Facebook employees badges aren't working, unable to enter buildings
twitter.com
twitter.com
As in, "the duration of a ping to the US and back" slow.
Yep, every badge in and out in the whole office had to go cross-continental (before the door unlocked).
Of course it isn't a no-brainer:
- It is still a non-trivial amount of data for an embedded device.
- You want to be able to revoke quickly.
- You still want to log the access if offline (and how big should that buffer be?).
You could set the system up to push data out to all of the badge readers whenever there is a change, but that's a big messy operation. A more complex but probably workable solution is to have them readers cache the data but also have the server maintain a list of those caches, and when someone is changed you invalidate all of the readers that the person used within the last cache timeout period. Even then it is still messy, if a reader has temporarily lost network connectivity their cache could be out of sync. It's one of those problems that gets really hairy once you're down in the weeds working out the details.
Luckily this isn't a pure IT system, but bound to physical bodies moving around. Some delay is acceptable. Most likely the person is already in anyways.
Why is it a requirement to be able to instantly revoke a person's badge access eeverywhere in real time anyway?
That seems like the system GP just described, including the hairiness you can get into.
> Why is it a requirement to be able to instantly revoke a person's badge access everywhere in real time anyway?
With 140,000 employees and hundreds of locations across the globe it becomes a question of dealing with hundreds of local databases and dealing with people that need to be in more than 1 or 1 central database (be it truly centralized or cache coherent).
Also think beyond the "you're fired and standing right in front of me" use case of revocation for why it's a requirement it be instant. A lost/stolen/replicated card can have traveled the world in the time it takes to be realized compromised.
Any office that uses physical keys will fail to meet this requirement, and we've had that system for quite a long time and it seems to have worked alright.
And I can't imagine why would anyone think otherwise.
Of course, if the employee was indeed a ninja, your guards wouldn't be able to do much, but in all other cases, it will suffice.
We all derided the company that made "smart" pet feeders that wouldn't maintain a cache of the feeding schedule, but rather phone home to check; when their servers were down, pets went without food. It's not difficult to think of an scenario like this.
You could maintain strong consistency while having fast local reads, once you have entered a building in a country it pulls you into the local range. So you're only slow when switching.
while (!bright) { increaseBrightnessBy10%(); sleep(100ms); }
and
while (!dark) { decreaseBrightnessBy10%(); sleep(100ms); }
Then someone had to log into a server and reboot a process before the blinking stopped.
Did Nest smoke detectors have to go to the cloud?
We have been doing this since 1996
...and discover that the POTS into the modem in Finland is flaky so you can't dial-in in from the US.
...and the OOB network access requires a smartcard that's kept in a safe... and the safe's combination is in the secrets tool that requires network access.
...and then you cry.
(for sanity's sake: NOT referring to today's FB outage. Don't quote me)
Otherwise, Murphy's Law ensures that when you desperately need to access the peering router in 60 Hudson, or Equinix Chicago, or 1 Wilshire to fix an outage, that will be the modem that doesn't answer the phone, or the console cable that got pinched in a door.
(again, not referring to today's outage)
If you don't spend the time writing a super-duper BGP implementation using sexy Rust rather than dealing with boring Cisco and Juniper boxes supporting all kinds of orchestration that gets you onto front page of Hacker News, you can get a set of Expect scripts running against serial consoles 24x7 triggering notifications of OOB failures within minutes.
Any secured area isn’t going to have easily broken windows, but there’s also no such thing as an intrusion proof building. Ultimately the main point of any security system is to slow down an attacker before people with guns show up and pointedly ask you to stop doing that. If it’s your building, you can use a blowtorch to get in if you need to, it just won’t be as fast as say, breaking into a residential home.
One day we had a major outage. The first few engineers to arrive were started on the 10 minute process. As more engineers arrived, a line started to form out the door. Then the VP showed up. He told the poor security guard that if they didn't open all the doors right now, eBay would find a new datacenter (we were probably more than 1/2 the space at the time).
They used the emergency fire release to just unlock all the doors at once, and then called the fire department and told them to ignore the alarm. So now all the doors were open and if there were a fire no one would come.
That day, if you happen to know where the eBay datacenter was, you could just walk right in. The only check against it was that most of use who had DC access knew everyone else who did and could call out imposters, but you'd have to stop what you were doing and think about it first.
The point is, there is always a way to avoid security when needed.
I'm pretty surprised that anyone was on-site that was authorized to make a snap decision that affects contracts with every customer colocated there.
I don't remember what happened with the other customers. They were all in a single shared cage, so it's possible they just locked that cage back up. Or they just didn't know. Usually the datacenter was pretty empty -- even then you didn't really go all that often.
