HNHacker News
TopNewBestAskShowJobs

cryptarch

1,001 karma · joined July 28, 2016

submissionscomments
cryptarch··on Instead of containers, give me strong config and deploy primitives
I agree the code quality and "feature parity"/consistency with Docker is absolutely crap. I'm now hoping K8s will provide a better experience while also being more amenable to quick and scalable AWS deployments.
cryptarch··on Wikipedia blocked in Turkey
Do you have ideas on how to fix that?

I recently heard "land-ownership tax/renting land from the state instead of owning it" and "100% tax on death/abolish inheritance", I think they're interesting but not without problems.

cryptarch··on Wikipedia blocked in Turkey
I guess we agree on more than I thought we did.

This is why I insist on working as a contractor and not as an employee: I want to own my intellectual property until I choose to sell it, and I want to create and sell a product that's useful, not be paid for my time.

cryptarch··on Instead of containers, give me strong config and deploy primitives
That's interestig to me, the Rancher bit: I went the route of writing down all my routine docker-compose invocations in a Makefile and I gave that to the devs with builtin documentation (list of targets + examples of workflows), but I see how Rancher could standardize that.
cryptarch··on Wikipedia blocked in Turkey
I have nothing.

I sometimes miss having more black-and-white opinions. Real life is hard.

cryptarch··on The Boring Company [video]
>> The only scalable transit solution is mass public transit.

This is the idea I was responding to. I think cars are mostly practical in suburbs and rural areas (I live in a city and basically only bike and walk), mass transit isn't the best solution for all personal transit.

cryptarch··on Wikipedia blocked in Turkey
Be the change you want to see!

Go ahead and abolish all your own property, you're free to do so.

Or was it more about you wanting to be entitled to product of your fellow man's labor?

cryptarch··on Wikipedia blocked in Turkey
I don't agree at all, I think it's important to integrate immigrants in a country's culture as well as possible, because not doing so will result in damaging conflict between the existing population and the immigrants who bring conflicting value systems with them. I think the lack of an endless supply of resources for integrating immigrants is a good reason to limit immigration.

I think borders can be very valuable to separate groups with conflicting ideologies and worldviews, but I wish you the best luck in advocating that policy in your local political sphere.

cryptarch··on Wikipedia blocked in Turkey
>> so device walled gardening has nothing to do with information access generally.

I disagree, on iOS specifically you have no practical way to install/sideload your own applications and thus what you can and can not do is wholly controlled by Apple. Applications determine what parts of the Internet you can actually use.

My impression of "Fake News" is that it is a new push for political correctness and censorship in news publications, while it does not improve things like the quality, transparancy and trustworthiness of sources and references of news.

It could also be interpreted as a push for platform control; if you want to influence people using our platform, fucking pay for it!

cryptarch··on Wikipedia blocked in Turkey
Race != religion, and it is in no way unreasonable to judge people for following backwards religious doctrines that are a danger to the people themselves and their surroundings.

"I'm sorry, but we've decided you're not a cultural fit" is a reasonable response to Turkey wanting to join the EU in its current state IMO.

cryptarch··on Wikipedia blocked in Turkey
In the case of western Europe, we should care because we don't have internal OR external border controls, and Turkey is a neighboring country with a lot of refugees to dump on us.

I wish I understood why there isn't a move to reinstate border checks in the Schengen area.

It seems ludicrous to me to keep internal borders open when it is clear that the external borders have failed.

cryptarch··on The Boring Company [video]
That's only economical in very dense urban areas, though.

I live in the Netherlands which is a very densely populated country, and anywhere outside the city center or early/late on the day, the busses go every 30 minutes or hourly. At night there are barely any options, esp. between 2 and 6 AM.

cryptarch··on Passing the Baton
You mean that some developers are paid to implement things by companies? Fair enough, though I'd still argue it's not developed commercially because no one pays to get access to the result (they only pay to influence the result).

>> sure, come visit me in hungary

That'd be amusing, maybe sometime this summer? I'm kinda busy right now setting up my business :')

Let me know when you're around the Benelux, we could do the key-siging song-and-dance over a coffee or beer.

cryptarch··on Instead of containers, give me strong config and deploy primitives
You didn't ask me, but here you are:

I'm using docker-compose as well but I'm looking at moving to Minikube, so I can more realistically test my K8s clusters before sending them down to CI/staging.

I also don't want to maintain both docker-compose and K8s as I basically am ops by myself and I have NaN tasks in my backlog.

cryptarch··on Instead of containers, give me strong config and deploy primitives
What if you're in the ground-zero scenario: there is an application but practically no infrastructure?

