.sh for point in time checks, ht
66.
▲
by
weddpros
1y ago
It's down
67.
▲
by
weddpros
1y ago
The CT Log scanning infrastructure is cloud based (rather bare metal actually), the application db, service, and Host scanning can be on-prem. An exceptional enterprise customer could convince me to offer a 100% on-prem solution
68.
▲
by
weddpros
1y ago
To be honest, it's rather difficult and costly to run, with a 1.5B rows database of indexed unexpired certificates and a scanning job that took weeks from dozens of IPs.
69.
▲
by
weddpros
1y ago
You're absolutely right, at the enterprise level, managing an SSL fleet goes far beyond just issuance, and you can't assume the certificates you're issuing are the only ones that exist. Shameless plug: if you need to cut thro
70.
▲
by
weddpros
1y ago
AI Coding is becoming an edge, and sharing your edge isn't the wisest thing to do, even more so when doubt is so prevalent!
71.
▲
How Do You Track SSL Certs? We Built a Calendar View
(sslboard.com)
3 points
by
weddpros
2y ago
|
0 comments
72.
▲
by
weddpros
2y ago
Étant français, je n’ignore pas les différents synonymes disponibles. Mais le mot société a les deux sens, et est TRÈS utilisé dans les deux sens. Au point que cette app montrait société comme étant la traduction de society et de company. J
73.
▲
by
weddpros
2y ago
French is the only language where Company and Society are the same word: société. It's fun to watch
74.
▲
by
weddpros
2y ago
I see where you stand, and I hear a lot of negative anticipation. What happens if things actually go well in the end? 1- I think the previous administration used various agencies to avoid justice quite a lot. Heard of a laptop maybe? If age
75.
▲
by
weddpros
2y ago
It's more likely that Europe will double down on its politics as they always do. If it doesn't work, try harder with more of it: more rules, more laws, more exceptions to rules, more special cases, more Switch and If/Then
76.
▲
by
weddpros
2y ago
"reading the comments gave me a headache..." you, 45 days ago
77.
▲
by
weddpros
2y ago
Search Migrainous Infarction. I had one when I was 32 (53 now). It's very rare, but a migraine can cause a stroke (ie. permanent brain damage), because of impaired blood flow. It left me with a permanent scotoma ("black" hole
78.
▲
by
weddpros
2y ago
Go to perplexity, learn a thing and use the sources it provides with its results. Then see for yourself who's the parrot with no sources.
79.
▲
by
weddpros
2y ago
Asked Perplexity to summarize and answer to you: Tobacco litigation ($23.6B) BP oil spill ($20.8B) VW emissions scandal ($38B) Enron/WorldCom financial fraud ($9.55B combined) Pharmaceutical/auto/mortgage cases ($16.15B combi
80.
▲
by
weddpros
2y ago
Remember the multiple times tech companies have been fined for failing to "protect privacy"? Do you remember of any agency having any kind of trouble after leaking private data? It's always the hackers that are to blame when
81.
▲
by
weddpros
2y ago
Let's remember, it's not just about privacy, it's privacy against government overreach. Those in power, whether government officials or public servants, often abuse it. The public might want to defend their privacy vs. corpor
82.
▲
by
weddpros
2y ago
Maybe only parent-child can be unconditional, but it doesn't imply ALL parent-child love is unconditional though
83.
▲
Ante-mortem of an expiring certificate at X/Twitter
(sslboard.com)
4 points
by
weddpros
2y ago
|
0 comments
84.
▲
by
weddpros
2y ago
You can compress 10Gbit/s down to 10bit/s but then you can't do the reverse operation... Yeah, we know. To me it's like saying "I've summarised this book to 5 words, so why would you even need a few days to rea
85.
▲
by
weddpros
2y ago
the thing is you'd need 3 k8s queries, one for pods, one for deployments, one for services, then link all of them, and filter... jq helps with the filtering, kubectl can query, but you still need to join the 3 resources to answer the q
86.
▲
by
weddpros
2y ago
Cyphernetes seems capable of graph/relational logic. The example on the homepage is literally "give me deployments with more than 2 replicas with pods that are not Running, and give me the IP address of the service they're se
87.
▲
by
weddpros
2y ago
Meanwhile, some companies are building products with Prisma and are enjoying their choice. I love Prisma with Postgresql and Typescript, it's a very productive tool. My first opinion wasn't very far from yours, but then I adopted
88.
▲
by
weddpros
2y ago
you're right... but also I was being cynical
89.
▲
by
weddpros
2y ago
It's barely enough to subsidise a war for one year...
90.
▲
by
weddpros
2y ago
Exactly like with your paper wallet, you'll have to go to the authorities and they'll have to certify your new ID / keys... except it's possible to rekey you identity, to have escrows hold rescue keys, etc... many things
More ›