And now other customers have to declare a security incident to their customers because the rock solid physical security that they promised was breached because someone bullied the security guard into opening the doors and letting everyone in without so much as looking at an ID.
There are lots of ways to speed entry of a group of people without throwing open all of the egress doors, like checking ID's (or letting the eBay exec identify his employees) and letting 10 of them at a time in the man trap before opening the other door.
technician: "But if we authenticate using the facebook DNS, how will we do our jobs if it goes down?"
boss: "The only way our DNS servers are going down is if facebook closes, in which case you're out of a job anyway."
technician: "But if we authenticate using the facebook DNS, how will we do our jobs if it goes down?"
boss: "That's a good point but not a blocker for go live, let's remember to add a story to our backlog to revisit this."
/s But seriously, such odd timing with Pandora Papers and with the Whistleblower.
Any sort of cache would give a window of opportunity to an attacker who has access to the badge.
Also not all perimeters have to be treated the same.
Even a few minutes could be risky with an ex-employee who knows what he is doing.
There are InfoSec reasons why some companies will revoke access as soon or even before telling an employee he is being let go and Security escort the employee off premise. While it is very poor way to handle human relations, it is sound from InfoSec perspective.
You are right, as you point out not all perimeters are same, typically more sensitive areas have lesser exceptions though a security guard will not be able to swipe/override you in to a DC as he would in normal office building.
Someone else mentioned that they had to trigger Fire Alarms to get all the engineers they needed fast enough at a DC during a down time at eBay.
public opinion starts to change about fb
Zuck fears people will abandon his platforms
shuts all of the down and claims hax0rs
facebook goes down
divert the story to Russian and Chinese hackers
people instantly forget about whistleblower
facebooks stock balances out after a week
Do you have any ethical qualms working for Facebook?
Do you feel the criticisms are blown out of proportion?
Only person suggestion that was you. In fact if you say, "well my job isn't as bad as Facebook," well then you're ignoring or passing the ethical dilemmas in your own industry, aren't you? Facebook isn't a free pass to ignore everything else. That's like saying, "well Stalin was pretty bad and we aren't as bad as Stalin, so we're probably ok." Not ok. It's really easy to justify working in immoral industries. I would wager that in the US, you have to do it just to put food on the table.
Controls Engineering - Specifically Agricultural: Grain handling, cleaning, processing.
https://www.ers.usda.gov/topics/farm-economy/farm-labor
https://www.ers.usda.gov/webdocs/charts/63465/LegalStatus201...
Pretty crazy how they're treated considering that.
Cool job tho, thanks for feeding people!
So really, "isn't this putting impoverished people out of the only job they can get?"
Ok but seriously, the best I can imagine might be a generic environmental impact concern that could be levelled far and wide. Honestly seems pretty legit. Are there any ethical issues we should know about in the field of agricultural grain handling?
So maybe more specifically, I'm not working with the farmers directly. I'm working with the businesses buying and selling the grain. The "capitalism grey areas" fall into effect when a farmer signs a contract saying they're going to deliver "Wheat" at a "Grade 2" spec and show up to the elevator with a truck full of wheat. It goes through the grading specs and even though that farmer brought them a "Grade 1" they're only getting paid at a Grade 2 rate.
So the grain elevator itself grabs that top quality stuff, shoves it in a silo with the other top quality stuff and sends the farmer away. They sell that grain at a Grade 1 and make immense profit that is never realized by the farmer who did the work.
It gets fishier the further into it you go. Because a "Grade 1" spec implies certain qualities in the grain: protein, moisture, dockage, etc. etc etc. So if the elevator needs to sell a Grade 2 product, the grading is taken as a sample and likely averaged over the entire load. They can take 10% of that Grade 1 stuff, shove it into a bunch of Grade 3 stuff and sell it as a Grade 2... the blending is where they make their money.
Then it gets even worse, because a grain terminal filling a vessel for export would sign off on a load that contains up to 1% dockage, but after the product in the silos is cleaned its likely to have <0.1% dockage or whatever anyway. So what is the terminal going to do? Surely they don't give the customer free "good" product right? Nope, they fill that vessel 99.5% full of product, then shove worthless garbage in to hit the 0.5% remainder and ship it out. So a vessel with 20,000MT of Soybean likely contains a bunch of garbage wheat or chaff or whatever else they have on hand that can't be sold.
It gets absurd to think they take in those Soybeans, then run them through the clean systems to remove the garbage, but then when it comes time to fill the vessel, they just put all the garbage back in so the customer has to clean it again.
(I have nothing against GMO personally)
(I don't actually think this but it was a reasonable ethical dilemma I thought)
Closer to home, assuming you're in the US, the glut of cheap corn syrup plays a big role in our obesity epidemic (especially in underprivileged communities). Obesity and related issues are some of the top killers in the US.