I'm in that situation now (with a SaaS product), and my approach so far has been:

* set up tests

* set up Docker images

* set up docker-compose for easy local deployments

* do lots of work to make the app behave inside Docker

* take control of AWS and IAM using CloudFormation, making it easy to set up and roll back permissions

* bootstrap KOPS/K8s with CloudFormation

Future work:

* set up Jenkins CI on top of K8s

* K8s deployments of the app for CI

* staging K8s deployments

* K8s in production

This has been my first venture in operations and it's been very interesting and rewarding, but at times it gets very intimidating to "be" operations with no senior guidance. I enjoy the freedom and responsibility and I feel like I at least have a significantly better grasp on this than anyone else in the company, but I wish I knew of a way to feel like my work was good in an absolute sense, like "definitely good enough".

Has anyone here gone through a similar scenario, bootstrapping ops infrastructure in a small business? Would you have any remarks regarding architecture, or the politics required to make the importance of solid ops and the improvement of software reliability and security clear?

cryptarch··on Spellfucker
Check the 3rd result, it's the lyrics.
cryptarch··on Backblaze: to decrypt your backup, send us your private key passphrase
Oh, thanks for the info, I mixed those up.
cryptarch··on Passing the Baton
What do you mean, the Linux kernel isn't developed for free? Many contributors aren't paid.

And do you have proof that PaXTeam is not paid, if you are indeed PaXTeam?

cryptarch··on Passing the Baton
Link for the lazy: https://unix.stackexchange.com/questions/59020/why-are-the-g...
cryptarch··on Passing the Baton
Is the commercial version (still) GPL'd, though?

You say "burn a subscription", does that mean you assume the patchsets are earmarked? And wouln't simply... two subscriptions and a diff fix that?

cryptarch··on Backblaze: to decrypt your backup, send us your private key passphrase
It doesn't really help if you have multiple terrabytes of data, $250-$1000/month for 1-4TB is definitely a no-go for me...
cryptarch··on Backblaze: to decrypt your backup, send us your private key passphrase
> ZIP

Are they serious? Security conscious users a) still have to give up an encrypted copy of their private key, ripe for cracking, and b) they are supposed to download all their terrabytes of data in zip form, presumably over HTTP with no resume option?

Smh...

cryptarch··on Backblaze: to decrypt your backup, send us your private key passphrase
Do you happen to know if CrashPlan's encryption is any better?

AFAIK AES in CBC-mode is a no-no because it betrays which blocks of data are identical, and that's what BlackBlaze uses.

cryptarch··on The Grim Biology of Being Poor
It's called the "just world fallacy": everything that happens to you is because you deserve it.

Easy worldview to have if you consider yourself well-off.

cryptarch··on A vigilante trying to improve IoT security
I think the issue is less the chance of the lawnmower going wild by itself (because screw that, I don't care how small the chance is, it's not acceptable), and more the chance of the lawnmower exploding, taking out your eye when you trigger it's failure it yourself.

As in, "the chance of getting hacked" < "the chance of the vigilante creating dangerous situations".

cryptarch··on Suicide of an Uber engineer: Widow blames job stress
That's not code and quite annoying because only the first ~24 chars are shown on mobile devices.
cryptarch··on Suicide of an Uber engineer: Widow blames job stress
I've heard this advice many times, mostly in shitty memes and as part of /feels/ threads.

I think the problem with it that if you are at that point, you're already feeling utterly hopeless.

Suggesting that someone who's suicidal:

* willingly loses everything in their life

* starts from nothing

* fights their way through the chaos that is building a new life for yourself

* in a strange and unknown place

* with no support at all

is naive and unhelpful.

To me it also feels pretty dismissive, up there with "you should smile more".

cryptarch··on Suicide of an Uber engineer: Widow blames job stress
And so is the potential cost of not doing anything, so what's your point?

You seem to conjecture that refering someone to a hotline raises the chance of that person commiting suicide, while AFAIK all the evidence points towards suicide hotlines being effective at reducing stress and suicidality.

cryptarch··on Suicide of an Uber engineer: Widow blames job stress
A Signal group perhaps? Think of the children!

(Telegram isn't secure and choosing stickers over security will yield more stickers and less security.)

cryptarch··on Postal: Open source mail delivery platform, alternative to Mailgun or Sendgrid
That's a dedicated ip address, I meant a system to isolate spammers and new users in a relatively low-rep ip address pool.
← PreviousPage 5 of 16Next →