• 0 Posts
  • 957 Comments
Joined 2 years ago
cake
Cake day: June 16th, 2023

help-circle


  • I feel like when ‘Zero Trust’ first became a thing, the theme was ‘you should have every endpoint under your control hardened so it need not feer untrusted peers being able to connect’. E.g. if you think you absolutely need VPN to a ‘private network’ for security, then you are failing to be hardened in a ‘zero trust’ way, because you implicitly fear that your systems would fall to untrusted peers.

    I feel like it’s evolved to ‘don’t let anything be able to connect to anything under your control unless you have admin privilege over it as well’. Which is particularly a nightmare when you try to collaborate between two companies, each balking at the other’s hard requirement to have admin access to all network peers of interest.



  • Ours is automated, but we incur downtime on the renewal because our org forbids plain http so we have to do TLS-ALPN-01. It is a short downtime. I wish let’s encrypt would just allow http challenges over https while skipping the cert validation. It’s nuts that we have to meaningfully reply over 80…

    Though I also think it’s nuts that we aren’t allowed to even send a redirect over 80…




  • So on mine, I haven’t bothered to change from the ISP provided router, which is mostly adequate for my needs, except I need to do some DNS shenigans, and so I take over DHCP to specify my DNS server which is beyond the customization provided by the ISP router.

    Frankly been thinking of an upgrade because they don’t do NAT loopback and while I currently workaround with different DNS results for local queries, it’s a bit wonky to do that and I’m starting to get WiFi 7 devices and could use an excuse to upgrade to something more in my control.




  • I’ll agree with this, that my mild annoyance at being 2mph slower than I want to be is greatly reduced by adaptive cruise control. Which means my following distance is nicer and I’m less likely to bother to change lanes.

    Biggest thing is that it doesn’t begin slowing down for traffic ahead like I would like it to, and I don’t trust it enough to see if it even would, but maybe that much engagement is good to make sure I don’t get too complacent.

    Also, mitigating the mind numbing monotony of hours on a freeway. The wheel naturally staying in the center (lane centering, not lane keeping) does a lot for keeping me feeling more well rested on a longer trip.





  • I suppose the thing would be songs that you listened to back then but stopped listening to. So in your case, pink floyd wouldn’t count because it has staying power and you kept listening, rather than “you haven’t listened to since high school”.

    If you randomly pick some billboard hits of the time that you haven’t heard in a while, you realize why no one has played it in a while despite you listening when it was new.

    Music of the (insert decade) is generally better than music of today largely by virtue of having a decade to choose from, versus picking over the most recent year or two