Viewing profile — plasticxme
plasticxme
HN member- Joined
- Tue, Jan 19, 2016, 1:30 PM UTC
- HN karma
- 39
- Public activity
- 22 items
- HN profile
- View on Hacker News ↗
About plasticxme
No profile information was provided.
Recent public activity
-
comment
Comment #25741992
These companies all have very clear terms of service, where they reserve the right to remove you for any reason. Using their service is a privilege, not a right. If everyone is “ce…
-
comment
Comment #25715300
Twitter is a private sector business in the US with terms that include reserving the right to remove any content for any reason. They have every right to. If you don’t agree with i…
-
comment
Comment #25626716
CAP_NET_BIND_SERVICE is a root privilege, a distinct one provided by kernel capabilities, granted to a process. In order to use it the container must be permitted to allow its proc…
-
comment
Comment #25622491
Nginx and the like are starting to provide non-privileged versions of their container images. Running as root is lazy and equals container escape, especially when running on anythi…
-
comment
Comment #25622296
They were not more secure, just more isolated. The challenges are different. Containers are just namespaced processes that share the same kernel as the host. A host has access to a…
-
comment
Comment #25619037
Infrastructure should be defined in an easily digestible, human-readable format. Your manifests serve two purposes: define infrastructure and self document. While you can achieve t…
-
comment
Comment #25556093
The reason is because object storage is slow and not meant for high performance, which is usually important for large databases. For your S3 example and ignoring IOPS, you are comp…
-
comment
Comment #25455145
A container is not a VM and should ONLY contain the exact files needed to run your app to run securely. Any additional packages increase the security footprint. Every container is …
-
comment
Comment #24151769
No, there is no reason for them to do that. Microsoft has proven otherwise over their entire existence.
-
comment
Comment #15549239
If you read the post, you’d know that you’ve basically summarized it.
-
comment
Comment #12530669
As a whole, we vote for a party. The person on the ballet is that of your riding. They are a Member of Parliament (MP) for your area, and they are affiliated with one of the many p…
-
comment
Comment #12343983
Requiring access to your social accounts is laughable. Unless it's directly tied to your job, it's a signal to quickly and politely end the relationship.
-
comment
Comment #11643667
It use to be tracked by radio song requests and sales of singles.
-
comment
Comment #11127258
I envision a future where CEOs don Guy Fawkes masks before doing press releases.
-
comment
Comment #11045099
Mongodb easy; PostreSQL hard. The latter requires extensive planning, which slows you down when features need to go out now.
-
comment
Comment #10984220
Deploying TLS in simple environments isn't overly complicated. It's just cost prohibitive.
-
comment
Comment #10984143
This is an awkward argument. One of my sites documents how to configure servers, for example. What excuse is there that something like that needs to be encrypted? The most legitima…
-
comment
Comment #10981857
Tin foil hats a side, I assume it would be an account used only for professional reasons, allowing students to reach out to their teachers. However, if the teacher is incapable of …
-
comment
Comment #10970780
This isn't software development. Why reinvent the wheel?
-
comment
Comment #10967018
Some forms of compliance require end-to-end encryption for certain transmissions. PCI is one that comes to mind.
-
comment
Comment #10955166
Slack is terrible for auditing, though. What's wrong with email?
-
comment
Comment #10930626
What!? First, it is highly inappropriate for anyone in any leadership or management position to ask anyone to sit on there lap, no matter what their relationship status. Secondly, …