1,068 karma · joined October 1, 2008
"No SPF records found"
Looks pretty spoofable.
Pushing more of the stack into hardware is probably a good idea for single-tenant datacenters that can deploy a lot of e.g. Redis appliances, but those of us just renting capacity in the cloud are going to suffer from Amdahl's Law if you can only accelerate the part of the system adjacent to real hardware NICs.
Dropbox Family, please!
I finally gave up when I ran into bugs in the Rails provisioning scripts that only appeared on initial deploy (or re-deploy; I forget). I had to patch and overwrite them, which was very brittle, and it was just easier to use Chef to spin custom AMIs exactly as I wanted them.
Having Docker be the common "configure a system to your app's needs" mechanism shields me from all these details about how EB works, and that's exactly what was needed.
I have a couple of apps running perfectly under EB. This neatly solves my main issue with it.
systemd has apparently elevated itself somewhat above the typical "user space" level, but it's still not a bad idea to harden the interface between systemd and the kernel where possible.
Either it's a trivial point that applies pretty broadly outside of SS, or you meant something more significant and I'm interested in knowing what that is.
In my job I do the very thing you describe. That said, I'm spending a lot more of my day preparing for the more likely risks, rather than the ones I can just dream up. I doubt many people here are posting from their bomb shelters full of emergency food and water rations, antibiotics, radiation treatments, either.
My point is that I could forgive the first lapse. Fool me once, and so on. But Mt. Gox had their precarious position quite expensively demonstrated to them. A competent management team would have made security and fraud management their top priority nearly 3 years ago when they were last caught with their pants down. It's hard to see them as victims in this because they were so negligent in their responsibilities to their customers.
I imagine there's also a bit of outsider-preference going on here. There's no lack of people who could have been hired to implement controls and audits that would have easily caught a slow leak of coins, but they're part of the Obsolete Fiat Economy and thus irrelevant. "Dunning-Krugerrands", indeed.
The only thing I'm missing now is an Android "client" for it.
I would think that the immutability of these data structures would be a bigger difference, both conceptually and in the difficulty of porting CL code into Clojure.