• 0 Posts
  • 193 Comments
Joined 3 months ago
cake
Cake day: June 23rd, 2024

help-circle




  • I was also with a provider that didn’t offer API access for the longest time. When they then increased prices, I switched, now paying a third of their asking price per year at a very good provider.

    I guess migrating is difficult if the provider doesn’t offer a mechanism to either dump the DNS to a file or perform a zone transfer (the later being part of the standard).

    Can only recommend INWX for domains, though my personal requirements aren’t the highest.





  • Also wildcard certificates are more difficult to do automated with let’s encrypt.

    They are trivial with a non-garbage domain provider.

    If you want EV certificates (where the cert company actually calls you up and verifies you’re the company you claim to be) you also need to go the paid route

    The process however isn’t as secure as one might think: https://cyberscoop.com/easy-fake-extended-validation-certificates-research-shows/

    In my experience trustworthyness of certs is not an issue with LE. I sometimes check websites certs and of I see they’re LE I’m more like “Good for them”

    Basically, am LE cert says “we were able to verify that the operator of this service you’re attempting to use controls (parts of) the domain it claims to be part of”. Nothing more or less. Which in most cases is enough so that you can secure the connection. It’s possibly even a stronger guarantee than some sketchy cert providers provided in the past which was like “we were able to verify that someone sent us money”.


  • Weed makes you question if you should get more snacks

    I haven’t tried it in a really long time though but I didn’t really like it very much. Not that I think it’s bad, but it’s a downer and they’re just not my favorite.

    Acid and 2C-B on the other hand, man. Haven’t tried other psychs unfortunately but I find them both great for their individual effects. Unfortunately, there’s the huge stigma around psychs in general plus the naturalistic crowd that makes up a proportion of psych users will only accept stuff like shrooms, peyote and ayahuasca.





  • Wie haben anscheinend unterschiedliche Definitionen des Begriffs “Anlass”.

    Für eine wirkliche Bewertung der Verhältnismäßigkeit fehlen mir einfach zu viele Details.

    die Einschränkung nach Service Provider wohl kaum andere als technische Gründe hatte und das sonst ein ziemlich vages Kriterium ist.

    Wenn es allerdings das einzige Kriterium ist (wie gesagt, ich weiß auch nur was im Artikel steht), habe ich ja nicht viel Auswahl, d.h. bei Beurteilung der Verhältnismäßigkeit bleibt mir nur noch eine Güterabwägung.


  • Nun ja… in konkreten Fall ging es ja tatsächlich um Kinder.

    Ich hasse das Argument auch, wenn es vage genutzt wird, um windige Gesetze zu rechtfertigen. Hier war die Bedrohung aber definitiv nicht abstrakt. Man kann sich dafür Fragen, ob nicht eine weniger invasive Maßnahme hatte ergriffen werden können (der Artikel beschreibt nicht, ob die alle Nutzer Daten erhoben und dann gefiltert oder erst gefiltert und dann erhoben wurde), aber grundsätzlich sehe ich bei solchen konkreten Anlässen weniger Probleme.

    Davon abgesehen war es keine wirkliche Generalüberwachung, da der Personenkreis auf Telefonica-Nutzer begrenzt war.

    Da der Angeklagte im Verfahren nicht juristisch gegen das Vorgehen vorgegangen ist, wird die endgültige Klärung der Frage der Rechtmäßigkeit wohl noch etwas dauern. Grundsätzlich könnte wahrscheinlich jeder, der im Zeitraum der Überwachung O2-Kunde war, klagen. Ich bezweifle allerdings, dass es dazu kommt




  • The big issue that the author kind of mentions is that while the kernel has all these neat features, the overlaying OS seems to use them in such a way that they’re often not effective. XP before SP1 was a security nightmare and we got lucky that blaster was not working correctly. A secure token for the processes in your session? It doesn’t really help if every process you spawn gets this token with the user being the administrator (I know this is kind of different nowadays with UAC). A very cool architecture that allows easy porting? Let’s only use it on x86. Even today, it’s big news for Windows running on ARM, which the not-by-design-portable Unices have been doing for years.

    Maybe if Microsoft had allowed the kernel to be used in other operating systems - not expecting a copyleft license - the current view is that Windows Is Bad, and the NT kernel is an inseparable part of Windows. And hell, even Windows CE which did run on other devices and architectures, doesn’t use the NT kernel.

    So while the design and maybe even large parts of its implementation may be good and clean, it’s Microsoft’s fault that the public perception of the NT kernel.



  • I, a systems guy, have a better time learning go than nix packages.

    Go is a simple and elegant imperative language (that does come with its downsides); Nix the DSL is a functional language which requires a different way of thinking. Systems usually are operated imperatively, so it’s normal that you’d find it easier.

    It’s not an easy language at all and one might ask if another one wouldn’t do the job better, which is what Guix System kind of explores, but its (nix) design goals make a lot of sense.