Also, there's a lot of suicide as a result of that farming efficiency with small / medium farmers. When they can't run their farms effectively because they can't afford the automation or acreage it requires, they off themselves out of shame, leaving their families to pick up the pieces. Don't feel too bad though, you're just at the end of the line of something that's being going on since the 1920s. It really picked up in the 1980s with computerization though.
https://en.wikipedia.org/wiki/Farmers%27_suicides_in_the_Uni...
https://www.southbendtribune.com/story/news/2020/03/07/farme...
As far as ethics? As deplorable as Facebook is, there are way worse industries. The defense industry just made trillions murdering people in Iraq and Afghanistan for 20 years for starters, and that's trillions from middle and lower class Americans and the sons and daughters too. I think someone calculated that Afghanistan alone cost $300 million a year for 20 years. That's alot of money taken away from the betterment of the country: schools, safety nets, infrastructure, a lot of things that were neglected. The incarceration industry also comes to mind. I'm sure I can think of others if you asked.
Legaltech - namely, automating the legal process behind startup funding rounds. We have lawyers on staff to help if needed, but we automate 95% of the work.
You could be in a zone of stability that's not affected by the overall chaos.
That this company is one of the greatest revenue streams on the planet tells us everything about how badly we evaluate reality.
C'mon Humans, let's do better than this. You're challenged!
Absolutely not. E.g. HID is a well-documented protocol and you can do whatever you want using the RS232 interface they come with (depending on the model). I personally wrote a gateway that would dynamically and directly check the access with my own software.
People have been WFH/Remote working for a while now. Like 1.5+ years.
Besides when everything runs fine it all feels magic. You discover how things can break in a situation like this.
Im pretty sure they are now rushing to restore access for every FB employee to their buildings.
I'd suggest more likely is a disgruntled engineer performing some sort of sabotage because of the content of the leaks.
We should be careful to not take our values from a spreadsheet.
If this is the event that teaches someone that Facebook is not the Internet, that’s a benefit to us all.
Seriously though, is the net utility of Facebook even positive there? It’s not like those businesses couldn’t interact with their customers over literally any other medium.
Rare problems aren’t enough to disrupt entrenched systems. It will take users suffering some recurring pain to motivate them to move to another network.
I get no credit for fixing things before they break, and sometimes it's shown up negatively on an annual review. If you have to cajole people to help you start to look pushy, or worst case like a bully. I've heard back from two former employers that the moment I left some manager tried to roll back things I did and be surprised when it turned out that the developers wanted to keep things the way they were.
You can see the lights go on for people in the trenches when some bit of software or step saves them from turning a 2 alarm fire into a 5 alarm fire, but the managers don't notice that non-verbal communication, and maybe half the time does someone editorialize the experience for all of the non-technical people (If I do it, it sounds like "I told you so" so I usually don't).
Seriously as transitions go, leaving WhatsApp and Messanger will be the smoothest most painless transition there ever was.
I wish regulators would have though that before allowing the purchase of WhatsApp by Facebook. That both of the main messaging apps are down at the same time is worrisome.
SMS used to be priced like you describe until a new operator (aptly named "Free") entered the market in 2012 with free SMS plans and forced the other three operators to align.
Also US based here luckily everyone I talk to is spread across signal/telegram/discord/googlechat for the most part.
But, in general TBH, I don't use texting all that much day to day.
https://trends.google.com/trends/explore?date=now%207-d&q=te...
https://trends.google.com/trends/explore?date=now%207-d&geo=...
Worldwide it looks like Telegram is benefitting. https://trends.google.com/trends/explore?date=now%207-d&q=te...
lol, how can you be on HN and be this not informed
On the other hand, voice calls on Whatsapp are far better.
"the facebook's going black... no more political battles with elderly relatives, transmissions of any kind... we'll start again, live in villages"
(then cutting to zuck plugged into the planetsized AI... exploding)
It may indirectly, in that it may spur a transition to another platform. Most likely, that platform will also be a privacy-invading centralized service, but in an ideal world it would be something like XMPP, Matrix, etc.
Nobody would ever think about WhatsApp in one month. People that uses Facebook as their photo album would be pissed with losing some old photos taken with digital point and shoot cameras.
Stalkers of former boyfriends and girlfriends would be inconsolable for a few weeks but then move on and be better with it.
There would be a great cultural loss in the disappearance of some groups and even some profiles of very interesting people. But they would resurface, in blogs, telegram channels, forums and whatever else appeared to fill the vacuum. Nobody misses myspace. Nobody would miss Facebook. And eventually Facebook will disappear.
I've slummed it learning a new OS or using a new keyboard, within a couple of weeks you forget you had to change anything.
At the very least there are choices in many circumstances.
