HN user

JepZ

2,073 karma
Posts26
Comments674
View on HN
sivers.org 7y ago

Derek Sivers on E-Myth Revisited (2004)

JepZ
3pts1
www.feralinteractive.com 8y ago

Rise of the Tomb Raider for Linux has been released

JepZ
5pts0
blog.golang.org 8y ago

Go 2017 Survey Results

JepZ
139pts48
medium.com 8y ago

Rusty Russell: The Corrosion of Ethics in Cryptocurrencies

JepZ
90pts75
nextcloud.com 8y ago

Nextcloud 13 Release

JepZ
12pts0
github.com 8y ago

Nextcloud 13 Download available

JepZ
5pts3
blog.golang.org 8y ago

Golang: Hello China

JepZ
3pts0
the-echoplex.net 8y ago

FlexBox Playground

JepZ
73pts13
www.reddit.com 8y ago

Reddit 2018 (without Net Neutrality)

JepZ
5pts0
play.quantumgame.io 8y ago

Quantum Game with Photons

JepZ
154pts50
github.com 8y ago

A web powered tmux client

JepZ
2pts0
www.mozilla.org 8y ago

Firefox 57.0 Downloads are live

JepZ
2pts0
www.phoronix.com 8y ago

Quantum-Ized Firefox 57 Ready for Download

JepZ
2pts0
github.com 8y ago

A Smart JSON Schema Generator

JepZ
3pts0
github.com 8y ago

App Store Optimization Information Lib

JepZ
1pts0
blog.golang.org 8y ago

Golang: Contributors Summit

JepZ
2pts0
www.kickstarter.com 9y ago

Fanless Chassis for High Performing PC: NSG S0

JepZ
1pts0
github.com 9y ago

CoVim – Collaborative Editing for Vim

JepZ
142pts22
cs-people.bu.edu 9y ago

Introductory Number Theory and Abstract Algebra for Computer Science

JepZ
2pts0
www.youtube.com 9y ago

AMD Presents New Horizon (live)

JepZ
6pts1
serviceworke.rs 9y ago

JS ServiceWorker Cookbook

JepZ
2pts0
blog.golang.org 9y ago

Introducing HTTP Tracing

JepZ
189pts58
matrix.org 10y ago

Clients for the Matrix Protocol

JepZ
3pts0
www.humblebundle.com 13y ago

Serious Sam Collection as Humble Bundle Weekly

JepZ
1pts0
www.humblebundle.com 13y ago

Humble Double Fine Bundle is available now

JepZ
72pts24
steamcommunity.com 13y ago

Left 4 Dead 2 (beta) available on Steam for Linux

JepZ
4pts0

If you run a federated server, not all contacts might use the same server. With end-to-end encryption that doesn't really matter.

EDIT: Moreover, trust is not binary. So while your family might trust you, maybe your dad doesn't want you to be able to read everything he writes your mom or so (you get the idea).

Sadly I don't. I have mine running since a while, and some things might not be state-of-the-art anymore.

The server doesn't really have to support end-to-end encryption as that is part of the clients (in fact, there are some server-side extensions which have to be present, but those are mostly enabled by default).

Afaik, the default ejabberd configuration is very close to what you need, and there is just one part that you have to remove to enable OMEMO [1]. I don't understand why but recently the ejabberd devs introduced that part to their default configuration which makes it harder to use end-to-end encryption.

Nevertheless, if you are very interested in a detailed guide, I could write one as I am thinking about setting up a secondary server as a testing environment.

[1] https://github.com/processone/ejabberd/blob/master/ejabberd....

Well, while I dream the same dream, it feels awkward asking my family and friends to pay 5€ per year so that we can share the cost of running our XMPP-Server. Currently, I pay all the bills and manage the server myself (so no cost/effort for them), and they still keep using WhatsApp with most of their contacts.

I don't know what the root of that evil is, but there are undoubtedly multiple factors involved. First of all, most people have WhatsApp already.

Secondly, it is effortless to use. With federated systems, you always have to choose a provider. Once you have overcome that hurdle, the privacy-sensitive people like us do not want to share their address book with the server so finding your people is a manual setup for everyone (another hurdle).

Last but not least, the client landscape of XMPP is still far from perfect. If you want to use end-to-end encryption (e.g., OMEMO) there are finally some clients which work with each other (Android: Conversations, iOS: ChatSecure, Desktop: Gajim), but configuring all that stuff (Server + Clients), is not as easy as pushing a button. Other features like video calls are still very fragmented and rarely work if different clients are involved.

I think it would take ten dedicated developers about a year to fix all those problems (if they would agree on common goals and focus on those) and even after that, we would still have to sell the product.

Yeah, maybe I am a bit too negative about the format itself. My problem with the Flatpak only approach was that it was kinda hard to get it to run at all and it didn't work particularly well, so I ended up with putting some work into it while ending up with an unsolved problem (stable Linux desktop SIP client).

So maybe this is not an inherent problem of this technology and will work better in the future.

Why is it problematic when people hide their identity? I mean, if the criticism is valid, what does it matter who said it?

I think hiding the identity is not the real problem here. To me, it looks more problematic, that the critique is not very constructive, one-sided and loaded with imputations.

Well, you are comparing apples and oranges here. The equivalent AWS service would be EC2 and not S3. I know that you didn't start with that (as gprasanth put them in the same race), but it should be clear those two have different redundancy levels.

In fact, I don't know where AWS nor Hetzner stores the 'disk' of the VPS or even the backups. And while those are undoubtedly essential attributes for enterprise-level services, I think especially for side projects the usability of the service is quite relevant.

