Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Foxboron
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
1.
▲
by
Foxboron
3mo ago
> Could be one or one thousand. Frankly, the exact number doesn't matter. It does. Manually checking a couple of AUR packages is easy. Installing a thousand AUR packages is not something anyone should be doing. > I'm assumin
2.
▲
by
Foxboron
3mo ago
> Expecting users to manually review every single change, for every single AUR package they are using, every single time they do an update or installation is just unreasonable if you want to AUR to be useful at all for the general user.
3.
▲
by
Foxboron
5mo ago
> The host key section makes me wonder about doing this with servers, but what are the security guarantees in places like the cloud with that? Are you relegated to a software TPM, and if so, what guarantees does a software TPM have? For
4.
▲
Show HN: SSH-TPM-agent · Release v0.9.0
(github.com)
6 points
by
Foxboron
5mo ago
|
3 comments
5.
▲
Vinyl Cache and Varnish Cache
(vinyl-cache.org)
54 points
by
Foxboron
5mo ago
|
26 comments
6.
▲
by
Foxboron
6mo ago
This just reads like a LLM trying to come up with a conspiracy theory around systemd. It somehow got hyper-fixated on "three" for no particular reason and seems like it decided to harpen down that fact without explaining anything
7.
▲
Acme device attestation, smallstep and pkcs11: attezt
(linderud.dev)
2 points
by
Foxboron
6mo ago
|
0 comments
8.
▲
by
Foxboron
7mo ago
`mkinitcpio` supports both. The `base` hook installs the shell PID 1, the `systemd` hook installs systemd as PID1. The default hook setup was changed with the latest'ish release to default too the `systemd` hook setup. Shell `init`; h
9.
▲
by
Foxboron
7mo ago
> Maintainers: You’re a primary maintainer or core team member of a public repo with 5,000+ GitHub stars or 1M+ monthly NPM downloads. You've made commits, releases, or PR reviews within the last 3 months. Laughable. This is a tiny,
10.
▲
by
Foxboron
7mo ago
I have reported several spam emails to Github and from what I can tell none has been acted upon.
11.
▲
by
Foxboron
7mo ago
I mean, gitlab is only from ~2019. The first hit I could find of a git repository hosted on `archlinux.org` is from 2007; https://web.archive.org/web/20070512063341/http://projects.a...
12.
▲
by
Foxboron
8mo ago
Nor the 20 or so odd reimplementations of various filesystem drivers and LUKS encryption in the grub2 tree. But, who is counting?
13.
▲
by
Foxboron
8mo ago
> Sure, but can the system context-switch that PCR between two different users? Right, no it can't. But this was not really something the TPM was suppose to solve.
14.
▲
by
Foxboron
8mo ago
UEFI on x86_64 and phones are not comparable when it comes to being "locked down".
15.
▲
by
Foxboron
8mo ago
Phones don't implement UEFI.
16.
▲
by
Foxboron
8mo ago
> * Secure Boot (vendor-keyed deployments) I wish this myth would die at this point. Secure Boot allows you to enroll your own keys. This is part of the spec, and there are no shipped firmwares that prevents you from going through this p
17.
▲
by
Foxboron
8mo ago
> The TPM has nothing remotely resembling per-user PCRs. The system could extend one of the PCRs, or an NVPCR, with some unique user credential locked to the user directory. Then you can't recreate the PCR records in any immediate w
18.
▲
Personal Infrastructure Setup 2026
(linderud.dev)
3 points
by
Foxboron
8mo ago
|
0 comments
19.
▲
by
Foxboron
8mo ago
> Who exactly are you thinking of that needs a job but doesn't have one? That is not your claim. Your claim is that they "are on the payroll of one of the big tech interests or a foundation funded by them". Which is simply
20.
▲
by
Foxboron
8mo ago
> Linux, clang, python, react, blink, v8, openssl... You know what I mean. I stand by what I said. Do you have a counterexample you think is clearly unfunded? They exist[1], but they're rare. For Linux "all the major contributo
21.
▲
by
Foxboron
8mo ago
> but for almost any economically important project all the major contributors and maintainers are on the payroll of one of the big tech interests or a foundation funded by them. "almost" is the load bearing word here, and/
22.
▲
by
Foxboron
8mo ago
> What else could they do? The government represent the country. If their business model is not welcome there then they withdraw. It's very fair to say "if you insist on those rules I choose not to play". They can just not
23.
▲
by
Foxboron
8mo ago
And the correct response to that is to write up a threat towards the entire population of a country?
24.
▲
by
Foxboron
8mo ago
They are a conglomerate and per Matthews words "an internet infrastructure provider". Why does the local revenue matter when they are serving a global market? EDIT: And fwiw, "Why would you continue doing business in Italy?&q
25.
▲
by
Foxboron
8mo ago
So blocking Kiwifarms took.. months of activism and loud complaining. Heraled by Matthew as "this is an extraordinary decision for us to make and, given Cloudflare's role as an Internet infrastructure provider, a dangerous one tha
26.
▲
by
Foxboron
9mo ago
The issue is that it also becomes easy to game. I've abused the fact that bots repost lobste.rs by timing my post submissions, I could have had this front-page post as I posted this to lobste.rs originally. This makes the HN front-page
27.
▲
by
Foxboron
9mo ago
> It's unfortunate that people don't really know about it, but I guess the tools available aren't that user friendly This is my cue. https://github.com/Foxboron/ssh-tpm-agent
28.
▲
by
Foxboron
9mo ago
https://streaming.media.ccc.de/39c3 All talks will be live streamed, and right after the talk is done you have a rough cut available instantly under "re-live" you can watch until the final recording is available;
29.
▲
Self-hosting DNS for no fun, but a little profit
(linderud.dev)
6 points
by
Foxboron
10mo ago
|
0 comments
30.
▲
by
Foxboron
10mo ago
Paged Out are looking for more articles for the next issue. Information here: https://pagedout.institute/?page=cfp.php
More ›