HNHacker News
TopNewBestAskShowJobs

kkamperschroer

55 karma · joined December 23, 2013

Self-employed dev. Contracting on projects I care about with people I care about.
submissionscomments
kkamperschroer··on Ask HN: What is the most impactful thing you've built?
As I was reading your comment I was thinking "whoa, that sounds like Damien or Robert" and sure enough :)

Hope you are doing well!

kkamperschroer··on Ask HN: Is there a cloud music library that doesn't keep deleting my music?
I saw Plex mentioned, but personally I like Subsonic better for music specifically: http://www.subsonic.org/pages/index.jsp

If you're already hosting Plex, what's one more Docker container running Subsonic? :)

kkamperschroer··on Ask HN: Ever been hired through a “who's hiring” post?
I did a couple years ago. Attack Pattern (http://attackpattern.com/). They are still alive and well, but I ultimately had to find a different job when I decided I wanted to go remote.
kkamperschroer··on Gravitational waves detected by LIGO
A useful layman's explanation of gravitational waves and the LIGO experiement: https://www.youtube.com/watch?v=1Tstyqz2g7o
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Nice! The FUSE mounting method for obtaining secrets is similar to how Keywhiz does this. Very cool and novel solution. Though, if you are unfortunate enough to still have Windows servers in your architecture, I think you're out of luck.
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Fantastic. Thank you!
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
So if you potentially need to roll a secret you would just run your deployment playbook limited to the secrets task?
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Cool, thanks! Seems like a pretty direct competitor to AWS KMS. The pricing is identical, so I guess the choice between the two is quite obvious if you are hosted in Azure or AWS.
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
That's very similar to the problem we are encountering. Getting the secrets to the machines at deploy time isn't too bad, but then they are available to a potential attacker.

Accessing secrets as needed at runtime instead requires some kind of extremely reliable service nearby. This is what I find most concerning about Vault since it can lock on you if the cluster goes down.

kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Do you take advantage of Consul's ACL system them for limiting access to secrets? Also, do you have any form of auditing then when using consul?

Thanks for your input!

kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
That's an interesting solution. I guess this would really only work though if you are self hosted, right?

Thanks!

kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Nice, thank you! I haven't heard of that one.
kkamperschroer··on Ask HN: In a microservice architecture, how do you handle managing secrets?
Thanks for the tip. I guess the easiest thing to do is use git-crypt with some encrypted file and have the secrets available at deploy time, but I'm worried about long term disadvantages to this approach. Rolling secrets would then require a deployment of at least that secrets file and restarting the services, or writing them in a way they read the file every time they need the secret.

Since our stack isn't on AWS, it kind of throws out AWS KMS and Lyft Confidant (since it is built on AWS). I'll keep digging into Vault and the other options put forward in this thread. Thanks again.

kkamperschroer··on Ask HN: Who is hiring? (November 2015)
I found my current position at AttackPattern here on HN a year ago, and I really love it. I would highly recommend others check it out.
kkamperschroer··on Show HN: NewTabNotes – A synchronized markdown notepad for Chrome
Currently no, but that is certainly something I could add as options to customize. Thanks for the suggestion!
kkamperschroer··on Show HN: NewTabNotes – A synchronized markdown notepad for Chrome
Looking for some honest feedback on this idea I had for a new tab page replacement where I can keep some notes.

Currently alpha as I have not cleaned up all of my original hacks from a prototype and there is currently no version control.

Source can be found here: https://github.com/kkamperschroer/NewTabNotes

kkamperschroer··on HAproxy in the era of Microservices
Using consul (https://www.consul.io/) in conjunction with HAProxy is another great way for service discovery and routing.
kkamperschroer··on Why we're leaving Heroku
CenturyLink Cloud AppFog is a good alternative. I know, I know, it's CenturyLink and that's concerning to you. Cloud is like a different company entirely.

Disclaimer: I helped build AppFog as a contractor.

kkamperschroer··on Google Says 5% of Visitors to Its Sites Have Ad Injectors Installed
Thanks. I'll add it to my backlog!
kkamperschroer··on Google Says 5% of Visitors to Its Sites Have Ad Injectors Installed
I'm a Chrome extension author and I've been contacted at least a half-dozen times by shady companies that want me to add some "totally unobtrusive" ad-injection javascript into my extension.

I've been told I could make $0.50/user based in the US per month. That would be a nice raise, for sure, but I'm not the type of person willing to sell out my users to make a little extra dough. Plus I am a user of my own extension, and I don't want ad-injection. And how long could one possibly retain users once you start injecting ads? Probably a steady decline until your left with the users that don't know where the ads are coming from.

Selfish plug to my extension here: https://chrome.google.com/webstore/detail/musicality-music-p...

kkamperschroer··on Can you make “big money” as an employee in software?
That is essentially the definition of financial independence, and it's certainly possibly with a job in software. It just involves saving as much as you can afford to and taking advantage of compound interest early on.
kkamperschroer··on 2015 Chromebook Pixel
Linux with Crouton: https://github.com/dnschneid/crouton
kkamperschroer··on Iowa to launch smartphone driver's license
Of course you can fake a plastic card today, however it's far easier to mimic and manipulate pixels than it is a plastic cards look, feel, holographic logos, etc.
kkamperschroer··on Iowa to launch smartphone driver's license
The article makes no mention of this being used outside of law enforcement, but wouldn't this be incredibly easy to fake at a bar, for example? A nearly identical app except it's one where you can change the information. I don't imagine plastic cards going away, in this case.
kkamperschroer··on CERN Particle Clicker
You can even just set them equal to Infinity. Win!
kkamperschroer··on Introducing a simpler, faster GitHub for Mac
My mistake! Sorry!
kkamperschroer··on Introducing a simpler, faster GitHub for Mac
Since it was just released, I doubt many outside of github have an established workflow with this.

Maybe someone with the Windows client can provide more insight, given the similarities.

kkamperschroer··on Show HN: Word.Center – Generate made-up words to name your startup
Thanks! I'm glad you like it. :)
kkamperschroer··on Show HN: Word.Center – Generate made-up words to name your startup
I certainly could. I'll add it to my backlog. Thanks for your feedback.
kkamperschroer··on Show HN: Started.in Seattle – 60+ Video Profiles of startups in Seattle
As someone else mentioned already, BizSpark: http://www.microsoft.com/bizspark/
Page 1 of 2Next →