Viewing profile — mmd45
mmd45
HN member- Joined
- Wed, Dec 26, 2012, 11:00 AM UTC
- HN karma
- 255
- Public activity
- 57 items
- HN profile
- View on Hacker News ↗
About mmd45
No profile information was provided.
Recent public activity
-
comment
Comment #47743993
shouldn't compaction be interactive with the user as to what context will continue to be the most relevant in the future??? what if the harness allowed for a turn to clarify the us…
-
comment
Comment #41590524
you are assuming i have users and this is a mail server not a website which has a very different access pattern more analogous to ssh where TOFU works beautifully.
-
comment
Comment #41586365
for the use case of a single user IMAP server this is all way, way, too complicated and buys you nothing in terms of security. it's completely analogous to why we dont use CAs to v…
-
comment
Comment #41585676
bad summary. it prompted you to accept the certificate upon first use and then pinned it which is far different than what you are describing in terms of security implications.
-
comment
Comment #41585632
i saw a video on youtube where a guy intercepted https app traffic from an android app for a smart scale where the app used certificate pinning. there was some very automated tool …
-
comment
Comment #41585460
how are you renewing the LE certificate if the domain is resolving to an internal ip? this seems like a big hoop to jump through.
-
comment
Comment #41585415
per apple dev forums it seems like they have a history of breaking this and then fixing it. additionally, while IMAP is broken, calendars and notes seem to work just fine so hopefu…
- comment
-
comment
Comment #41585306
explain how a pinned self signed cert is insecure. i don't see it. it would seem to be more secure than one signed by a public CA that's not pinned.
-
comment
Comment #41585127
unfortunately none of that applies to my setup. my imap server lives in a dmz and doesn't have all that other jazz.
-
comment
Comment #41584988
i'm just using a hardcoded private ip to connect to the imap server. are you saying i can get a certificate with a hostname of "*" that will match ANY ip address?
-
comment
Comment #41584862
https://developer.apple.com/forums/thread/732409 (fixed url) seems like the issue is specifically with IMAP- I can confirm that calendar syncing works fine with the self signed cer…
-
comment
Comment #41584826
I'm using a private ip over a vpn so I don't think that workaround will work for me. I don't really want a public dns record.
-
comment
Comment #41583690
:-( hey lurking apple devs- can someone please escalate this?
- story
-
comment
Comment #39917085
There is an interesting argument to be made that pre-JT xz code is probably pretty secure due to the fact that the threat actors would have already audited the code for existing ex…
-
story
Ask HN: Voice ID adoption at financial institutions
Given the inevitability of easy voice cloning[1], it seems irresponsible to be using voice as a positive authentication signal. Unfortunately, major US financial institutions seem …
-
comment
Comment #39893940
thanks, that seems promising. i will look into it.
-
comment
Comment #39892891
https://github.com/trusteddomainproject/OpenARC/issues/163 https://github.com/trusteddomainproject/OpenDKIM/issues/186 OpenARC/OpenDKIM don't parse email headers to spec. Help want…
-
comment
Comment #37751778
maybe its an nfc hack. pretty scary how wide open it is/was: https://www.youtube.com/watch?v=eV76vObO2IM
-
comment
Comment #35819660
anyone have any thoughts or experience with this?
- story
-
comment
Comment #35819630
i've never heard the term narrow banking, but after looking it up isn't that effectively what this company is attempting: https://jiko.io/
-
comment
Comment #29042118
interersting. does mercury support bill pay? can you get a cashier's check? how long do deposited checks take to become available for withdrawal?
-
comment
Comment #28787337
The killer is the "The bill also prevents investing in an entity in which the IRA owner is an officer." which is generally how the checkbook IRA is structured (IRA owner is the Man…