HNHacker News
TopNewBestAskShowJobs

nix23

4,359 karma · joined May 20, 2020

submissionscomments
nix23··on Oxide pays all employees $191,227 (Bay Area startup)
Having fun and making a cool product is more worth then more money and having to optimize a shitty ad-algo...for example at meta/google.
nix23··on Repairing a tiny ribbon cable inside a 28 year old IBM ThinkPad 701c
Or OpenBSD:

https://www.openbsd.org/faq/faq4.html#Download

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>Customers have been conditioned to blame themselves for any device/product shortcomings, and consider themselves rather unworthy

That's something no one can solve for them, never.

But at least they should be capable going into a "Printer-Forum" and ask.

One then will say: Get a refund or roll back the update, i have the same printer...they do that (the asking) with, for example car's all the time.

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>But fine (pun intended), let's do both.

Absolutely fine with that, plus a massive fine if the refund is not paid back in a fair amount of time ;)

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>The punishment should be blunt, uniform, and intimidating! This is absolutely a situation for fines!

To cover refund is a much bigger "fine" and the money flows directly back to those who suffered, that's not the case with fines, and fines are mostly small change for big-corps.

Just extend the rights of Customers and everything could be fine.

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>The onus is on the customers to realize that the has been an issue,

If the customer has no issues there are no issues right?

>Then there are shipping costs, likely the customers bought it from a local retainer, that may or may not be in business...

Again it's an HP and you send it directly to them, the MANUFACTURER has to cover all costs. Your retailer has not made the update so he should have nothing to do with it.

>The endless emails and phone calls.

One email: My printer (serial-number) worked for two years with that toner, since your update it's not working anymore (error blablabla), roll back that update or send me a shipping label.

>Overall the customers are not in any position of power without a forced recall.

Time to change that then right? Restore the functionality of my device or take it back.

You are making a problem where no are.

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>Only government regulations can keep capitalism in check

That's what i mean, a customer is allowed to return a device/car/whatever and get fully refunded if the initial function of a device changes with no technical advantage for the customer.

Fines brings the Customer nothing (aka you don't get your money back) and is mostly small change for the company, no need to change anything...but paying full refunds for let's say a 4yo device, that could hurt allot.

nix23··on HP outrages printer users with firmware update suddenly bricking third-party ink
>Every manufacturer that abuses this mechanism for anything other than actual security updates should be fined in a way that registers on their stock price and if they do it twice they should be fined out of existence.

No fines, just allow the customer to send back the devices and get a full refund plus all costs covered by the manufacturer...it could be so easy.

Give back the HP and buy a Brother....that would be called a self regulating Market.

nix23··on DNS Resolver Quad9 Loses Global Pirate Site Blocking Case Against Sony
And your local resolver resolves with what?
nix23··on Initial support for guided disk encryption in OpenBSD installer
>Linux Security Modules (LSM) is a framework allowing the Linux kernel to support without bias a variety of computer security models. LSM is licensed under the terms of the GNU General Public License and is a standard part of the Linux kernel since Linux 2.6. AppArmor, SELinux, Smack, and TOMOYO Linux are the currently approved security modules in the official kernel.

https://en.wikipedia.org/wiki/Linux_Security_Modules

nix23··on Initial support for guided disk encryption in OpenBSD installer
>I was asking which one, and the only one I know of is SEBSD, which is not at all massive.

SEBSE is a Framework, MAC is an implementation, those are two different things on different levels.

>MAC framework, but I've never heard of it. What is it called?

It's called MAC...you still don't see the difference?

https://docs.freebsd.org/en/books/handbook/mac/

Look i stop here you have obviously no knowledge of MAC.

>I've been dealing with MAC for 20 years

Yeah no you don't since you don't even know the difference of SELinux and the/a MAC implementation.

nix23··on Initial support for guided disk encryption in OpenBSD installer
>What massive MAC framework does FreeBSD has?

That's NOT what i said, the FreeBSD MAC implementation is big and pretty much feature complete, NOT SEBSD.

>The 'different/other/ ways to secure the system are inferior since they offer no protection if root is compromised.

There is no such thing as "inferior" but different approaches, from completely deleting root as a user to using Container/Jail/Zones, Sandbox's, VM's etc. MAC is one of just many methods and OpenBSD voted against it and went another route (and that is totally fine and understandable).

