Viewing profile — d00bianista
d00bianista
HN member- Joined
- Wed, Jan 17, 2018, 5:40 PM UTC
- HN karma
- 46
- Public activity
- 28 items
- HN profile
- View on Hacker News ↗
About d00bianista
No profile information was provided.
Recent public activity
-
comment
Comment #33899332
> Not having two sets of firewall rules and two sets of everything. I always disable IPv6 because it can bite you so hard when you don't realize that you are wide open to IPv6 conn…
-
comment
Comment #30864341
We're all different, I find Cisco and Vyatta awkward because of different reasons. RouterOS is not the best there is but it's less awkward, in my opinion.
-
comment
Comment #30851681
There may be more of us here, even in the FTTH-flavor. There are some imperfections, mostly related to bonding+ospf and vrrp-grouping but if one does not mind some warnings and a l…
-
comment
Comment #29295464
Back in the day... I used to maintain and manually scale a platform that ran a regionally large social site. It was written in PHP, by two geeks in a dorm, served by Apache and had…
-
comment
Comment #28789523
That's because the DHCPv6 client in the modem generates a unique DUID for itself and the new one cannot know the fried modems DUID.
-
comment
Comment #28788096
I'd like to disagree on IPv6 sucking and would like to steer this blame towards whoever decided to not be persistent. Firewalls can handle changing prefixes by masking it. Hosts ca…
-
comment
Comment #26656993
That would most likely be because of low latency and jitter. The app is in essentially the environment it was developed in and does not have to put effort into correcting errors th…
-
comment
Comment #26631628
Interesting, Winbox or WebFig/CLI? I find this clunkyness to be a good thing, compared to shiny and inflexible products. I have some experience of quite a few brands and so far Mik…
-
comment
Comment #26492425
It's quite a job to get closer to wire speed with 802.11ax still... Let's assume dual spatial streams and devices that not quite support anything past U-NII-1. https://en.wikipedia…
-
comment
Comment #26492127
I'd dare bet that the WiFi-radio and 1000BASE-T -ports are indeed not switched, but connected to the CPU, which as stated above looks very much like a router :) There's sadly no bl…
-
comment
Comment #26196400
IPIP/IPsec and OSPF would do nicely for efficient site-to-site meshing. But, adding docker to the equation makes it much more complicated. I'd prefer just operating the machines ov…
-
comment
Comment #26018451
It's actually not better tech, instead it's more complicated, more error prone and less durable ways to use the same technology that produces more space for a lower price. MLC is p…
-
comment
Comment #25778992
This could be turned into a great, possibly awkward, movie.
-
comment
Comment #24100240
You can always blow metal-free fiber in pipes. I'd use PE pressure pipe of suitable size, pull a string into it with a vacuum cleaner and pull fiber in... Hopefully the fiber survi…
-
comment
Comment #24100204
With something as complicated as 9 separate locations, I'd definitely avoid unmanaged media converters. Managed ones will be able to tell you how well, or how poorly, your fiber li…
-
comment
Comment #24100146
I'd recommend using managed devices as opposed to using dumb media converters. If there are issues, you have no insight into the issues with unmanaged devices.
-
comment
Comment #22739580
Like a good Unix tool, that's outside of WG's scope. User management is done with the likes of LDAP and such.
-
comment
Comment #21303381
A trusted certificate is nice and all but if you have to rely on DNS to find the CNAME-record that translates to an A-record and so forth, it becomes complicated and simpler for ma…
-
comment
Comment #21002643
Aside from versioning being clear about how big the change is, Windows Installer has this [0-255].[0-255].[0-65535] limit that I hope people do not learn about in the hard ways. It…
-
comment
Comment #20693730
I again have phobias regarding Watchguard and other products that have the consumer style special WAN-ports and related configuration restraints. Many Mikrotik-devices come preconf…
-
comment
Comment #20666934
Mikrotik has recently made bridging much saner, which makes their portfolio complete for datacenter use and pretty close on bridging users in the access layer. Their CCR-series is …
-
comment
Comment #20390069
I would not trust any unofficial installer. Luckily many problems can be solved with a USB-Ethernet adapter and later configuration of the systen, since the issue usually lies in e…
-
comment
Comment #20374807
What? There is no such thing as 'non-free' Debian. The Debian repositories do contain the 'non-free' section which is used to deliver non-free firmware among other things.
-
comment
Comment #18838793
Yup, turning off snooping would have fixed the issue at hand but not the poor choice of relying on STP for redundancy. I've seen this happen a few times in my life in production sy…
-
comment
Comment #18838750
Large L2-networks never work well, they all have some issues. Their existence is purely based on lazyness or believing that Ethernet works like the water main... I admit that I mig…