Personally I have a least one other messaging app + email address of people I contact regularly. At worst I could send a paper mail.
And I'm afraid I'm not naive enough to think that other companies wouldn't turn to the Dark Side. All of Silicon Valley, perhaps all of the tech industry is evil.
Also, the word "divisive" gives me shivers. It's better to be divided than to be united in a fallacy. And in many cases getting divided is our only hope of ever arriving at the truth.
There will always be false content on social media, but I don't think that means facebook gets a pass for actively encouraging it.
It is systematic, algorithmic preferential amplification of disinformation (at the expense of real information) based on 'engagement' vs truth value, moral compass, or societal value.
And it is allowing orgs like Cambridge Analytica to harvest vast amounts of PII and use that to specifically tune and target the dezinformatsiya.
If you think of Fb as some kind of passive carrier you are horribly outdated - it hasn't done that in decades. FB curates and manages every word of data coming across it's servers at a scale and effectiveness that no actual news organization has evrer conceived of, let alone implemented. And yet they hide behind the "we're only a carrier" fallacy.
It's like the fat epidemic - sure, you can blame each bite of what to eat on the individual, but the rapidity of the overall trend makes in undeniable that the entire food supply has been skewed, limiting the choices such that only those who work diligently to avoid all the usual choices typically remain healthy.
well not just mary-sue down the road disinforming but that of nation level actors doing so to spread discord to the detriment of their enemies. facebook amplified the velocity and reach of this disinformation.
I haven't really changed my default settings and all I see are posts from my friends, the same ads over and over again, and posts from my groups (recipes, potlucks, language practice meetups, going to museums, rooms for rent, questions from expats).
There's absolutely nothing that could "radicalize" me. If you add garbage to your RSS feed reader I wouldn't blame the software, I would blame the person.
Because their FB friends post it, or the groups they are in post it, and they interact with it (even if to say "stop posting this crap" to their family members).
I used to see it a lot, then I unfollowed (but stayed "friends") with the family members who posted that crap or marked the content "don't show me this" and now I rarely see it.
I suppose that commenting or arguing with him would have the algorithm look at the words used, see that there is more interaction than normal, and promote posts from strangers that also contain those words? That's certainly how I would have designed the news feed algorithm.
So is a problem then that the algorithm can't distinguish between good interactions and bad interactions? (If it were me and I could parse comments with emotional intent to determine what are bad interactions, then I would try to learn from those bad interactions and minimize them)
If so then the duct tape fix is to just unfollow rather than let the algorithm think you're interested in that type of content. The proper fix would be to minimize bad interactions, but I guess that's where that whistleblower person is going (but that will minimize time spent on FB, minimizing revenue dun dun dun)
It's not rocket science, every user who uses YouTube and hears "comment on this video for the algorithm" knows that commenting = interaction that is perceived by the algorithm as a sign to get this seen by more people. So obviously commenting on stuff you hate will just get it seen by more people & get more stuff recommended.
It's like if I hate comedy clips and I keep clicking on each clip in order to downvote it. Of course I'll get recommended more clips.
But until having something like that, you're just guessing.
As for the reason for the hate, well, we have to deal with the radicalized people here in meatspace. It's a negative externality that we are subject to even if we aren't the target of the advertising.
After ignoring "region to the West of me" local news, I've had to delete about 40 other regions spanning farther outwards. FB keep pushing more data for you to interact with which in itself is not exactly healthy.
And it's easy to say ignore it, the simple fact it's in front of me, in the part of the screen where I'm reading new information is the problem.
It's not radicalising, it's just an absolute time and life suck. If it weren't for COVID and lockdown I'm sure my local cause would prefer not to use Facebook.
Their aggressive insinuation into the fabric of most websites ensures that there are very few places I can go without Mark Zuckerberg personally stalking me, along with a legion of inhuman advertisers.
Facebook and its sites can't stay down long enough; if they were offline forever, it wouldn't be enough. Even if this doesn't affect their advertising services, any hit to the FB ecosystem is a societal good.
Snapchat, Pinterest, Discord (sort of), Youtube (sort of) can round out that social media sites list. Probably a few more not being thought of.
Just look at how they realized that misinformation upset people which in turn caused them to interact with the site more, so they allowed that misinformation to spread.
There is also past research that involved trying to manipulate the emotions of users without the user's consent (https://journals.sagepub.com/doi/full/10.1177/17470161155995...).
They take a lot of the things that I dislike about social networks and technology and turn it to 11.
It's the political equivalent of "No one ever got fired for buying IBM". It's the safest opinion you can have, so everyone will spout out without reserve because no one will challenge you on it, and if they do they're clearly just a Zuck bootlicker.
We'll circle back to Google next week, and repeat.