187 karma · joined July 6, 2017
https://www.sys-dev-run.fr/
I'm pretty sure in five years, local LLM will be a thing.
Ordering the world population by birthday becomes so easy. Plus no endless discussion on wether or not we should use UUID as primary key.
part2 seems to be a timestamp. Maybe we can try to forge the value to "now - 10 seconds".
And if the implementation has been done right, the "part3" should be a signature of part1 and part2, not a "salt" (so forging part2 should be detected and code rejected).
Hopefully it will eventually be deployed [0]
Starlink Ground Station Network is global, spread in many different countries and look more resilient than a single one.
[2]: a database server had its disk full that lead to a corrupted database
SRE is tough.
Hopefully passwords will be gone soon (at least that's my hope).
I'm wondering if the author contacted the JAXA team. Maybe they would share how the data is encoded?
If the information is secret, it's probably encrypted (SpaceX eventually did that once radio amateurs decoded the video stream), but if it's not, maybe JAXA would be happy to help?
For LetsEncrypt, all renewal requests are done with ACME clients, so this is not a surprise.
I'm curious to know which part of DigiCert and Certigo certificates are actually renewed with an ACME request (both support it).
It seems "too late" to revert this decision. Otherwise people will experience "Internet stopped working", blaming their ISP.
APNIC may decide to keep a working DNS server on 1.1.1.1, but ethically, routing traffic to someone else than Cloudflare is not great.
The SEO mess was indirectly caused by Google PageRank and other related optimizations.
Maybe we want 2007 Internet instead?
The AI world will inevitably lead to "content optimization", so the Chatbots that will be asked "questions about life" (as of Today, where people usually search on Google "I have fever/depression/a turbulent child/tomatoes in my fridge, what should I do?") will more frequently answer specific products.
Instead of promoting a single website (Current SEO strategy), content producer will be tempted to produce many texts on a great variety of sources, to reinforce the model on a specific subject.
Time will tell if in 2035, we will want 2023 ChatGPT.
[0] https://sso.tax/
So your app runs at 0 CPU when there is no requests ongoing, and can't use more than 1 processes in the same container. It means you can't have a container with nginx+rails, as only nginx will have a core to execute, rails has no core and it leads to a timeout.
Maybe you should ensure your app is not trying to use a second process?
[0] https://cloud.google.com/run/docs/configuring/cpu-allocation
The ship may be full of empty containers.
Make people panicking is probably not a very good thing to do if we want to expect them to take the best decisions.
Special mention to French president that described March 2020 situation as « This is a war ».
There are 61 headers already defined in this table.
[1] https://httpwg.org/specs/rfc7541.html#static.table.definitio...
When operating multiple devices to improve reliability, diversity is one point.
curl --resolve 'panel:443:192.168.10.5' -k -X GET https://panel/rest/configuration
Hostname can be set to * in recent versions of curl, it's even more handy:
curl --resolve '*:443:192.168.10.5' -k -X GET https://panel/rest/configuration
- setup logical replication between the old and the new server (limitations exist on what is replicated, read the docs)
- PAUSE the pgbouncer (virtual) database. Your app will hang, but not disconnect from pgbouncer
- Copy the sequences from the old to new server. Sequences are not replicated with logical replication
- RESUME the pgbouncer virtual database.
You're done. If everything is automated, your app will see a temporary increase of the SQL latency. But they will keep their TCP connections, so virtually no outage.
It's so easy to rely on DNS names everywhere...
- this service will last forever
- this service won't be acquired by someone else with evil intention and will never lie
Do not use this service. It has the power to steal your traffic.
If they can't launch them, I wonder what will be the payload of the first Ariane 6.
With s3.amazonaws.com, they need to have a proxy near you that download the content from the real region. With yourbucket.s3.amazonaws.com, they can give an IP of an edge in the same region as your bucket.
It does not prevent people guesssing it tough.
If you use customer1.mycorp.com, customer2.mycorp.com, etc. the names of your clients is exposed twice :
- if you issue one certificate with all the domains, all the domains are readable in the certificate (Cloudflare free cert. has this issue too)
- all the LE certificates are published in Certificate Transparency logs. So you can detect if anyone issues a cert. for your domain, but anyone can view the certificates you issued.
With a wildcard certificate, the subdomains used are not public.
Note this issue applies to "internal" subdomains too. You probably don't want to expose the hostname of your backoffice (admin.mycorp.com) or your new top secret project (linux.microsoft.org).