Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
webvictim
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
webvictim
6y ago
I genuinely thought the same thing. I opened my MBP and it was sluggish, felt like it was dead. Browser wouldn't load, Zoom wouldn't load, I rebooted and the same problems persisted. I honestly thought the hardware was giving out.
2.
▲
by
webvictim
6y ago
The problems are very real if you work at any large organisation which has compliance requirements.
3.
▲
by
webvictim
6y ago
Setting all of that infrastructure up and subsequently maintaining it involves a considerable amount of time and knowledge. Some people just want a solution that's easy to deploy and that handles all of the management for you.
4.
▲
by
webvictim
6y ago
Yes, even for very regular users I would recommend setting up a process requiring users to get a new certificate on a daily basis with a short validity period. You can automate a lot of this and make it a simple one-command process to get a
5.
▲
by
webvictim
6y ago
It's something of an implementation detail - you don't generally specify the usage of certs on a user-by-user level, you do it by trusting the entire CA in /etc/ssh/sshd_config and then using the signed content of t
6.
▲
by
webvictim
6y ago
Author here. My take on this is that fail-closed is a vastly better security model than fail-open. I am genuinely surprised that OpenSSH actually issues certificates with no expiry date as a default. If you have a certificate which expires
7.
▲
by
webvictim
6y ago
Author here - yes, this is why. I looked into Ed25519 and while there are a lot of great reasons to use it (such as a shorter key footprint and it being much quicker on mobile devices), RSA is still more widely supported and has more docume
8.
▲
by
webvictim
6y ago
Don't get me wrong, using AuthorizedKeysCommand is a lot better than having a static ~/.ssh/authorized_keys file on a server, but it isn't anything like as powerful as using user certificates. Certificates can do a lot m
9.
▲
by
webvictim
6y ago
Having been on the rough end of this during a huge LDAP outage, I can confirm that LDAP is great until such time as it isn't.
10.
▲
by
webvictim
6y ago
This is definitely the premise of what I was going for with the post. I'm a firm believer in the idea that short-lived certificates which expire by default are one of the best ways to provide access to infrastructure, and enforcing tha
11.
▲
by
webvictim
6y ago
Author here - thanks for the feedback. As another reply points out, I did try to also cover the use of a bastion host along with one form of 2-factor authentication. I'm considering doing a future post on how to set up U2F for SSH with
12.
▲
by
webvictim
6y ago
Author here. If you specify an IdentityFile then that’ll be tried first (as an explicit identity) but if that doesn’t work then by default, ssh-agent identities will be tried sequentially afterwards. IdentitiesOnly suppresses that behaviour
13.
▲
by
webvictim
7y ago
Maybe banners, artwork, bio, follow relevant accounts, make some starter tweets with popular hashtags to get some follows back, interaction with some key people. I wouldn’t pay for it personally but someone might.
14.
▲
by
webvictim
7y ago
FYI, I was hired by Gravitational back in April 2018 and I was given that same take-home assignment as part of the interview process - to write a CNI plugin for k8s which created an encrypted mesh network between nodes. My work is here: ht
15.
▲
by
webvictim
9y ago
The drain on the systems in Europe from those who are “gaming the system” and who are long term sick pales into insignificance when you consider the overall savings due to the collective bargaining power of a nationalised healthcare system.
16.
▲
by
webvictim
9y ago
https://www.quora.com/What-are-the-salary-ranges-of-each-lev... https://www.glassdoor.com/Salary/Google-Salaries-E9079.htm It seems similar to the way it was at Facebook in that when you start, you
17.
▲
by
webvictim
9y ago
Commits are a really terrible metric when it comes to measuring productivity for this exact reason.
18.
▲
by
webvictim
9y ago
My family weren't at all well off when I was growing up in the UK, but my Dad had some contacts in a local IT business who had a spare BBC microcomputer that he got hold of around 1988 when they were throwing it away. I was born at the
19.
▲
by
webvictim
9y ago
The shorter way of expressing a similar sentiment is 'virtue signalling'.
20.
▲
by
webvictim
9y ago
Watch some early videos of Zuck and it'll be much more obvious. He's had a lot of training in public speaking and engagement and he's a ton better than he used to be now. I'm not saying he's autistic, but he has the
21.
▲
by
webvictim
9y ago
There are no companies which have such a policy, because it's illegal.
22.
▲
by
webvictim
10y ago
Collaboration has definitely got a lot better than it was years ago; FB has probably managed it better than anywhere I've worked before. The amount of money and effort they've invested into video conferencing facilities is huge be
23.
▲
by
webvictim
10y ago
Yes, it worked much better against the hum of the A/C units than the chatter.
24.
▲
by
webvictim
10y ago
Haha, thank you. My heritage is clearly given away by my phraseology :)
25.
▲
by
webvictim
10y ago
I used to work there and my team was unfortunate enough to get relocated to a set of desks near a ping pong table during a floor reshuffle. It was noisy, infuriating and a huge distraction. The ping pong noise itself was nothing compared to
26.
▲
by
webvictim
10y ago
It's a total first world problem, but none of the headphones that FB provides in the vending machines are actually noise cancelling. There are Sennheiser HD 280s (huge over-ear headphones, quite comfortable, good sound quality and do d
27.
▲
by
webvictim
10y ago
My biggest problem with moving to a corner or meeting room is that I lose my desk and with it, my nice keyboard, mouse and two huge monitors with everything laid out nicely on them. Instead I have to switch to a 13" laptop screen, a ch
28.
▲
by
webvictim
10y ago
Coffee shops are very different; the noise is not that of colleagues but of random strangers. The effect can be almost like white noise. Colleagues talk about things that you can't help but get involved with.
29.
▲
by
webvictim
10y ago
I used to work at FB and the huge, open offices were one of my least favourite parts about the job. I worked in the London office for a year and that was actually a little better because it's smaller and generally quieter there, but th
30.
▲
by
webvictim
10y ago
If it's not their messaging app you're using, they're not happy.
More ›