Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
alexk
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
1.
▲
by
alexk
2y ago
For folks interested in 101 on linear algebra - I highly recommend book "Linear Algebra: Theory, Intuition, Code" by Mike X Cohen. After trying a couple of courses and books, I liked it the most because it gives a pretty deep over
2.
▲
by
alexk
3y ago
Thank you! I made a copy-paste error, fixed.
3.
▲
by
alexk
3y ago
Teleport (YC S15) | Senior Technical Support Engineer | US, Europe, Canada, Remote OK | https://goteleport.com We are looking for Senior Tech Support Engineers who can script, love systems troubleshooting and helping customers.
4.
▲
by
alexk
3y ago
They key difference is with mTLS approach you'd have to steal the private key of the client certificate if you want to impersonate the client. In most secure deployments of mTLS and short lived certs, private key never escapes the TPM,
5.
▲
by
alexk
3y ago
No problem! Keep it up with out of the box integrations, focus on U.X. and developer experience and I think you will be on track to become as big or bigger than Hashicorp :)
6.
▲
by
alexk
3y ago
I don't think those are mutually exclusive options :) Most developers, especially with lots of legacy apps are better off using a secrets manager. But there is no reason to not push the boundaries of security for new software and onboa
7.
▲
by
alexk
3y ago
Short version is that with mTLS and short-lived certificates you don't have to worry about anyone stealing and re-using your JWT tokens and revoking tokens. LVH from Latacora explains it way better than I could in "A child's
8.
▲
by
alexk
3y ago
You can't leak API keys if there are no API keys to leak! The article recommends OIDC for apps, which is a step up, especially if you rotate the bearer token, however there is another option - use short-lived certs. Our project Machine
9.
▲
by
alexk
3y ago
Teleport (YC S15) | Senior Technical Support Engineer | US, Europe, Canada, Remote OK | https://goteleport.com We are looking for Senior Tech Support Engineers who can script, love systems troubleshooting and helping customers.
10.
▲
by
alexk
4y ago
Sasha, CTO@ Teleport here. Thank you for the kind words! And congrats to the Tailscale team on launching SSH product. Let me share a bit more about our auditing capabilities: Teleport captures session PTY output and stores it in S3 or any S
11.
▲
by
alexk
4y ago
Sorry you feel that way! We haven't counted, but my bet is that most smaller deployments just use the single proxy. I also know that most larger deployments use multi-DC and multi-cluster design with independent CAs for availability an
12.
▲
by
alexk
4y ago
Re: GRPC My bet that you'd migrate to GRPC eventually as you scale :) I like the simplicity of HTTPS/JSON API as well, but it just broke down for us at a certain scale point. Re: Teleport with EKS True, CNCF clusters support mTLS
13.
▲
by
alexk
4y ago
Teleport consists of a couple of components: * Proxy is used to handle SSO, Web UI and intercept traffic for session capture. You can have one proxy per your organization, multiple proxies or, if you don't want to intercept traffic, no
14.
▲
by
alexk
4y ago
Sasha, CTO@Teleport here. Congrats on the launch! RE: Teleport design Teleport does not require a centralized proxy, because it is based on certificate authorities. You can issue a certificate with or without Teleport proxy and access any c
15.
▲
by
alexk
4y ago
That's a fair concern. We don't have extra steps to the interview process, our team votes only on the submitted code. However, We did not spend enough time thinking about automating as many of those steps as possible as we should
16.
▲
by
alexk
4y ago
gk1 thanks, this is a valid point! Teleport solves many quite important problems four our enterprise customers' infrastructure. Our users use Teleport to replace secrets and static keys with short lived certificates, manage certificate
17.
▲
by
alexk
4y ago
That's a fair question. The team votes on specific aspects of implementation that can not be verified by running a program, for example: * Error handling and code structure - whether the code processes errors well and has a clear and m
18.
▲
by
alexk
4y ago
Sasha, CTO @ Teleport here. I agree, our enterprise product is quite expensive. Let me explain why: * We are going through several security audits by third party agencies several times per year. We are trying to hire the best security agenc
19.
▲
by
alexk
4y ago
Hey, I'm Sasha, CTO @ Teleport. I have designed our interview process and have described it here: https://goteleport.com/blog/coding-challenge/ We are also trying to be as transparent as possible with our cha
20.
▲
by
alexk
5y ago
Teleport (YC S15) | Backend, Fullstack, Frontend Engineer | US, Europe, Canada, Brazil, Australia, Remote OK | https://goteleport.com Do you enjoy building security and deployment tools for other engineers? Join us to hack on h
21.
▲
by
alexk
5y ago
Teleport (YC S15) | Backend, Fullstack, Frontend Engineer | US, Europe, Canada, Brazil, Australia, Remote OK | https://goteleport.com Do you enjoy building security and deployment tools for other engineers? Join us to hack on h
22.
▲
by
alexk
5y ago
Take a look at this article, it explains why calculating CFR this way is not accurate: https://www.capradio.org/articles/2021/05/10/no-the-death-ra... > Erin Mordecai, an assistant professor of
23.
▲
by
alexk
5y ago
Teleport (YC S15) | Backend, Frontend Engineers | US, Europe, Canada, Remote OK | https://goteleport.com Do you enjoy building security and deployment tools for other engineers? Join us to hack on https://github.com&#
24.
▲
by
alexk
5y ago
Disclaimer: I work at Teleport If our Enterprise pricing is too high, take a look Teleport's open core version: https://github.com/gravitational/teleport
25.
▲
by
alexk
6y ago
If the author is reading this. I think this website would have been much better if you presented these flaws as biases as opposed to labels. You can also make it clear that bias is something that you can change about yourself by being consc
26.
▲
Preventing CSRF Attacks
(goteleport.com)
7 points
by
alexk
6y ago
|
0 comments
27.
▲
XSS Attack Examples and Mitigations
(goteleport.com)
25 points
by
alexk
6y ago
|
1 comments
28.
▲
by
alexk
6y ago
Hey Folks, author here, would be happy to discuss SSH certs vs public keys and lessons learned.
29.
▲
SSH Certificates Security
(goteleport.com)
9 points
by
alexk
6y ago
|
1 comments
30.
▲
by
alexk
6y ago
Teleport (YC S15) | Backend Engineer | US, Europe, Canada, Remote OK | https://goteleport.com Do you enjoy building security and deployment tools for other engineers? Join us to hack on https://github.com/gravita
More ›