Viewing profile — growse
growse
HN member- Joined
- Wed, Dec 14, 2011, 2:20 PM UTC
- HN karma
- 3,174
- Public activity
- 1,158 items
- HN profile
- View on Hacker News ↗
About growse
Recent public activity
-
comment
Comment #48796399
> Summary: it's not DNSSEC itself, it's DNS providers like Cloudflare returning incorrect data to make responses shorter and avoid switching to TCP. I feel like we need the angry g…
-
comment
Comment #48285808
> No one. I thought everyone was "trying so hard to re-invent PGP". > we do need a single key that can be used for all those things We do? This is not obvious. Why does my disk enc…
-
comment
Comment #48285388
Who's reinventing a tool that can do all that?
-
comment
Comment #48284380
> Everyone is trying so hard to re-invent PGP Which bit of PGP?
- story
- story
-
comment
Comment #47908514
I don't know enough about either the technical nuance or the political drama, but some observers have noted that GnuPG's implementation is (deliberately?) incompatible with the IET…
-
comment
Comment #47793922
Maybe your company's ISP is CGNat'ting you?
-
comment
Comment #47789694
A non-trivial minority of the time, they don't support IPv4 either!
-
comment
Comment #47480646
I do similar, but frame it in terms of dependencies. The database can live without the web server, but the web server doesn't work without the database. Therefore webserver ---> da…
-
comment
Comment #47409365
If I accidentally yank the power cable out of my load balancer, I can plug it back in and I'm back up and running. If I cock up my DNSSEC config, nobody can resolve any records und…
-
comment
Comment #47403087
> As if DNS isn't a major contributing to A LOT of downtime. That doesn't mean it's not worth doing not investing in making deployment more seamless and less error prone. Ah yes. L…
-
comment
Comment #47403055
That entire post is that you should enable DNSSEC because it's "more secure", and there are no reasons not to. "More secure" begs the question "against what?", which the blog post …
-
comment
Comment #47023638
If you're in (for example) a CI context and do a git checkout @tag, there's no guarantee that you'll get the same content as the last time you fetched that tag. Tags are not immuta…
-
comment
Comment #47005767
> Why is entitlement to others labor the moral position, instead of the immoral position? You seem to be mistaking me for someone arguing that anyone is entitled to others' labour?…
-
comment
Comment #47002480
The social contract is found (and implicitly negotiated) in the interactions between humans, ie: society.
-
comment
Comment #47001089
It's a social contract, which for many people is a moral contract.
-
comment
Comment #46972215
> CABF started imposing restrictions on the public CA operators regarding the issuance of non-HTTPS certificates. The restriction is on signing non web certificates with the same r…
-
comment
Comment #46972196
> [citation needed] My citation is the membership of the CAB. > IMHO "other relying-party software applications" can include XMPP servers (also perhaps SMTP, IMAP, FTPS, NNTP, etc)…
-
comment
Comment #46957112
The CAB is only concerned with the WebPKI. This means HTTPS. There's loads of non web, non HTTPS TLS use cases, it's just the CAB doesn't care about those (why should it?).
-
comment
Comment #46855501
> if we could of built it much closer to the WCML Knocking down half the towns that the WCML runs through to build more tracks carrying trains that aren't going to stop there would…
-
comment
Comment #46744314
> But you write it as if it's in contradiction with my point, which I'm not seeing. My point was that a community is members + values + practices + other stuff. In the case where o…
-
comment
Comment #46743573
I rarely see good faith engagements being immediately shut down with "just fork it" (you'd never accept issues / MRs!). Instead it's usually used as a last resort when the "exploit…
-
comment
Comment #46743449
The subtext here is that there's a difference between someone saying "I don't like this community, I'm going to make my own" and "I don't like this community, I'm going to change i…
-
comment
Comment #46563835
I don't remember if this is in the original text, but is there a time constraints on distributing the source on request? If a user asks for the source, and the distributor says "su…