HNHacker News
TopNewBestAskShowJobs

Reitet00

106 karma · joined October 8, 2021

submissionscomments
Reitet00··on Show HN: An open-source, collaborative, WYSIWYG Markdown editor
StackEdit looks really nice! Does it support concurrent edits from several users? (as several etherpad-like services do)
Reitet00··on Style your RSS feed
I've seen that previously on https://curiosity-driven.org/ (the main page is a feed file) but I'm not sure if XSLT support won't get deprecated and/or removed in browsers (since it's quite an old tech).
Reitet00··on I don't need your query language
I wonder if that could be addressed at the spec level allowing reverse order of these keywords. It doesn't seem complex on the surface and the the engines could slowly add support for it.
Reitet00··on Nix/NixOS S3 Update and Recap of Community Call
Interesting to compare with other distros: https://chaos.social/@Foxboron/110480984761804936

> It's wild to me that the monthly cost of the #NixOS cache infrastructure could fund the entire Arch Linux infrastructure costs for a year.

> It's 6 times the amount Arch get in monthly donations, and ~4 times Debian gets in monthly donations.

Reitet00··on Calling time on DNSSEC: The costs exceed the benefits
> C) provision certificates for this address using the DNS-Challenge approach rather than the HTTP-challenge approach.

The other "bonus" is that due to CT it leaks the internal name to basically everyone on the internet. It may or may not be a problem but definitely something to be aware of.

Reitet00··on Functional Programming in Lean
This looks very nice! Is epub version planned?
Reitet00··on Ask HN: What tools would make your Kubernetes development experience better?
Okay, thanks for the explanation!
Reitet00··on Ask HN: What tools would make your Kubernetes development experience better?
Minikube is just one piece but it's not functionally equivalent to `docker compose run` since I'd still have to build and push docker images and edit k8s yamls manually (compose run will build containers and start them, no need to edit anything) .
Reitet00··on Ask HN: What tools would make your Kubernetes development experience better?
> Define Sandboxes using a simple YAML file, specifying customizations relative to the baseline environment. Maintain these YAML files in your git repository and standardize Sandboxes across your organization.

It looks like these yaml files are not k8s files that I already have?

Also, is it open source? (I couldn't find a link to source on mobile)

Reitet00··on Ask HN: What tools would make your Kubernetes development experience better?
Looks okay but I was looking for something that wouldn't require learning yet another config language and would rather take k8s yamls that I already have (or require minimal modifications).
Reitet00··on Ask HN: What tools would make your Kubernetes development experience better?
Having a tool that'd make it easy to run the app locally for development and at the same time have roughly the same files used in production. Docker compose got this mostly right, compare compose with the complexity of running locally service in micro Kubernetes cluster.
Reitet00··on Burnout
I'm currently reading "Stolen Focus: Why You Can't Pay Attention—and How to Think Deeply Again" by Johann Hari and there's an explicit mention of the negative effect on people that immediate notifications bring. Just wanted to mention that it's not only you.
Reitet00··on Custom Allocators in Rust
Great to see some movement in this area for Rust. Compared to Zig which had this from day 1 it may be hard to adjust Rust (the way it was hard for Go to adopt generics).
Reitet00··on Codeberg – Fast open source alternative to GitHub
Nope: https://codeberg.org/api/v1/version
Reitet00··on Self-Service SBOMs
Multi perspective validation.

Hackers can compromise python.org and sign stuff with a key advertised there. But the site is just one point. It's much harder to hack python.org and also their GitHub and Twitter account (and DNS and dozens of other supported services).

Keyoxide makes the signing key links on multiple sites thus raising a bar for accepting fake key. It's not a silver bullet obviously. Just makes the attack harder to pull and is machine readable (instead of making humans check the keys).

Reitet00··on Self-Service SBOMs
I think https://keyoxide.org provides some kind of middle ground for verifying identity here. The identity there is not meant to be real life names but rather a collection of all social profiles bi-directionally linked together with OpenPGP signatures.
Reitet00··on Blender 3.5
I've been half way through this tutorial once and it indeed is fantastic. I'm not sure if it applies to recent versions of Blender though.
Reitet00··on Blender 3.5
Greatly appreciate it! I don't know why but book format is the one I like best, maybe it's a mix of learning at my own speed and at the same time something tangible that I can mark in various ways.

Thanks!

Reitet00··on Blender 3.5
Blender looks better and better!

I was wondering... Is there a good book teaching Blender fundamentals covering more recent versions?

Reitet00··on OpenPGP master key on Nitrokey Start
Could you share your script?
Reitet00··on We need better support for SSH host certificates
Yeah. Actually ssh agent speaks PKCS#11 (both client and server) so it's possible to interface with the hardware token quite easily. I'm using that to store my client key in TPM for example.
Reitet00··on We updated our RSA SSH host key
> It would be so much better if standard practice was to generate and store the private key on a smartcard or the TPM, so that the only file a clueless/careless developer could upload would be a stub.

Yep. Especially given that basically all modern laptops (and some PCs) ship with TPMs and ssh can use it via the TPM PKCS#11 lib. I'm using that daily on multiple machines and it's working great.

Reitet00··on Why use Rust on the back end?
Very nice post even though they're always in this form of "here is my 10 favorite Rust features". Another one along the same lines: https://cloak.software/blog/i-built-startup-in-rust/

> 95% of the unwraps in our codebase are in unit tests.

There's a crate for that: https://crates.io/crates/testresult

Reitet00··on Gitea 1.19
Wow, what a great changelog. I wish more software projects would take time to present their work to users like that.
Reitet00··on Gitea 1.19
FWIW it's possible to use Woodpecker as an alternative to Actions. I guess Gitea Actions will be more tightly coupled with Gitea.
Reitet00··on Tinker V: Single-board RISC-V computer
Looks nice! Too bad it's not PoE powered. That'd be great for simplifying IoT provisioning.
Reitet00··on Conversations (XMPP Client) is now a UnifiedPush distributor
Indeed. It seems FluffyChat (Matrix client) can now use Conversations for push notifications delivery.
Reitet00··on whoarethey: Determine Who Can Log in to an SSH Server
> For example TLS with client certificates (the client's certificate gets sent encrypted to the server).

Hmm... I was under the impression that up until TLS 1.3 the client cert was sent in the clear during session negotiation...

Reitet00··on Switching to AWS Graviton slashed our infrastructure bill
Too bad Hetzner doesn't have cheaper Arm servers available. Their Ampere pricing is not really convincing.
Reitet00··on High-documentation, low-meeting work culture
Thanks for sharing! Do you mind describing more technical details about the rendering pipeline for docs that you use?
Page 1 of 2Next →