Live data from Hacker News

Viewing profile — growse

growse

HN member
Joined
Wed, Dec 14, 2011, 2:20 PM UTC
HN karma
3,174
Public activity
1,158 items

About growse

@growse@hachyderm.io

Recent public activity

  1. comment
    Comment #48796399

    > Summary: it's not DNSSEC itself, it's DNS providers like Cloudflare returning incorrect data to make responses shorter and avoid switching to TCP. I feel like we need the angry g…

  2. comment
    Comment #48285808

    > No one. I thought everyone was "trying so hard to re-invent PGP". > we do need a single key that can be used for all those things We do? This is not obvious. Why does my disk enc…

  3. comment
    Comment #48285388

    Who's reinventing a tool that can do all that?

  4. comment
    Comment #48284380

    > Everyone is trying so hard to re-invent PGP Which bit of PGP?

  5. story
  6. story
  7. comment
    Comment #47908514

    I don't know enough about either the technical nuance or the political drama, but some observers have noted that GnuPG's implementation is (deliberately?) incompatible with the IET…

  8. comment
    Comment #47793922

    Maybe your company's ISP is CGNat'ting you?

  9. comment
    Comment #47789694

    A non-trivial minority of the time, they don't support IPv4 either!

  10. comment
    Comment #47480646

    I do similar, but frame it in terms of dependencies. The database can live without the web server, but the web server doesn't work without the database. Therefore webserver ---> da…

  11. comment
    Comment #47409365

    If I accidentally yank the power cable out of my load balancer, I can plug it back in and I'm back up and running. If I cock up my DNSSEC config, nobody can resolve any records und…

  12. comment
    Comment #47403087

    > As if DNS isn't a major contributing to A LOT of downtime. That doesn't mean it's not worth doing not investing in making deployment more seamless and less error prone. Ah yes. L…

  13. comment
    Comment #47403055

    That entire post is that you should enable DNSSEC because it's "more secure", and there are no reasons not to. "More secure" begs the question "against what?", which the blog post …

  14. comment
    Comment #47023638

    If you're in (for example) a CI context and do a git checkout @tag, there's no guarantee that you'll get the same content as the last time you fetched that tag. Tags are not immuta…

  15. comment
    Comment #47005767

    > Why is entitlement to others labor the moral position, instead of the immoral position? You seem to be mistaking me for someone arguing that anyone is entitled to others' labour?…

  16. comment
    Comment #47002480

    The social contract is found (and implicitly negotiated) in the interactions between humans, ie: society.

  17. comment
    Comment #47001089

    It's a social contract, which for many people is a moral contract.

  18. comment
    Comment #46972215

    > CABF started imposing restrictions on the public CA operators regarding the issuance of non-HTTPS certificates. The restriction is on signing non web certificates with the same r…

  19. comment
    Comment #46972196

    > [citation needed] My citation is the membership of the CAB. > IMHO "other relying-party software applications" can include XMPP servers (also perhaps SMTP, IMAP, FTPS, NNTP, etc)…

  20. comment
    Comment #46957112

    The CAB is only concerned with the WebPKI. This means HTTPS. There's loads of non web, non HTTPS TLS use cases, it's just the CAB doesn't care about those (why should it?).

  21. comment
    Comment #46855501

    > if we could of built it much closer to the WCML Knocking down half the towns that the WCML runs through to build more tracks carrying trains that aren't going to stop there would…

  22. comment
    Comment #46744314

    > But you write it as if it's in contradiction with my point, which I'm not seeing. My point was that a community is members + values + practices + other stuff. In the case where o…

  23. comment
    Comment #46743573

    I rarely see good faith engagements being immediately shut down with "just fork it" (you'd never accept issues / MRs!). Instead it's usually used as a last resort when the "exploit…

  24. comment
    Comment #46743449

    The subtext here is that there's a difference between someone saying "I don't like this community, I'm going to make my own" and "I don't like this community, I'm going to change i…

  25. comment
    Comment #46563835

    I don't remember if this is in the original text, but is there a time constraints on distributing the source on request? If a user asks for the source, and the distributor says "su…