578 karma · joined November 22, 2012
I've disabled all access to nightlies for win32/win64/mac for now since those binaries will not get update checks/will not be updated in a sane fashion. You should not be using them.
We're still working on a VLC 3.0 release, and will announce it when it's ready and our mirrors pick up all the binaries. Please have patience.
http2 backends support is on the roadmap https://trac.nginx.org/nginx/roadmap - so you can expect it to be implemented.
Is ACME an Internet standard yet?
Is that turning into monoculture?
And I don't understand why I cant (on Android 7) combine fingerprint and then PIN/Pattern to unlock my device. It's mind boggling and completely stupid.
Do they not ask to review source code of the tools they buy and use?
thanks!
proxy_set_header in html5-sse.conf will discard all other proxy_set_header included in proxy.conf a level above: "These directives are inherited from the previous level if and only if there are no proxy_set_header directives defined on the current level", http://nginx.org/r/proxy_set_header
3/ it's not about "better maintained", it's about trusting the internet on sensitive data, which you should never do, because dns is easily spoofed and nginx resolver was not written to operate in a hostile environment. if you don't have a local caching resolver on your machine (which you should), even trusting your cloud provider dns is better than trusting goog one. nginx documentation even says " To prevent DNS spoofing, it is recommended configuring DNS servers in a properly secured trusted local network. " on http://nginx.org/r/resolver
1/ it says "An nginx config for your first million users",
but: worker_connections 768;
2/ html5-sse.conf:
proxy_buffering off;
bad idea for a loaded server / backend
proxy_cache off;
will enable proxy_cache, which is not defined anywhere, so this will actually fail to validate - and proxy_cache is already disabled when you're doing proxy_buffering off;
3/ https.conf:
resolver 8.8.8.8 8.8.4.4 valid=300s;
bad idea to trust anything but a local resolver, why do you trust internet to tell you IP addresses where you will go for ssl stapling info?
Even when you log in via ipv4, and make relevant networking changes (basically enabled DHCP for v6), it will still fail to apt-get update, because eu-central-1.ec2.archive.ubuntu.com is ipv4-only.
Sad.
VideoLAN.org website stats tell me that Firefox hits percentage dropped from 26.3% through Jan 2016 to 21.2% through Jan 2017.
Of course this is not a 100% reliable measure, but stats usually don't lie about that.
Source: I run two big mailman installations.
It really sucks to be stuck with ancient 3.14 kernel on quite powerful things like Odroid C2.