Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
0xEFF
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
0xEFF
1y ago
I do the same as GP on a regular 2 hour drive up I-5 I take. The vetting process is the same as if I were driving up I-5 with a gear head friend of mine having a conversation with them as we go.
2.
▲
by
0xEFF
3y ago
It literally says spy cam in the product title.
3.
▲
by
0xEFF
3y ago
No company reflects “we’re family” in contracts or compensation packages. That fact alone tells us the message is and always has been bullshit.
4.
▲
by
0xEFF
3y ago
I think it’s reasonable that 95% of people would choose generational wealth for their families given the opportunity.
5.
▲
by
0xEFF
3y ago
Is it really unquestionable?
6.
▲
by
0xEFF
3y ago
Even so, the suggestion is a good one. Modern proxies have gotten much better at handling auth and processing the traffic as the GP describes. Service meshes have these features built in now when a few years ago we had to roll our own solut
7.
▲
by
0xEFF
3y ago
A bank is a bad example. The only thing we use bank websites for is to check our transactions and transfer money. My business checking account has started offering partner promotions from the transfer screen and I’m tempted to switch to ano
8.
▲
by
0xEFF
3y ago
See for yourself, 4.0 is clearly improved over 3.5.
9.
▲
by
0xEFF
3y ago
Every access and id token issued by oidc already has an issued at (iat) and expiration (exp) fields.
10.
▲
by
0xEFF
3y ago
Splunk has delivered this level of innovation and quality since 2007 when I first used it. We used Splunk to associate a change request ticket number all the way through the change control process to the Puppet log output tagging each chang
11.
▲
by
0xEFF
3y ago
It’s historically been abbreviated AAA “triple A” for Access, Authentication, and Authorization. Each being a separate system, VPN’s and Firewalls traditionally controlling access for example.
12.
▲
by
0xEFF
3y ago
RedHat has traditionally.
13.
▲
by
0xEFF
3y ago
The platform slack with over 10,000 users uses linen. It’s good. Wonder how long it will last though.
14.
▲
by
0xEFF
3y ago
There are loads of startups offering platforms as a service for about half the cost per year of one devops engineer.
15.
▲
by
0xEFF
3y ago
No, the best organizations have a happy path laid out for org chosen tools and a platform that supports adding in “non standard” tools / libraries by individuals and teams as needed, with a defined path toward those additions become th
16.
▲
by
0xEFF
3y ago
Edit: the term service principal is current and isn’t specific to Kerberos https://istio.io/latest/docs/concepts/security/#principals
17.
▲
by
0xEFF
3y ago
Not at L6. Scarface is right, most of the time the org just knows something is wrong and they don’t know what it is exactly or how to fix it. Sometimes they don’t even know something is very wrong, while working on a defining problem 1 the
18.
▲
by
0xEFF
3y ago
This is a good analogy. For more context in the past 5 years working with customers in the Bay Area I’ve not encountered one who mentioned linkerd let alone ran it in production. More than half those companies ran istio in production at lar
19.
▲
by
0xEFF
3y ago
The sweet spot is for someone with deep experience to lay down the skeletal structure of the tests, rpc, infra, lifecycle, etc… then hand it off to a broader team who could learn the intention behind the decisions.
20.
▲
by
0xEFF
3y ago
Why are discussions of web development and JavaScript unique in that we can’t discuss alternative methods and trade offs without the discussion devolving into personal attacks and defensiveness?
21.
▲
by
0xEFF
3y ago
Yes, it’s meaningful. If Google doesn’t fix search in the next decade then Bing (or some other winner) will be the service earning Google’s ARR in 11 hours.
22.
▲
by
0xEFF
3y ago
These reasons related to deployment, but there's also lots of value in the security aspects of the control plane. * automatic service account for each workload * automatic service to service auth to 3rd party services * the aud
23.
▲
by
0xEFF
3y ago
A single EC2 instance is an equally bad trade-off on the opposite side of the spectrum from over architected SQS, SNS, etc… The ideal trade off is a single Kubernetes cluster with as much in the cluster as makes sense for the team and stage
24.
▲
by
0xEFF
3y ago
Is it really easier? Yes. The project I’m currently building is an enterprise b2b SaaS and I’ve gotten it fully functional without writing a single line of JavaScript. By functional I mean it looks and behaves like there is JavaScript, be
25.
▲
by
0xEFF
3y ago
What is it that Tailscale provides over plain vanilla wireguard? Is it a static address somewhere to connect to?
26.
▲
by
0xEFF
3y ago
Given a cloud service account you can call the provider’s token service, get a bearer token, then use that bearer token to call any other cloud service configured to trust the provider issuer. Most cloud providers support this today with oi
27.
▲
by
0xEFF
3y ago
Yes for a host key. It’s like accidentally publishing the tls key for https://accounts.google.com The host key is the only thing ensuring you’re actually talking to GitHub.com when you push code. To add to sibling comments, it s
28.
▲
by
0xEFF
4y ago
I’m a business owner with payroll married to a attorney. I’m comfortable doing exactly as GP described to make payroll.
29.
▲
by
0xEFF
4y ago
It’s difficult to square creating both the most successful product and the most successful company in history with the idea Jobs heading the company into the abyss with the appliance model.
30.
▲
by
0xEFF
4y ago
For production servers, the trade offs Debian makes are better than the trade offs Ubuntu makes. This has held consistently true for as long as Ubuntu has existed. In recent years this is also true on the desktop.
More ›