Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rtempaccount1
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
rtempaccount1
6y ago
Let me guess, Big-4? boutiques in the UK don't usually charge that kind of day-rate and the big banks all use their purchasing power to get day rates down. £800/day is low, but not unheard of especially if you use freelancers/
2.
▲
by
rtempaccount1
6y ago
Very interesting article, if a bit worrying for the UK's economy in the short/medium term. I think it could well be right that they're hoping for the (likely impossible) blink from the EU, but between that, the heavy politica
3.
▲
by
rtempaccount1
6y ago
Indeed they are not. What I find a bit puzzling is that the UK Gov. absolutely had an easy escape hatch from the cliff edge of end of 2020, by saying "we've got to delay due to the pandemic" I don't think many people wo
4.
▲
by
rtempaccount1
6y ago
I'd imagine it depends on how much attention the operators in this marketplace have been paying. If they've believed UK Government rhetoric about how Brexit will be a smooth process that will enhance the UK's trading opportun
5.
▲
by
rtempaccount1
6y ago
kube-ps1, kubectx and kubens can help quite a bit here. kube-ps1 to give you a visual indication of current context and the others to make switching easier. You can also explicitly add namespaces to manifests, which help avoid applying to
6.
▲
by
rtempaccount1
6y ago
Interesting looking project, although at the moment it's only useful for a small range of issues. One of the harder parts of vulnerability scanning is building and maintaining the plugin database. Nessus, which is one of the older and
7.
▲
by
rtempaccount1
6y ago
The people who "win" at Pyramid schemes aren't (IMO OFC) winning through luck, they're winning by being the people that set them up. And in the US and many other countries gambling is regulated, so that the games have ce
8.
▲
by
rtempaccount1
6y ago
Ultimately the end of any pyramid scheme is a large number of people losing money , often money they can't afford to lose. It doesn't seem likely to be in the interests of most governments to actively encourage straight Ponzi sche
9.
▲
by
rtempaccount1
6y ago
I'd agree that k8s has a lot of functionality built-in, another important thing to realise is what k8s doesn't do. In addition to the well-known integration points (Container Runtime/Network/Storage Interfaces), there&#x
10.
▲
by
rtempaccount1
6y ago
The problem with Uber et al, is not that they cannot become profitable, but that they cannot become sufficiently profitable to justify their valuations. Uber has burned through many billions of investor cash. To show a reasonable return on
11.
▲
by
rtempaccount1
6y ago
That theory implies a significant barrier to entry for new competitors. In some markets that is justified. Those where significant infrastructure is needed to compete. For example Amazon's network of warehouses and datacentres would be
12.
▲
by
rtempaccount1
6y ago
Within the same pod sure, they share the same netns. I was talking about individual container comms. With rootless podman they use slirp4netns and all get the same IP, with rootful podman or Docker a bridge network is established so that c
13.
▲
by
rtempaccount1
6y ago
LXC takes quite a different approach to containerization compared to Docker (e.g. running full systems in containers by default, instead of a single application process) What is it about their approach that you feel is superior?
14.
▲
by
rtempaccount1
6y ago
Podman when not run as root has some significant drawbacks (e.g. containers can't communicate with each other). That's not specific to podman it's just hard to do without root. Podman has long running processes as well, there
15.
▲
by
rtempaccount1
6y ago
complexity and overhead. Maintaining Kubernetes is non-trivial (IMO ofc). It has a 9 month support lifecycle, so you need to redeploy everything regularly. There are also API deprecations to deal with periodically, which if you're no
16.
▲
by
rtempaccount1
6y ago
I think what type of k8s environment you use very much depends on what you're looking to get out of it. If it's experience deploying applications into containerized environments, then micro-k8s and k3s seem like reasonable choices
17.
▲
by
rtempaccount1
6y ago
except of course where the system is ossified and you can no longer make changes for fear of affecting that lack of downtime. In the organizations I've seen with mainframes, what happened was a panoply of supporting systems sprung up w
18.
▲
by
rtempaccount1
6y ago
There is a middle ground between those two extremes of course. I'm not surprised at the mainframe's lack of success at all, the barriers to entry are extreme, meaning there's an inevitable lack of activity. I've worked i
19.
▲
by
rtempaccount1
6y ago
In many cases (e.g. banks) these systems have been running for decades, they're often badly documented and have had a lot of fixes applied for issues that arise. Re-writing that, is going to be a nightmare, as you've got no spec.
20.
▲
by
rtempaccount1
6y ago
I was at a talk about mainframe security recently where the state of play with one company was, there were three users in their admins group for the mainframe, two had retired, and the third was past retirement age... When you combine retir
21.
▲
by
rtempaccount1
6y ago
The user who runs the docker command can indeed always get root (with a default install, assuming you're not using rootless) but the process inside the container isn't going to necessarily breakout. That's why --privileged is
22.
▲
by
rtempaccount1
6y ago
Docker has a number of security layers that can make breakout more challenging, specifically dropped capabilities, a seccomp filter and (on debian/ubuntu) an AppArmor profile installed. I wouldn't agree that it's trivially po
23.
▲
by
rtempaccount1
6y ago
I'd agree with your assessment that RH are more about the enterprise installs. Whilst the 4.X series of Openshift has been out as a commercial product since mid last year, there's still (AFAIK) no release version of the open sourc
24.
▲
Sailing with the Istio through the shallow water
(medium.com)
2 points
by
rtempaccount1
7y ago
|
0 comments
25.
▲
by
rtempaccount1
7y ago
Any multiple choice exam is going to not necessarily mimic the real world, but doing exams that do is pretty tricky, and I can't think of one in the pentest world that gets it right (e.g. OSCP can't think of any time I've had
26.
▲
by
rtempaccount1
7y ago
Wouldn't it make sense that the university, that is charging the students all this money, ensure they have enough parking spaces to satisfy likely demand? Doesn't seem unreasonable for universities with very high tuitions, to prov
27.
▲
by
rtempaccount1
7y ago
My anecodotal info. on CREST, as someone who's been in the industry a while, and has a CREST cert. The exams (like any) aren't perfect, but if you pass the CCT, you need to at least be pretty familiar with common pentest tooling a
28.
▲
by
rtempaccount1
7y ago
Ultimately any country/state needs a variety of services, from utilities like water/sewage/electricity to emergency services like ambulance/fire/police to a military to defend what you've got from other countri
29.
▲
by
rtempaccount1
7y ago
How do you prove the traffic wasn't sent by you, if you don't know the software that was being used to hijack your connection was even installed?
30.
▲
by
rtempaccount1
7y ago
I don't believe that NordVPN make it clear that user's connections could be treated like that (e.g. as bandwidth for other customers) Unless they make that clear, it's not a great look.
More ›