>I don't think MAC is as hard to use as it was

MAC is still very hard, you are talking about SELinux that is just one implementation called FLASK/TE.

Try to implement Brewer-Nash MAC-policy on a Fileserver and i will see you sweating ;)

But as you can see, there is you and me (in this thread) who understand what a MAC even is, and that on HN....that just tells you how many people really have even a understanding what it even is.

nix23··on Lessons learned from 15 years of SumatraPDF, an open source Windows app (2021)
I add 7-Zip and SpeedCrunch to the list
nix23··on Initial support for guided disk encryption in OpenBSD installer
>Doesn't seem very secure by default to me.

If you don't understand a system it's by definition not secure, keep your hands away or start learning your stuff, or at least don't call it secure (the big word that includes many different meanings)

nix23··on Initial support for guided disk encryption in OpenBSD installer
You are not wrong but also not right, it's something different.

For example FreeBSD has a MAC framework (a massive one btw) and also the "SELinux/SEBSD" framework on top of it (FLASK/TE), but you don't need to use it (not on Linux nor on FBSD).

OpenBSD has no MAC implementation, and with that no framework (SE*) on top of it, but has different/other way's to secure a system.

And TBH i have seen just 3 Customers until now who really develop highly secure/complicated policies (Two use MLS and one uses Brewer-Nash)

I think MAC should be used much more, but it's time intensive and hard to do it right, also to keep the policies clean and understandable need's LOTS of documentation and dedication.

https://www.diva-portal.org/smash/get/diva2:5365/FULLTEXT01.... (2006)

https://hardenedbsd.org/content/easy-feature-comparison

nix23··on Malvertising on Google Ads
>Hy, you know me i am Elon Musk founder of X.com and PayPal

That scam runs actually on YT -> if i where him i would sue the sh* out of Alpha.

nix23··on The lost art of lacing cable (2018)
Ehhmm, thank you very much for the link!! Wow!
nix23··on Atlassian to shed 5 per cent of workers
Both...both :)
nix23··on Denmark’s Welfare State Became a Surveillance Nightmare
They also canceled a holyday to invest the tax into the military :)
nix23··on Atlassian to shed 5 per cent of workers
Making overblown slow software? They are one of the inventors of it.
nix23··on Study finds mushrooms magnify memory by boosting nerve growth
;) It think we all know what the answer is.
nix23··on Phoenix 1.7.0
Got it, thank you two for the answers.
nix23··on Legacy Software Systems: How to Live with Aging Software Architecture?
>meanwhile don't touch it, and, oh yeah, "make it secure"?

Yeah never take such a job, this is the manager trying to screw you.

Security is a big word, from stability to observe-ability to hack-ability, there is no way to secure a system without touching it.

nix23··on Phoenix 1.7.0
>unless you have the horrible idea of using mnesia

WhatsApp used (uses?) mnesia, what is the problem with it?

nix23··on 3dfx: So powerful it’s kind of ridiculous
> Holy cow I found a nest of Microsoft fans. From your link:

It's not a nest, he's is mostly the only one.

nix23··on Norway takes a stance against Google Analytics
>If google analytics was dissolved then some one else will take its place.

Someone that is respecting local law?

>Myspace terrible until facebook came

No one said that, Myspace was a huge expression of freedom in a time where not many could afford a domain-name or a server with decent connection.

>It is not as if VW or SAP or Schufa are decent.

It's Norway, Germany has nothing todo with it since 1945, and no they are not decent, but this is Germany's problems and not those of Norway.

>At the end all these marketing/JS/analytics devs will go to some other local company.

Terrible, having local company's instead of internet controlling behemoths who made it the opposite of a distributed information exchange network (you know the core idea of arpanet).

nix23··on Norway takes a stance against Google Analytics
Yes and the main swiss gov site (www.admin.ch) is running on amazon....including the certificate.
nix23··on Sony's Legal Attack on Quad9, Censorship, and Freedom of Speech
Yep for everything, since ~5 years.
nix23··on Sony's Legal Attack on Quad9, Censorship, and Freedom of Speech
>I feel like Sony should get the benefit of the doubt here

Free market and "benefit of the doubt here" because Sony...that's really something.

nix23··on AmigaOS 3.2
>the Amiga would be far more efficient.

That's not what efficiency means.

Page 1 of 34Next →