Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ymse
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
18 ms
·
151.
▲
by
ymse
10y ago
I enjoyed Natas[0] some years back, which is a simple and relaxed web security (only) challenge. They have other games too, no login required. 0: https://overthewire.org/wargames/natas/
152.
▲
by
ymse
10y ago
I prefer uMatrix[0] (by the uBlock author) which gives absolute control over third (and first) party requests. I don't even subscribe to the built-in Adblock filter because of my default-deny rule. It also negates the need for Privacy
153.
▲
by
ymse
10y ago
Then start your process with `systemd-run`. nohup is so three decades ago.. :(
154.
▲
by
ymse
10y ago
I get your sentiment. I only started using Salt some months ago, but it was really a breath of fresh air compared to Puppet. However it took me a while to realize its true strengths since the documentation is very...dry. IIRC Ansible, like
155.
▲
by
ymse
10y ago
Which design flaws are you referring to? As a recent Salt convert (and Puppet expert), I was perplexed as to why such a nice tool would have a man page 40x longer than bash . Turns out it includes extensive documentation for all states s
156.
▲
by
ymse
10y ago
I always keep this in mind when building fault-tolerant systems: The major difference between a thing that might go wrong and a thing that cannot possibly go wrong is that when a thing that cannot possibly go wrong goes wrong it usually tu
157.
▲
oh: a surprisingly powerful Unix shell
(github.com)
4 points
by
ymse
10y ago
|
0 comments
158.
▲
FSFE: Is this the end of decentralization?
(blog.jonasoberg.net)
5 points
by
ymse
10y ago
|
0 comments
159.
▲
by
ymse
10y ago
The registry is just that: a registry. You can push a Guix-generated image to it if you wish and use with any container runtime. rkt supports the same API; the Docker relation is by name only. In fact, being able to push static images direc
160.
▲
by
ymse
10y ago
It's written in Ruby like Github, but the latter have considerably more experience running high-traffic systems. Just perused their job page and will apply this week. Sound like they could use some Varnish and Ceph talent :)
161.
▲
by
ymse
10y ago
> XCOM2 has a slightly controversial "randomness compensator": repeatedly missing increases your chance to hit, and being hit repeatedly by the aliens lowers their hit chance. Do you have a source for this? I'm not doubtin
162.
▲
by
ymse
10y ago
Not the same, but there was an article about file system fuzzing recently: https://news.ycombinator.com/item?id=11469535 The presentation is focused on how the fuzzing technique works rather than individual file system perf
163.
▲
by
ymse
10y ago
What's the appliance? Most current consumer routers come with a backdoor called TR-069[0] that allows the ISP to provision and update the device. Recently other appliances than routers have started using the same protocol. The session
164.
▲
by
ymse
10y ago
They implemented the Nix model in Guile, so inspiration is selling it short. Although Guix have arguably passed Nix in terms of features already, with a much better command-line tool, a linter, importers for several external package registr
165.
▲
by
ymse
10y ago
Open Whisper Systems have asked LibreSignal to stop using their servers and may decide to shut it out. See https://github.com/LibreSignal/LibreSignal/issues/37 and discussion upthread.
166.
▲
by
ymse
10y ago
Note: they explicitly state "only two remote holes...", one of which can be found in this very thread. Security problems are usually clearly marked in the changelog: http://www.openbsd.org/errata59.html What rea
167.
▲
by
ymse
10y ago
That's sensible, thanks. What if the inside of the network is further segregated, and the Prometheus instance does not have access to all endpoints. Can I use the push gateway as a "proxy", or is a direct route required. Sorr
168.
▲
by
ymse
10y ago
This is more a job ad than an article. I've wanted to try out Prometheus a while, but can't figure out how to: 1. make it highly available 2. play nice with firewalls If I deploy Prometheus outside a NAT, and want to monitor 100 p
169.
▲
by
ymse
10y ago
I had never looked up the OSI definition[0], but you are of course entirely correct. So the difference between free and open source software is the "four freedoms", which I think we all knew to begin with.. :) 0: https:/
170.
▲
by
ymse
10y ago
It's not that simple. Open source implies the source is out there for anyone to study. Free software is not necessarily free of charge and readily available. Nothing prevents you from paywalling a GPL program as long as you distribut
171.
▲
by
ymse
10y ago
I'm curious, which products are you referring to? In most cases the GNU version predates the alternative by a large margin. E.g. screen vs tmux, squid vs varnish, wget vs curl, net-tools vs iproute2 etc. Of more recent software "c
172.
▲
by
ymse
10y ago
I haven't used Proxmox or oVirt (but know roughly their strengths), but can tell you right away that Openstack almost certainly is not what you want. Unless you expect CERN or Rackspace-level traffic, and are prepared to fork it and
173.
▲
by
ymse
10y ago
Ganeti can use either Xen, KVM and LXC hypervisors -- I've actually only used the KVM backend. I've used Ganeti Web Manager[0] in the past, but would probably try out Ganetimgr[1] for future installs. The command-line tools are v
174.
▲
by
ymse
10y ago
For anyone looking to build a clustered virtualization solution, I recommend checking out Googles Ganeti: http://www.ganeti.org It doesn't look like much, but is rock solid and supports everything Proxmox does and more, sav
175.
▲
by
ymse
10y ago
My hobby: investigate the subjectAltName of SSL certificates. Didn't know Conde Nast ran Vogue, New Yorker and sold wedding dresses. DNS Name: wired.com DNS Name: *.condenast.io DNS Name: *.wired.com DNS Name: ads.the
176.
▲
Security defects in the SS7 global cellular network, and how to fix them
(spectrum.ieee.org)
3 points
by
ymse
10y ago
|
0 comments
177.
▲
by
ymse
10y ago
Didn't mean to be negative, just informative. Try any of the new gTLDs, e.g. "stuffin.space", "rms.sexy" or "abc.xyz", they won't work. Or for a moderately amusing confirmation of ICANNs assertion tha
178.
▲
by
ymse
10y ago
This question comes up every time a "X written in Y" is submitted. Some times the language implementation is a novelity, but usually it's just a non-redundant piece of information. Many people on this site care about the lang
179.
▲
by
ymse
10y ago
Paul Graham has done a couple of pieces on naming things. http://aux.messymatters.com/pgnames.html (2006) And later this from 2015: http://www.paulgraham.com/name.html The gist of it is that anything will d
180.
▲
by
ymse
10y ago
whois already doesn't work for a lot of the new gTLDs and ICANN is in the process of reinventing it. So be prepared for loads of edge cases and keeping up with ICANNs flimsy mind. https://whois.icann.org/en/whats-h
More ›