Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
plentz
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
The art of multiplexing
(medium.com)
5 points
by
plentz
11y ago
|
0 comments
2.
▲
True Survivor (Kung Fury Theme)
(youtube.com)
1 points
by
plentz
11y ago
|
0 comments
3.
▲
Pivotal's Lattice: running and scheduling containers on a cluster
(lattice.cf)
9 points
by
plentz
11y ago
|
0 comments
4.
▲
Soundcloud Contest: Irrational Fun - Find Yourself at Berlin Buzzwords
(developers.soundcloud.com)
3 points
by
plentz
12y ago
|
0 comments
5.
▲
Catherine Bracy: Why good hackers make good citizens
(new.ted.com)
1 points
by
plentz
13y ago
|
0 comments
6.
▲
Apple OSX Mavericks 10.9.x SSL Key Exchange Verification Vulnerability
(sektioneins.de)
4 points
by
plentz
13y ago
|
1 comments
7.
▲
Jquery-maskMoney 3.0
(plentz.github.io)
2 points
by
plentz
13y ago
|
0 comments
8.
▲
Unsound [documentary]
(unsoundthemovie.com)
1 points
by
plentz
13y ago
|
0 comments
9.
▲
by
plentz
13y ago
Yup. And it wasn't me :(
10.
▲
by
plentz
13y ago
I followed your advice and added comments to almost all my configurations. I will add some test tools to allow easier test of the configurations, but I think it's a lot better now. Besides that, I assume people will use nginx 1.3.7 or
11.
▲
by
plentz
13y ago
Done! Just updated the post with your suggestions. Thanks for that
12.
▲
by
plentz
13y ago
You're right, thanks :) http://wiki.nginx.org/HttpSslModule#ssl Note that since nginx version 0.7.14, the standard way to enable SSL is through the listen directive
13.
▲
by
plentz
13y ago
Problem solved! I've updated the post to use the official repository(I've updated my step-by-step) :) Thanks for the contribution
14.
▲
by
plentz
13y ago
I agree partially. To improve that, I will add comments in each line to explain why I'm doing that.
15.
▲
by
plentz
13y ago
Why do you think that linode can't be secure?
16.
▲
by
plentz
13y ago
We currently are setting Strict-Transport-Security with rails, but as I said in the comments of the blog, I think that setting this header inside nginx could be a better idea.
17.
▲
by
plentz
13y ago
I think it's better now :)
18.
▲
by
plentz
13y ago
Is a lot off-topic, but I will look at it :)
19.
▲
by
plentz
13y ago
Thanks again ck2. I will read it today and update the post to mitigate BEAST as well. Better then that, do you have a better setup for chipers?
20.
▲
by
plentz
13y ago
WP Super Cache for the rescue. Things running smoothly-ish right now :)
21.
▲
by
plentz
13y ago
Forgott.com is hosted @ linode. Our blog runs on Dreamhost.
22.
▲
by
plentz
13y ago
I agree that having a PPA isn't the best thing in the world, but this one is very stable(I'm using it for quite some time). Anyway, I will update the post to use the official repo, since it's really a better option. Thanks :)
23.
▲
by
plentz
13y ago
Anyway, the server that has that config isn't my blog, it's forgott.com :)
24.
▲
by
plentz
13y ago
Apparently, Dreamhost isn't holding the traffic peak :(
25.
▲
by
plentz
13y ago
Thanks for the heads up ck2. I've updated the config to add ocsp stapling. The certificate really has a extra(unnecessary) root certificate, I will solve this later today. The RC4 part is based on this article https://commun
26.
▲
Upgrading PostgreSQL 9.2 to 9.3 with homebrew
(tautt.com)
1 points
by
plentz
13y ago
|
0 comments
27.
▲
An nginx configuration for security
(tautt.com)
112 points
by
plentz
13y ago
|
44 comments
28.
▲
by
plentz
14y ago
When I read this news I was expecting something like this http://www.ohloh.net/accounts/Stefan (show all repos that this person had done any commits/opened issues). Kinda sad.