Live data from Hacker News

Viewing profile — nsheridan

nsheridan

HN member
Joined
Thu, Sep 22, 2011, 6:28 PM UTC
HN karma
50
Public activity
23 items

About nsheridan

No profile information was provided.

Recent public activity

  1. comment
    Comment #41251101

    Expires header in the past is typically used to prevent caching. The lower-case headers is part of the http2 specification.

  2. comment
    Comment #35859622

    An SSH private key isn't "something you have" - it's not a physical object, you can make copies of it. To me it falls into "something you know". You might not be able to type it fr…

  3. comment
    Comment #35512445

    Lead solder is totally attainable for hobbyists - I bought a 100g spool a few weeks ago.

  4. comment
    Comment #32662044

    I use them for personal machines, and have deployed them in the past in work environments. A few years ago I wrote a CA which can exchange oauth tokens for signed keys: https://git…

  5. comment
    Comment #31876015

    > I always thought it was funny that I did the same job before and after the certs. It’s often more advantageous for the company to have people with certs (it was with MCSE and suc…

  6. comment
    Comment #31822489

    SLA - correct. That’s the contract between the operator and the users which describes the penalties for not meeting agreed-upon SLO SLO - service level objective, the stated availa…

  7. comment
    Comment #31793719

    Not to mention fire suppression systems and electrical risks.

  8. comment
    Comment #14104561

    There's noting stopping you from scanning the barcode multiple times

  9. comment
    Comment #13852574

    I'm very happy with inoreader

  10. comment
    Comment #13457454

    This exists - http://man7.org/linux/man-pages/man1/ssh-keygen.1.html#CERTI... - though the tooling is a bit bare-bones. There are some tools written to use certificates though, suc…

  11. comment
    Comment #12768569

    Ireland: 360/36 €60pm. No tv.

  12. comment
    Comment #12756723

    I really wish AWS would introduce domain verification for 'domain-shaped' bucket names.

  13. comment
    Comment #12483619

    For (possibly) smaller scale I wrote a self-service SSH CA: https://github.com/nsheridan/cashier

  14. comment
    Comment #12099426

    This is interesting. I wrote a service for issuing user ssh certs but it doesn't manage host certs. https://github.com/nsheridan/cashier

  15. comment
    Comment #4713886

    It's pretty much unmaintained. Every host it's installed on has to be properly tuned. Fine for large setups where finely tuned TCP stacks are the norm and maintaining your own ssh …

  16. comment
    Comment #4567144

    I lost interested in everything for.. a while, right around when I was diagnosed with depression. After eventually getting on the right brain medicine, I found my desire to work on…

  17. comment
    Comment #4544755

    Witchcraft!

  18. comment
    Comment #4502416

    Worse, this script goes on to install homebrew using 'curl -k ...|ruby'. Yeah, no thanks.

  19. comment
    Comment #4502401

    I can't be the only person who hates install instructions like 'curl -L some.host|bash'. Not to mention that the yeoman install script happily installs homebrew using 'curl -k ... …

  20. comment
    Comment #4295241

    My .vimrc contains: set pastetoggle= Life is suddenly easier :)

  21. comment
    Comment #3386593

    3.0 was for tablets, not for phones.

  22. comment
    Comment #3203344

    I'd recommend against putting the socket in /tmp. Anyone can reuse the connection.

  23. comment
    Comment #3066709

    http://www.google-watch-watch.org/