Preferences

count
Joined 3,175 karma

  1. How do you sanitize hardware between workloads?
  2. My clients (extremely large) AWS based infrastructure experienced no downtime this year. So, if it's based on some random person's clients, it's not clearly better at all.

    I don't use cloud flare for anything, so no comment there.

  3. I have some reaallllly bad news for you on that front.
  4. Same capability is now just a storage class in S3.
  5. Having more money than free time but still wanting a thing to get done. Lots of folks pay good money for hobbies (video games, golf fees, bicycle purchases, etc.).
  6. “Everything but a phone” is a tiny tiny percentage of the devices used to consume content on YouTube. It’s not just mobile first, it’s basically only mobile…
  7. There’s lots of those too.
  8. Multiple large scale SAP S4/HANA workloads wasting electrons…
  9. TAMs are super hit and miss. We’ve had great ones (hi Nick!) and not so great ones. ($7-10M/mo customer AWS spend, support is a complicated sliding scale % of that, gogo ES!). Non-ES at smaller customers has been universally useless, except at quota increases.
  10. The service teams don’t talk to each other…
  11. Call it bad luck, but I’ve never had a fully successful restore. Drives eat tapes, drives are damaged and write bad data, robot arms die or malfunction. Tapes have NEVER worked for me. SANs and remote disk though, rock solid.

    That said, I don’t miss any of that stuff, gimme S3 any day :)

  12. You know, it is possible that other folks feel the same way, and that can be taken into consideration. The meeting we hold is scheduled at the very end of the work day. It's a fun way to decompress and chat about stuff with the team that isn't project related (there is a strict 'no project talk' rule - we have other times/meetings/mechanisms for that). It's wild that you automatically assume the worst.
  13. This is how group conversations happen in person at an office too. I think it's fine, and everybody has reported feeling more connected / less isolated during our periodic polls since we started doing it.
  14. We schedule a 2x a week 15-30 minute no-project-talk socialization meeting for our fully distributed team. It helps a LOT. We also have dedicated rambling channels in slack, active much of the day.
  15. Shortening “Norfolk Southern” to “Norfolk” makes this confusing to read. Norfolk is a city (and former HQ of Norfolk Southern). “Union” isn’t shortened the same…

    Also, railroads are already monopoly, it’s not like anyone can lay down new tracks, and operators aren’t required to allow 3rd parties on their networks…

  16. Yeah, I was using Novell DirXML to do XSLT processing of inbound/outbound data in 2000 (https://support.novell.com/techcenter/articles/ana20000701.h...) for directory services stuff. It was full XML body (albeit small document sizes, as they were usually user or identity style manifests from HR systems), no streaming as we know it today.
  17. Disable anti-tracking features and ad blocks, it turns out cookies and temp storage for ad tracking are how IDPs track your choice to trust the device too.
  18. That’s not what the talk is about - it’s using dbms query error logs to spot attackers. Stuff like “table doesn’t exist” or “invalid syntax” on your production database can be extremely high signal indications that something is wrong, potentially maliciously so.
  19. Zane Lackey (with Dan Kaminsky) gave a talk that discussed doing literally that sort of things, back in 2013. Zane went on to found Signal Sciences (acquired by Fastly), doing this sort of stuff in the 'WAF' space.

    https://youtu.be/jQblKuMuS0Y?t=866 (timestamp is when Zane starts talking about it)

  20. It’s regulatory capture for large well resourced companies - keeps the smaller players off the field and unable to scale.
  21. That's uh, not running out of power in the middle of the write. That's having extra special backup power to finish the write. If your battery dies mid cache-write-out, you're still screwed.
  22. The ITAR licensing around their export from the United States and the conditions under which they may be (including flowing down the restrictions clauses) don't expire, generally.
  23. Even HN and Reddit were like that Back In The Day...
  24. Thanks, I keep hoping someone comes up with some magic :)

    Is the intent to run this in-vpc?

    And how do you differentiate from AWS Storage Gateway?

  25. I don't see any other question about it, so maybe I just missed the obvious answer, but how do you handle POSIX ACLs? If the data is stored as an object in S3, but exposed via filesystem, where are you keeping (if at all?) the filesystem ACLs and metadata?

    Also, NFSv3 and not 4?

  26. "We have an alternate implementation / mitigation" gets you passed the hangup, for folks who need the magic words for 'thats dumb. we do it right'.
  27. Is this an ad for Leonardo? 'Greg would only speak to BBC under a pseudonym'...really? There are many professional, military-or-adjacent red team folks who'd gladly speak to BBC with real names and credentials...
  28. To be fair, DO was muuuch sketchier in the past (eg https://www.hackerneue.com/item?id=6983097).

    Launching any multitenant system is HARD. Many of them are held together with bubble gum and good intentions….

  29. https://en.wikipedia.org/wiki/Samy_(computer_worm)

    He uh, is more than an 'attractive youtuber'.

This user hasn’t submitted anything.

Keyboard Shortcuts

Story Lists

j
Next story
k
Previous story
Shift+j
Last story
Shift+k
First story
o Enter
Go to story URL
c
Go to comments
u
Go to author

Navigation

Shift+t
Go to top stories
Shift+n
Go to new stories
Shift+b
Go to best stories
Shift+a
Go to Ask HN
Shift+s
Go to Show HN

Miscellaneous

?
Show this modal