Live data from Hacker News

Show HN: Hacker News' “most unique support email of 2014”

news.ycombinator.com

51–60 of 120 posts

Re: Show HN: Hacker News' “most unique support email of 2014”

#51
post #9

My palm Treos are still the most productive devices I've ever owned. Android is starting to get close but that keyboard and shortcut keys to go directly into an app on the Treo has been unrivalled. Hoping with the sale of the Palm Trademark, and WebOS being free, which is a generation ahead of all mobile operating systems, before the javascript app craze came up, might, in some way, come to lead and inspire the way a…

I was recently looking for a sliding qwerty keyboard phone and to my dismay I realised that while we weren't looking, the NSA took them all away! In my quest I found a phone database where you can search by features (I forget which one right now) and sorted through all possible candidates. My hopes went up momentarily when I saw the Dell Venue Pro[1] before I clicked "next" and saw how wrong they got it[2]. Eventuall…

Can it run Cyanogen?

The Blackberry Passport is one of the few modern keyboard phones, it uses Amazon's appstore for Android apps.

Re: Show HN: Hacker News' “most unique support email of 2014”

#52
post #6

My gut says that they've disabled SSL v2/v3, and that the device does not support TLS.

I'd love to see the results from visiting the Qualys SSL Client Test: https://www.ssllabs.com/ssltest/viewMyClient.html I imagine the issue is that we only support TLS 1.0+ and not SSLv2 or SSLv3. https://www.ssllabs.com/ssltest/analyze.html?d=news.ycombina...

I just tried it using IE6 with TLS 1.0 disabled and it does not load at all. If you watch the video carefully you will see the certificate errors that comes from the device having such an old certificate store too (in the case of google.com they now use GeoTrust with a cross certificate to Equifax). And I doubt the device support SHA256 certificates either. The device might not support the 3DES cipher suite either (as it was relatively slow compared to RC4) and many sites have disabled RC4.

Re: Show HN: Hacker News' “most unique support email of 2014”

#53
post #41

Earlier quoted context omitted.

In addition to thwarting state-sponsored attacks mentioned by geofft, HTTPS also prevents ISPs and hotels from injecting ads[1,2]. And using HTTPS even for logged-out users prevents an attacker from sslstripping[3] the link to the login page, which is good because even the most careful users won't always notice when a login page is suddenly served over an insecure connection. As a user of HN, I appreciate these secur…

T-Mobile opted me in to a content filter by default. To remove it, last I saw I needed to give them my SSN (!!!). So, I live with the idiot filter, which actually scans for keywords in websites and blocks them. SSL obviously makes this sort of filtering useless, which is very useful.

Why not give them your SSN? Do you have any lines of credit?

Re: Show HN: Hacker News' “most unique support email of 2014”

#54
post #7

> TL;DR http://i.imgur.com/LuPHqiN.png > This is what I sent: https://www.youtube.com/watch?v=Nqn-EmU5KPw > This is what they got back to me with: http://i.imgur.com/LuPHqiN.png > [1]: http://en.wikipedia.org/wiki/Treo_600 (gallery of 2-6,8-9 here: http://imgur.com/a/Gu70R ) [2]: http://i.imgur.com/xVdpUST.jpg [3]: http://i.imgur.com/2Yy8fkM.jpg [4]: http://i.imgur.com/nZ7GwC1.jpg [5]: http://i.imgur.com/OJuZmh3.jpg…

If only I had scrolled a bit first, I could have saved myself minutes. Thank you, and my support request is: please start auto-linking safe urls.

My browser does stuff like that for me. :)

Re: Show HN: Hacker News' “most unique support email of 2014”

#55
post #47
post #26

Earlier quoted context omitted.

I totally agree (although you need more than SRI, since you also need some way of signing the original content, but I'd love to see a full spec for this sort of thing). However, SSL is what we have right now that works. And I think, of the browsers that do support SRI (possibly in prerelease versions or behind feature flags), they require the page to be delivered over SSL anyway.

HTTPS is broken by content delivery networks who terminate SSL connections. HTTPS Everywhere makes the problem worse, by increasing load for static pages and breaking caches, forcing sites to use a content delivery network. Take a look at that HTTPS certificate that you think means you're talking to the site of your choice. If it says "cloudflare.com", "incapsula.com", "edgecastcdn.com", "palmwebservices.com", "cdnet…

HTTPS does not break caches; that's FUD. Browsers can cache HTTPS pages just fine, and do by default unless told not to.

Nothing forces sites to use a CDN. HTTPS, by itself, does not massively increase load. If the limiting factor of your web server is how fast you can do cryptographic operations for HTTPS, you're doing rather well; most of the time that won't be your limiting factor.

Using a CDN is not wildly less secure than using a hosting service, and numerous sites use hosting services. "Secure to the CDN" is still a net improvement over "completely insecure".

By all means, complain about sites using a CDN that you don't trust. That's not an argument against universal adoption of HTTPS, though.

Re: Show HN: Hacker News' “most unique support email of 2014”

#56
post #15

Uniqueness is absolute, so the support email is either unique or not. There are no degrees of uniqueness for something to be more unique than another thing. Sorry, but this grammar mistake is a big pet peeve.

I would urge you to, like I realised I had to a few years ago, get over it. Language is not defined by a dictionary or by history; roots and origins are truly meaningless. A word is defined by its usage; it’s one of the delightful things in the world for which it can be said that if enough people say something is true, it becomes true. Uniqueness may once have been a boolean property (I cannot say for certain one way…

Should we accept incorrect usage of language that is more confusing than the correct usage? For instance, using "begs the question" instead of "raises the question". It causes a lot of confusion because people cannot even agree what the misusage of "begs the question" means and it is never a better choice of words than "raises the question" if that is what someone means.

Re: Show HN: Hacker News' “most unique support email of 2014”

#57
I had a similar issue when I broke out my iBook from 2000ish. It seems like the root certificate authorities had changed, or the certificates sent by websites weren't able to be resolved. Whether that was the changes to SSL/TLS, or the root authorities, I didn't get into :P

Re: Show HN: Hacker News' “most unique support email of 2014”

#58
In my drawers, I still have all of my Handspring/Palm "smartphones", I used almost all their PalmOS lineup during the naughties:

* Handspring Visor+Visorphone (2002): huge!

* Handspring Treo 270 : broken lid

* Handspring Treo 600 : working, but broken screen

* Palm Treo 650 : working

* Palm Pré : still working, but broken USB connector

Re: Show HN: Hacker News' “most unique support email of 2014”

#59

I had a similar issue when I broke out my iBook from 2000ish. It seems like the root certificate authorities had changed, or the certificates sent by websites weren't able to be resolved. Whether that was the changes to SSL/TLS, or the root authorities, I didn't get into :P

If you are using Classic Mac OS, Classilla has the most up-to-date SSL/TLS support (with both SHA2 certificate and SNI support!)

Re: Show HN: Hacker News' “most unique support email of 2014”

#60
post #8

My gut says that they've disabled SSL v2/v3, and that the device does not support TLS.

Security Theater Everywhere strikes again. Unless you're logged in and entering data, Hacker News does not need SSL.

The "security theater" comment probably got you downvoted because it seems like an insult against HN, when it's probably more of a general reflection that not all sites need HTTPS, which is a fact (some need to not have encryption, both legally and for functional reasons).
Post reply on HN