Live data from Hacker News

Viewing profile — kkamperschroer

kkamperschroer

HN member
Joined
Mon, Dec 23, 2013, 4:01 AM UTC
HN karma
55
Public activity
43 items

About kkamperschroer

Self-employed dev. Contracting on projects I care about with people I care about.

Recent public activity

  1. comment
    Comment #33663778

    As I was reading your comment I was thinking "whoa, that sounds like Damien or Robert" and sure enough :) Hope you are doing well!

  2. comment
    Comment #33596905

    I saw Plex mentioned, but personally I like Subsonic better for music specifically: http://www.subsonic.org/pages/index.jsp If you're already hosting Plex, what's one more Docker c…

  3. comment
    Comment #12855420

    I did a couple years ago. Attack Pattern ( http://attackpattern.com/ ). They are still alive and well, but I ultimately had to find a different job when I decided I wanted to go re…

  4. comment
    Comment #11080816

    A useful layman's explanation of gravitational waves and the LIGO experiement: https://www.youtube.com/watch?v=1Tstyqz2g7o

  5. comment
    Comment #10927681

    Nice! The FUSE mounting method for obtaining secrets is similar to how Keywhiz does this. Very cool and novel solution. Though, if you are unfortunate enough to still have Windows …

  6. comment
    Comment #10927518

    Fantastic. Thank you!

  7. comment
    Comment #10927431

    So if you potentially need to roll a secret you would just run your deployment playbook limited to the secrets task?

  8. comment
    Comment #10927297

    Cool, thanks! Seems like a pretty direct competitor to AWS KMS. The pricing is identical, so I guess the choice between the two is quite obvious if you are hosted in Azure or AWS.

  9. comment
    Comment #10927289

    That's very similar to the problem we are encountering. Getting the secrets to the machines at deploy time isn't too bad, but then they are available to a potential attacker. Acces…

  10. comment
    Comment #10927271

    Do you take advantage of Consul's ACL system them for limiting access to secrets? Also, do you have any form of auditing then when using consul? Thanks for your input!

  11. comment
    Comment #10927263

    That's an interesting solution. I guess this would really only work though if you are self hosted, right? Thanks!

  12. comment
    Comment #10927252

    Nice, thank you! I haven't heard of that one.

  13. comment
    Comment #10927249

    Thanks for the tip. I guess the easiest thing to do is use git-crypt with some encrypted file and have the secrets available at deploy time, but I'm worried about long term disadva…

  14. story
    Ask HN: In a microservice architecture, how do you handle managing secrets?

    I'm evaluating solutions for secrets management in relation to a distributed microservice architecture and am curious to hear what everyone else out there does. Some options I've c…

  15. comment
    Comment #10496421

    I found my current position at AttackPattern here on HN a year ago, and I really love it. I would highly recommend others check it out.

  16. comment
    Comment #10481804

    Currently no, but that is certainly something I could add as options to customize. Thanks for the suggestion!

  17. comment
    Comment #10481711

    Looking for some honest feedback on this idea I had for a new tab page replacement where I can keep some notes. Currently alpha as I have not cleaned up all of my original hacks fr…

  18. story
  19. comment
    Comment #10451829

    Using consul ( https://www.consul.io/ ) in conjunction with HAProxy is another great way for service discovery and routing.

  20. comment
    Comment #10262604

    CenturyLink Cloud AppFog is a good alternative. I know, I know, it's CenturyLink and that's concerning to you. Cloud is like a different company entirely. Disclaimer: I helped buil…

  21. comment
    Comment #9312014

    Thanks. I'll add it to my backlog!

  22. comment
    Comment #9306121

    I'm a Chrome extension author and I've been contacted at least a half-dozen times by shady companies that want me to add some "totally unobtrusive" ad-injection javascript into my …

  23. comment
  24. comment
    Comment #9270584

    That is essentially the definition of financial independence, and it's certainly possibly with a job in software. It just involves saving as much as you can afford to and taking ad…

  25. comment
    Comment #9185809

    Linux with Crouton: https://github.com/dnschneid/crouton