HNHacker News
TopNewBestAskShowJobs

crypt1d

1,375 karma · joined January 7, 2014

nikyc [at] protonmail [dot] com
submissionscomments
crypt1d··on DevOps, SRE, and Platform Engineering
Its relevant in the context of showing just how little weight the 'devops is not a role' view has in the real world :)
crypt1d··on DevOps, SRE, and Platform Engineering
I've been listening to the "DevOps is a culture, not a role" mantras on HN and elsewhere for years now. Meanwhile, I've been working precisely as a DevOps Engineer/SRE and doubling my income every year or two.

The job is what you and your colleagues make it out to be. You are there to fill a certain need and a knowledge gap within the team. Figure out what that is and you are golden.

crypt1d··on DevOps, SRE, and Platform Engineering
You are mistaking your personal experience with various companies and positions to the actual industry standard. I've worked on the same roles as you did and my experience is completely different and very positive.
crypt1d··on Freshly disclosed vulnerability CVE-2021-20090 exploited in the wild
From the article:

> As of August 5, we have identified some attack patterns that attempt to exploit this vulnerability in the wild coming from an IP address located in _Wuhan, Hubei province, China_.

It would be some next-level cyber trolling if the attacks were deploying some kind of a virus.

crypt1d··on BadEconomics: Putting $400M of Bitcoin on your company balance sheet
its certainly not measured on 15minute candles either ;)
crypt1d··on Ask HN: How many hours per day do you work?
Honestly I find your whole question rather puzzling. I mean, I get what you are asking. But the way you are asking seems as if your time is only valuable when you do 'real work' - which in this case I suppose is development work. In the same way you wonder about 'real life' but your life is as real as it gets. It is, of course, quite ordinary to not spend your whole day coding, but working on other stuff as well.

The value you bring to the table is not _just_ in the lines of code you write, or in the hours you spend in front of an IDE. The time spent chatting with colleagues about products, writing that documentation you've been putting off for months (because it not 'real work'), or even reading HN to stay in touch with the latest and greatest in tech, all amount to the value one brings to the company.

crypt1d··on Show HN: TinyPilot – Build a KVM over IP using a Raspberry Pi
Sure, the modern ones are better. But they are also very expensive, and usually only come with the higher end hardware too.

If you are looking for a reasonably priced server today, you are likely to end up with the shitty Java-based KVM.

crypt1d··on Show HN: TinyPilot – Build a KVM over IP using a Raspberry Pi
KVMs have been a the bane of my existence over the last 10 years. Almost 99% of the time they come with some ancient Java dependency that breaks on any modern OS and is barely usable. Not to mention the nightmare-ish KVM experience big players like OVH and Hetzner provide.

This is a superior solution to all of them.

crypt1d··on Intermediate certificate used for issuance of Comodo certs has expired
This is a 20-year old intermediate cert that just expired. I suspect lots of big registars like Gandi use it. We've only noticed after some of our curl system checks started failing.

The expired cert:

