Live data from Hacker News

Viewing profile — borando

borando

HN member
Joined
Fri, Jan 24, 2014, 6:24 PM UTC
HN karma
30
Public activity
13 items

About borando

No profile information was provided.

Recent public activity

  1. comment
    Comment #8108978

    It's refreshing to see the rebrand (RedPhone -> Signal) links security with functionality, rather than with something dramatic/hide-worthy. When your tools are secure, they work fo…

  2. comment
    Comment #7923292

    Great news! Hopefully between LibreSSL and BoringSSL, OpenSSL will go away and never return. I think AGL and the LibreSSL team will be able to do some fantastic informal collaborat…

  3. comment
    Comment #7739382

    Actually, if anything, the story is proof that the routers are not backdoored from the start Let me preface my response by saying I think there are probably more non-malicious (acc…

  4. comment
    Comment #7686618

    The data in root "." is controlled by ICANN, a US corporation. The data in the most important gTLD, .com, is run by Verisign on contract with the US Chamber of Commerce. The ccTLDs…

  5. comment
    Comment #7680649

    the ability to easily host your own repository. OpenBSD can do this by default. Just build your package how you like, and then on the target machines, set $PKG_PATH to your build/h…

  6. comment
    Comment #7644480

    OpenBSD did not upgrade to 2.X. You're talking about ports, which are separate from the base operating system. For accurate information about OpenBSD, right now, check: http://www.…

  7. comment
    Comment #7644450

    This is OpenBSD's fork of Apache 1.3. It runs chroot and privsep'd by default, and of course is patched for security issues where necessary. (OpenBSD recently dropped Apache from t…

  8. comment
    Comment #7584685

    The system scales up by piggybacking on DNSSEC You're missing the major point: MinimaLT will initially use X.509 (since it's already deployed). A future protocol upgrade will suppo…

  9. comment
    Comment #7446809

    Maybe we're using different definitions of standardization. The IETF writes RFCs which developers are expected to follow, and (mostly) do. This is a standardization of sorts, but i…

  10. comment
    Comment #7446636

    With serious protocol designers now largely side-stepping the IETF due to BULLRUN infiltration, BLAKE2 and other non-standard primitives have a better shot than before of seeing ma…

  11. comment
    Comment #7288393

    You don't need to run OpenSMTPD in order to get Xorg to work, of course. Also, OpenBSD is just the operating system. You can run whatever MTA you want. Just a reminder, this thread…

  12. comment
    Comment #7286453

    Incidentally Bcrypt does have a 56 byte limit This is incorrect; bcrypt has a 72-character limit. Try this in python: import bcrypt, sys salt = "$2a$10$2TmO7iAhRfimvNwvpBn.7e" prin…

  13. comment
    Comment #7116486

    DNS servers which accept both DNSSEC and DNScrypt (based on DNSCurve) encryption. DNSSEC doesn't do encryption. This is why DNSSEC isn't censorship-resistant. If you want encrypted…