Live data from Hacker News

Viewing profile — d00bianista

d00bianista

HN member
Joined
Wed, Jan 17, 2018, 5:40 PM UTC
HN karma
46
Public activity
28 items

About d00bianista

No profile information was provided.

Recent public activity

  1. comment
    Comment #33899332

    > Not having two sets of firewall rules and two sets of everything. I always disable IPv6 because it can bite you so hard when you don't realize that you are wide open to IPv6 conn…

  2. comment
    Comment #30864341

    We're all different, I find Cisco and Vyatta awkward because of different reasons. RouterOS is not the best there is but it's less awkward, in my opinion.

  3. comment
    Comment #30851681

    There may be more of us here, even in the FTTH-flavor. There are some imperfections, mostly related to bonding+ospf and vrrp-grouping but if one does not mind some warnings and a l…

  4. comment
    Comment #29295464

    Back in the day... I used to maintain and manually scale a platform that ran a regionally large social site. It was written in PHP, by two geeks in a dorm, served by Apache and had…

  5. comment
    Comment #28789523

    That's because the DHCPv6 client in the modem generates a unique DUID for itself and the new one cannot know the fried modems DUID.

  6. comment
    Comment #28788096

    I'd like to disagree on IPv6 sucking and would like to steer this blame towards whoever decided to not be persistent. Firewalls can handle changing prefixes by masking it. Hosts ca…

  7. comment
    Comment #26656993

    That would most likely be because of low latency and jitter. The app is in essentially the environment it was developed in and does not have to put effort into correcting errors th…

  8. comment
    Comment #26631628

    Interesting, Winbox or WebFig/CLI? I find this clunkyness to be a good thing, compared to shiny and inflexible products. I have some experience of quite a few brands and so far Mik…

  9. comment
    Comment #26492425

    It's quite a job to get closer to wire speed with 802.11ax still... Let's assume dual spatial streams and devices that not quite support anything past U-NII-1. https://en.wikipedia…

  10. comment
    Comment #26492127

    I'd dare bet that the WiFi-radio and 1000BASE-T -ports are indeed not switched, but connected to the CPU, which as stated above looks very much like a router :) There's sadly no bl…

  11. comment
    Comment #26196400

    IPIP/IPsec and OSPF would do nicely for efficient site-to-site meshing. But, adding docker to the equation makes it much more complicated. I'd prefer just operating the machines ov…

  12. comment
    Comment #26018451

    It's actually not better tech, instead it's more complicated, more error prone and less durable ways to use the same technology that produces more space for a lower price. MLC is p…

  13. comment
    Comment #25778992

    This could be turned into a great, possibly awkward, movie.

  14. comment
    Comment #24100240

    You can always blow metal-free fiber in pipes. I'd use PE pressure pipe of suitable size, pull a string into it with a vacuum cleaner and pull fiber in... Hopefully the fiber survi…

  15. comment
    Comment #24100204

    With something as complicated as 9 separate locations, I'd definitely avoid unmanaged media converters. Managed ones will be able to tell you how well, or how poorly, your fiber li…

  16. comment
    Comment #24100146

    I'd recommend using managed devices as opposed to using dumb media converters. If there are issues, you have no insight into the issues with unmanaged devices.

  17. comment
    Comment #22739580

    Like a good Unix tool, that's outside of WG's scope. User management is done with the likes of LDAP and such.

  18. comment
    Comment #21303381

    A trusted certificate is nice and all but if you have to rely on DNS to find the CNAME-record that translates to an A-record and so forth, it becomes complicated and simpler for ma…

  19. comment
    Comment #21002643

    Aside from versioning being clear about how big the change is, Windows Installer has this [0-255].[0-255].[0-65535] limit that I hope people do not learn about in the hard ways. It…

  20. comment
    Comment #20693730

    I again have phobias regarding Watchguard and other products that have the consumer style special WAN-ports and related configuration restraints. Many Mikrotik-devices come preconf…

  21. comment
    Comment #20666934

    Mikrotik has recently made bridging much saner, which makes their portfolio complete for datacenter use and pretty close on bridging users in the access layer. Their CCR-series is …

  22. comment
    Comment #20390069

    I would not trust any unofficial installer. Luckily many problems can be solved with a USB-Ethernet adapter and later configuration of the systen, since the issue usually lies in e…

  23. comment
    Comment #20374807

    What? There is no such thing as 'non-free' Debian. The Debian repositories do contain the 'non-free' section which is used to deliver non-free firmware among other things.

  24. comment
    Comment #18838793

    Yup, turning off snooping would have fixed the issue at hand but not the poor choice of relying on STP for redundancy. I've seen this happen a few times in my life in production sy…

  25. comment
    Comment #18838750

    Large L2-networks never work well, they all have some issues. Their existence is purely based on lazyness or believing that Ethernet works like the water main... I admit that I mig…