12 Factor CLI Apps 8 years ago

7. Prompt if you can

Please don't. There is nothing wrong with interactive tools, but by default, they should not be. So instead of making non-interactive session possible via flags, the default should be to be non-interactive. If there is an option to start an interactive session, everything is fine.

Otherwise, you would never know when your script could run into some kind of interactive session (and therefore break; possibly after an update).

I still miss Wave... In my opinion, Googles biggest failure was the missing real-world federation. They promised us, that there will be a server to run on your own hardware and yet it took them years to release anything that was usable. Even years after the open source release the software was quite unstable.

Paired with the missing backward compatibility with email those two are the most important aspects of why Wave failed IMHO.

[...] no language barrier because so many people here speak English.

I wonder how you came up with that one. From my experience (I am German myself), Germans are not good at English. It is not so bad within the large cities but in the countryside, good luck. Just take any of the Scandinavian countries and you will find that they have a higher percentage of people speaking English.

Living in Germany without learning German is a hard challenge. However, speaking German with an American accent is sometimes considered cool ;-)

I am sorry, but that is no BS, just pure facts. Granted the PC is not very powerful (CPU: AMD E-350), but the story is true. When the update started, I thought 'Shit that thing didn't just reboot itself. Okay here we are, that will take one hour max.'. But in fact, it took about 4 hours.

If you want to use Windows, just do it. But if you had to experience what it feels like when Windows thinks it is time for an automatic-forced-reboot-update which takes 4 hours the day you have to submit a thesis, then you might know why I am not so fond of Microsoft products anymore...

By the way, later that month I learned that I had been lucky as some people ended up being stuck within the update.

Well, yes, in fact, I was complaining about the Same-Origin Policy, and CORS is just the consequence of the way the SOP works. Nevertheless, this doesn't really change the situation.

If the browsers separated the session by origin (as blauditore wrote), the whole problem space would look very different.

I never really understood why we have CORS. I mean, the problem with CSRF is that some random page can trick your browser into adding its authentication token to a request which does not originate from the authenticated page. So why the do we need the server to tell the browser that it should not send requests from other origins?

In my opinion, it would have been much better to improve the browsers to not include cookies in 3rd party requests automatically (only when they are explicitly specified via JS for example). It should have solved the issue equally well, without introducing some bulky server-side security feature to remote control browsers.

In general, I agree that juniors tend to skip useful information, but it depends a bit on the technology you are working with. PHP, for example, was known to report the error for the line after the one you forgot the semicolon at or at the line after the last line of the file when a parenthesis was missing somewhere.

While there is a reason why it did so, those are error messages which are quite hard to understand the first few times they occur to you.

Nevertheless, those lousy error message should be exceptions nowadays, and if you are using decent technologies, the chances are much higher, that you just didn't read the error message not careful enough to understand the problem.

Questions 8 years ago

While I like your way of thinking, I don't think the argument applies. The game itself doesn't possess any kind of AI and is somewhat static, more like a sudoku book: There are lots of puzzles, but you know it when you have solved one.

The one-on-one tutor idea is that you have a master who sees the mistakes the student makes and gives him an exercise to target precisely the misconception the student might have in his head.

The Witness, on the other hand, doesn't possess such intelligence. Instead, it is a carefully crafted series of puzzles which slowly broaden the possible moves. Most of the time every next puzzle requires you to learn a new part of the rules. Sometimes you assumed that part anyway, and the puzzles are easy. But sometimes you have to find out that misconception in your head and replace it with something correct which makes the puzzle harder.

So one concept includes an intelligent observer while the other is more like a perfected text book.

Questions 8 years ago

There are other ways of making sure the student understood the concept. Recently I played the game 'The Witness'. The whole game is about learning new puzzle rules, and yet there is not a single dialog within the game or even text explaining those rules.

I am not saying that their technique is the most efficient (e.g., adding hints would undoubtedly increase the efficiency, but also ruin the game experience), just that there are other methods of making sure a student understands a concept. You don't necessarily need the one-on-one conversations. Those conversations are mostly useful to round up incomplete teaching material (again, I am not saying that creating perfect teaching material is easy).

Questions 8 years ago

I think the One-on-One Tutoring things is something the AI current movement could make a difference. Everybody seems to be obsessed with building really cool stuff, but our teaching system is quite obsolete and could get better by adding smart systems.

That said I must to add, that I am referring to teaching humans who are 12 years and older (IMHO young kids require physical interaction if you want to avoid psychological conditions).

Questions 8 years ago

There are very few people who want to read many books that are 1000 years old. The few books that interest more people can be converted to newer formats, the few people that want to read all old books will have to use extra tools to do so.

That said, I am not a particular fan of books. They take a lot of physical space, are heavy and age. So as long as we stick to reasonable formats (e.g., text-based, non-binary), it should not be too hard for future generations to use our books.

Using DRM, on the other hand, might make things complicated.

Two years ago I wrote a little Progressive Web App which stores its data in an offline cache (browser) and syncs to my Nextcloud via WebDAV. IMHO that has pretty much the same advantages that Solid proclaims.

I mean, in spirit I seem to value the same things as Solid (decentralized, own your data, etc.), but what I don't understand is why it has to introduce so many abstract/new names when it wants to be 'simple'?

Building on top of the Semantic Web concepts isn't going to help either as it has enough disadvantages of its own (e.g., complex standards without adding any real value).

DuckDuckGo Traffic 8 years ago

On the one hand I see the issue too, but on the other hand, it is very useful, and it looks like those tools are some kind of open source collaboration:

https://duck.co/ia/view/color_picker

I don't know who controls the contributions and decides what is going to be included in the final result, but so far it looks just fine to me. After all, they still present the normal search results below the tool.