Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
spyspy
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
spyspy
9mo ago
The way I've set these things up, nothing talks directly to the identity service. The ID service is a backend behind your gateway like any other service and any UI would have to have the request proxied through the gateway to reach it.
2.
▲
by
spyspy
9mo ago
Don't give them ideas.
3.
▲
by
spyspy
9mo ago
The trick is to have your gateway handle authn, and then proxy authz data upstream so those services can decide how to handle it without needing to make a second call to the identity service.
4.
▲
by
spyspy
9mo ago
The trick I've used is the N1 (gateway) service handles all AuthN and proxies that information to the upstream services to allow them to handle AuthZ. N+ services only accept requests signed by N1 - the original authentication info is
5.
▲
by
spyspy
9mo ago
Treating N4 as a service is fair. I think the article was leaning more toward that idea of N4 being a database, which is a legit bad idea with microservices (if fact defeating the point entirely). My takeaway is that if you're going to
6.
▲
by
spyspy
9mo ago
`SELECT * FROM mytable ORDER BY timestamp ASC`
7.
▲
by
spyspy
9mo ago
I'm still convinced the vast majority of kafka implementations could be replaced with `SELECT * FROM mytable ORDER BY timestamp ASC`
8.
▲
by
spyspy
10mo ago
If you haven't been following space updates closely, the US is _already_ in a race with China, especially in regards to the Artemis (moon) missions. That being said it's mostly being used as an excuse to keep SLS alive and prop up
9.
▲
by
spyspy
10mo ago
This reminds me of the journalist working for months on uncovering Trump's dirty business just for Trump himself to admit the entire thing in a tweet.
10.
▲
by
spyspy
10mo ago
If you do use terraform, for the love of god do NOT use Terraform Cloud. Up there with Github in the list of least reliable cloud vendors. I always have a "break glass" method of deploying from my work machine for that very reason
11.
▲
by
spyspy
11mo ago
Off topic, and I don't want to knock the presenter here, but if you're ever going to give a public talk or presentation at work _please_ review the Death By Powerpoint slide deck[0] first. [0] https://www.slideshare.net
12.
▲
by
spyspy
11mo ago
Like any company over a handful of years old, I'm sure they have super old, super critical systems running they dare not touch for fear of torching the entire business. For all we know they were trying to update one of those systems to
13.
▲
by
spyspy
11mo ago
I became one of the founding engineers at a startup, which worked for a little while until the team grew beyond my purview, and no good engineering plan survives contact with sales directors who lie to customers about capabilities our platf
14.
▲
by
spyspy
11mo ago
I've seen the exact same thing at multiple companies. The teams were always so proud of themselves for being "multi-cloud" and managers rewarded them for their nonsense. They also got constant kudos for their heroic firefight
15.
▲
by
spyspy
11mo ago
Eh, the "best practices" that would've prevented this aren't trivial to implement and are definitely far beyond what most engineering teams are capable of, in my experience. It depends on your risk profile. When we had c
16.
▲
by
spyspy
1y ago
My only complaint about gofmt is that it’s not even stricter about some things.
17.
▲
by
spyspy
1y ago
Cloud Run lets you cap the number of instances when you create a service. So you can just set max_instances to 1 and you never have to worry about a spambot or hug of death from blowing up your budget. I run all my personal sites like this
18.
▲
by
spyspy
1y ago
> Health Insurance CEO Reveals Key To Company’s Success Is Not Paying For Customers’ Medical Care [1] 1. https://theonion.com/health-insurance-ceo-reveals-key-to-com...
19.
▲
by
spyspy
1y ago
You cannot trust your clients. Period. It doesn’t matter if they’re internal or external. If you design (and test!) with this assumption in mind, you’ll never have a bad day. I’ve really never understood why teams and companies have taken t
20.
▲
by
spyspy
1y ago
Something that was drilled into me early in my career was that you cannot expect your cache to be up 100% of the time. The logical extension of that is your main DB needs to be able to handle 100% of your traffic at a moment’s notice. Not o
21.
▲
by
spyspy
1y ago
You can never trust clients to behave. If your goal is to reduce infra cost, sure, rate limiting is an acceptable answer. But is it really that hard to throw on a cache and provision your service to be horizontally scalable?
22.
▲
by
spyspy
1y ago
It's not buried anywhere, it's literally the next paragraph after the lede. > These acres are not necessarily owned by large conglomerates and investment firms. Corporate structures are also attractive vehicles for family busin
23.
▲
by
spyspy
1y ago
OP is making broad statements, and you might even be right about your guy. But even if your founder is not super wealthy from the first exit, your current startup could go under and if that happens employees will be left with absolutely not
24.
▲
by
spyspy
1y ago
You're probably correct, but having lived in northern Brooklyn for almost a decade, I wouldn't be surprised if those communities had a hand in that type of infrastructure. They already have their own police force.
25.
▲
by
spyspy
2y ago
Ok so there's nothing they can do. Got it.
26.
▲
by
spyspy
2y ago
But then you introduce a subscription model and people decry how the good news is paywalled…
27.
▲
by
spyspy
2y ago
You got me I’m a spook.
28.
▲
by
spyspy
2y ago
The key word you missed in my comment is “worked”.
29.
▲
by
spyspy
2y ago
Disclaimer I worked at NYT but this is just unsubstantiated garbage. Say what you will about the company and journalism as a whole but you’d be hard pressed to find a better group of truth-seekers out there. waves hands at every other “new
30.
▲
by
spyspy
2y ago
Runa was a gem. Her firing was a huge blow to the company. Nobody of any note lasts very long at NYT.
More ›