-----BEGIN CERTIFICATE----- MIIFdzCCBF+gAwIBAgIQE+oocFv07O0MNmMJgGFDNjANBgkqhkiG9w0BAQwFADBv MQswCQYDVQQGEwJTRTEUMBIGA1UEChMLQWRkVHJ1c3QgQUIxJjAkBgNVBAsTHUFk ZFRydXN0IEV4dGVybmFsIFRUUCBOZXR3b3JrMSIwIAYDVQQDExlBZGRUcnVzdCBF eHRlcm5hbCBDQSBSb290MB4XDTAwMDUzMDEwNDgzOFoXDTIwMDUzMDEwNDgzOFow gYgxCzAJBgNVBAYTAlVTMRMwEQYDVQQIEwpOZXcgSmVyc2V5MRQwEgYDVQQHEwtK ZXJzZXkgQ2l0eTEeMBwGA1UEChMVVGhlIFVTRVJUUlVTVCBOZXR3b3JrMS4wLAYD VQQDEyVVU0VSVHJ1c3QgUlNBIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MIICIjAN BgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAgBJlFzYOw9sIs9CsVw127c0n00yt UINh4qogTQktZAnczomfzD2p7PbPwdzx07HWezcoEStH2jnGvDoZtF+mvX2do2NC tnbyqTsrkfjib9DsFiCQCT7i6HTJGLSR1GJk23+jBvGIGGqQIjy8/hPwhxR79uQf jtTkUcYRZ0YIUcuGFFQ/vDP+fmyc/xadGL1RjjWmp2bIcmfbIWax1Jt4A8BQOujM 8Ny8nkz+rwWWNR9XWrf/zvk9tyy29lTdyOcSOk2uTIq3XJq0tyA9yn8iNK5+O2hm AUTnAU5GU5szYPeUvlM3kHND8zLDU+/bqv50TmnHa4xgk97Exwzf4TKuzJM7UXiV Z4vuPVb+DNBpDxsP8yUmazNt925H+nND5X4OpWaxKXwyhGNVicQNwZNUMBkTrNN9 N6frXTpsNVzbQdcS2qlJC9/YgIoJk2KOtWbPJYjNhLixP6Q5D9kCnusSTJV882sF qV4Wg8y4Z+LoE53MW4LTTLPtW//e5XOsIzstAL81VXQJSdhJWBp/kjbmUZIO8yZ9 HE0XvMnsQybQv0FfQKlERPSZ51eHnlAfV1SoPv10Yy+xUGUJ5lhCLkMaTLTwJUdZ +gQek9QmRkpQgbLevni3/GcV4clXhB4PY9bpYrrWX1Uu6lzGKAgEJTm4Diup8kyX HAc/DVL17e8vgg8CAwEAAaOB9DCB8TAfBgNVHSMEGDAWgBStvZh6NLQm9/rEJlTv A73gJMtUGjAdBgNVHQ4EFgQUU3m/WqorSs9UgOHYm8Cd8rIDZsswDgYDVR0PAQH/ BAQDAgGGMA8GA1UdEwEB/wQFMAMBAf8wEQYDVR0gBAowCDAGBgRVHSAAMEQGA1Ud HwQ9MDswOaA3oDWGM2h0dHA6Ly9jcmwudXNlcnRydXN0LmNvbS9BZGRUcnVzdEV4 dGVybmFsQ0FSb290LmNybDA1BggrBgEFBQcBAQQpMCcwJQYIKwYBBQUHMAGGGWh0 dHA6Ly9vY3NwLnVzZXJ0cnVzdC5jb20wDQYJKoZIhvcNAQEMBQADggEBAJNl9jeD lQ9ew4IcH9Z35zyKwKoJ8OkLJvHgwmp1ocd5yblSYMgpEg7wrQPWCcR23+WmgZWn RtqCV6mVksW2jwMibDN3wXsyF24HzloUQToFJBv2FAY7qCUkDrvMKnXduXBBP3zQ YzYhBx9G/2CkkeFnvN4ffhkUyWNnkepnB2u0j4vAbkN9w6GAbLIevFOFfdyQoaS8 Le9Gclc1Bb+7RrtubTeZtv8jkpHGbkD4jylW6l/VXxRTrPBPYer3IsynVgviuDQf Jtl7GQVoP7o81DgGotPmjw7jtHFtQELFhLRAlSv0ZaBIefYdgWOWnU914Ph85I6p 0fKtirOMxyHNwu8= -----END CERTIFICATE-----

crypt1d··on Ask HN: Any job boards and age-friendly companies for older developers?
Send me your CV along with a desired rate (my email is in my profile).

I can't guarantee anything but we do occasional have contractual work where age doesn't really matter (in my opinion), its all about the attitude and getting the job done. I would even consider your age an asset as you have field experience that a lot of people dont.

crypt1d··on eBay port scans visitors' computers for remote access programs
I'm not ignoring anything. I'm simply stating that this is not an effective prevention method. I'm even going to argue that this can potentially _hurt_ whatever fraud system they have in place, as it could create a lot of false-negatives. Once the fraudsters pick up on this they'll change the ports. From then on, this script is useless.

At best, the result of the data points created by this script is going to create a temporary drop in fraud, which can be used by the aforementioned 'consultant' to claim (premature) victory. Give it a month or two, and the fraud numbers are going to go back to their previous levels.

crypt1d··on eBay port scans visitors' computers for remote access programs
This is suppose to help with fraud? Lets be serious for a moment. The only thing that this is going to change is that the supposedly hacked computers will no longer run VNC on standard ports.

I think what we might be seeing here is the outcome of some overpaid consultant's claim that they can protect ebay from fraud with 'sophisticated' malware detection.

crypt1d··on Tuxedo Book BA15: AMD-only and Linux-preinstalled laptop
I really appreciate how descriptive they are in the specs.

` Battery life: (with our optimizations) about 25 hours at min. display-brightness, without Wifi & Bluetooth, without keyboard backlit, in idle mode about 13 hours at medium brightness with Wifi, at office work

We're testing battery time always in idle mode, at minimal display brightness, with keyboard backlight deactivated, WIFI & Bluetooth disabled and without any further connected devices (USB, LAN, HDMI, VGA etc. unplugged!). This way you get an information of maximal possible battery life. Starting from this you can manage your individual battery life depending on your demands and to influence it e.g. is keyboard backlight unnecessary during daylight. Bluetooth is also only needed to be turned on, if there's a Bluetooth device connected. Full display brightness as well is hardly always necessary. `

or their disclaimer about the display panel:

` Modern displays with IPS panels have bright areas along the frame as a normal characteristic. This has hardly any influence on everyday operation, not least because the displays are optimized for daylight operation. It can only be minimized, but not completely avoided, regardless of the manufacturer and for manufacturing reasons. `

crypt1d··on Ask HN: Best resources to understand enterprise networking and security?
The term 'enterprise networking' is a bit ambiguous, as there is nothing inherently specially about networks in enterprises - its just a different layer of abstraction than what you are used to, probably packaged into hardware and software offerings you didn't have exposure to.

That said, you could learn a lot from resources that focus on networking certification. My favourite have always been the CCNA courses from CBT Nuggets done by Jeremy Cioara.

crypt1d··on Ubuntu Mate 20.04
> Even detects external monitors on plug/unplug.

I can already hear all the Windows/MacOS folks' giggles on this one!

crypt1d··on Apple and Google partner on Covid-19 contact tracing technology
I dont see any mention of it in the current context of bluetooth device proximity tracing. It is possible, however, that apps that will build up on this API will also fetch location history separately from already established mechanisms on each OS.

As a matter of fact I see this as a very likely scenario as this is precisely what South Korea has already done.[1]

[1] - https://www.youtube.com/watch?v=BE-cA4UK07c

crypt1d··on Apple and Google partner on Covid-19 contact tracing technology
I've spent the last 3 weeks with my team building exactly this - contact tracing apps for both android and ios that use bluetooth tech[1]. This will probably require us to redo the app completely to fit into their API plans, but I'm glad they are, in a way, acknowledging our idea.

The troubling thing is, bluetooth-based contact tracing is in no way easy. Different android phones handle background bluetooth scanning / advertising differently and some tend to require additional config changes - such as disabling battery saving features - to even make it work. And iOS bluetooth advertising in background is just bad. Since u can't add custom UUIDs to the advertisement package, just advertising data is often not enough, so u have to connect too, which creates a range of other problems. I suspect they will release OS upgrades to solve some of these issues, but not all devices will be fixable (eg, older Android devices). This, combined with the fact that they will start rolling out this feature in May, makes me think it will not help us much for the latest wave of COVID-19 infections. Might come in handy for the next epidemic, though.

[1] - https://github.com/cryptekio/corridorapp-android

crypt1d··on Show HN: A UDP to TCP proxy server for sending HTTP requests with zero latency
A lot of logging software allows for UDP connections though. Not all logs are critical, and in times when you have close to 100% network saturation, dropping some log traffic to maintain a functional production environment is not a big deal for most.
crypt1d··on [dead]
From what I can tell at least two datacenters are affected. It sucks because we use both for redundancy (they are suppose to be isolated from eachother) so all our products are unavailable. Their internal systems appear affected too (OVH Manager, etc).
crypt1d··on Kitty 0.17 – GPU-accelerated terminal emulator
He comes off as quite arrogant, I wouldn't count on it.
crypt1d··on WHO launches global megatrial of the four most promising coronavirus treatments
Not a doctor, but AFAIK its not considered safe enough. There are quite a few possible side-effects from using some of the mentioned medication, ranging from diarrhea to QT interval changes that could induce cardiac arrest.
crypt1d··on Managed Kubernetes Price Comparison
I don't know why you are being down-voted, you are not wrong - Kubernetes is not something I would roll out at a start of a project. I think people are just excited to try it out so they often overlook the operational side of things.
crypt1d··on Cloudflare is turning off the internet for me
I suspect Cloudflare is doing some form of 'fingerprinting' to flag potential attacks. Fingerprinting is probably based on things like IP, user agent, js being enabled, etc. In this case it seems that Cloudflare only banned a specific user agent with js_enabled=no.

Obviously this is all just an educated guess, since I've worked on building scrapers for cloudflare-protected websites.

crypt1d··on Informer: A bot library that allows masquerading as real users on Telegram
for me, its one of the reasons why I prefer Telegram over WhatsApp. There have been numerous cases when my phone was dead or offline (being abroad/roaming, battery dead, etc) and I wanted to use my laptop to finish that important conversation. The other one is lack of a native Linux desktop client for WhatsApp.
crypt1d··on Civic honesty around the globe
the only non-shocking thing here is an American trying to claim moral superiority over the rest of the world. :)
crypt1d··on We Pay You to Learn to Code
> Currently, you must have the right to work in the US in order to apply.

I wonder why, though? Is there a legal barrier that prevents them from introducing this to foreign students as well? Or is it just because US-based salaries are much higher than in many other parts of the world?

crypt1d··on Ask HN: Who is hiring? (March 2019)
hey there, I've sent you an email a while ago but didn't get a reply so far. Are you guys still hiring?
crypt1d··on Apple Is Blocking Linux User-Agent on appleid.apple.com
I've seen Cloudflare block based on user-agent alone.
crypt1d··on Navigating Bitcoin, Ethereum, XRP: Google Is Making Blockchains Searchable
That was my first thought as well after reading the first few sentences. I actually gave up on reading the article because of it.

Though I've noticed this to be more common in the blockchain/cryptocurrency sphere, perhaps that's just because I tend to read those kinds of articles more often.

crypt1d··on Let's Encrypt: Looking Forward to 2019
Let's Encrypt and certbot have made my sysadmin life so much easier by allowing me to manage certificates within the terminal and without having to deal with annoying CA UIs that try to sell you tons of stuff you don't really need.

And all that for free!

If you are a regular user, please consider donating to the cause: https://letsencrypt.org/donate/ You can make a one-time donation or set up a recurring one.

← PreviousPage 3 of 10Next →