HN user

chadsix

384 karma

DevOps at https://IPv6.rs

My comments are my own.

Posts19
Comments71
View on HN
asht.ar 1y ago

Show HN: Ashtar Is a Task Interface (TI) for AI

chadsix
2pts0
github.com 2y ago

Awesome XMPP

chadsix
5pts1
news.ycombinator.com 2y ago

Show HN: Using the djb2 hash to map IP addresses to readable words for the lulz

chadsix
2pts0
azure.github.io 2y ago

Azure and IPv6: I think we have critical mass boys

chadsix
3pts0
news.ycombinator.com 2y ago

Discuss HN: On the "Best" Language

chadsix
3pts1
blog.ipv6.rs 2y ago

The Truth About VPNs: FAFO

chadsix
3pts1
github.com 2y ago

Show HN: DeLorean – Super Performant IPv4->IPv6 Reverse Proxy in Golang

chadsix
4pts3
github.com 2y ago

Open Source Instant GUI Configurator from a Simple JSON Written in Go with Fyne

chadsix
3pts1
github.com 2y ago

Show HN: Type 'Host Any.ipv4.address.here.visibleip.com'

chadsix
3pts3
blog.ipv6.rs 2y ago

Back to the Past: IPv4 Browsing (Egress) Activated via NAT64

chadsix
7pts1
blog.ipv6.rs 2y ago

Show HN: We Automated *ARR Installation and Setup

chadsix
1pts1
github.com 2y ago

SIMPle TerminAL – Read Online Terminal Output in Fyne Golang

chadsix
3pts1
blog.ipv6.rs 2y ago

Understanding TLS, MitM and Privacy Policies

chadsix
2pts0
github.com 2y ago

Show HN: Cloud Seeder - Self Host with a Click on Your Home PC – Golang

chadsix
7pts1
gist.github.com 2y ago

Space Matters

chadsix
3pts0
github.com 2y ago

Open Source One Click Server Appliances on Your Self Hosted Home Computer

chadsix
1pts0
ipv6.rs 2y ago

Show HN: We Built Cloud Seeder – One Click Self-Hosting with Auto Updates

chadsix
4pts3
www.federalregister.gov 2y ago

We have 4 days to contest KYC being required by internet services

chadsix
512pts372
www.wired.com 2y ago

US Senate to Vote on a Wiretap Bill That Critics Call 'Stasi-Like'

chadsix
81pts22

To be fair, it's much easier than one can imagine (try ollama on macOS for example). In the end, Apple wrote a lot of longwinded text, but the summary is "you have to trust us."

I don't trust Apple - in fact, even the people we trust the most have told us soft lies here and there. Trust is a concept like an integral - you can only get to "almost" and almost is 0.

So you can only trust yourself. Period.

Great point!

We offer 5 because we're geared toward helping people host appliances as opposed to raw network setup! We also offer automatic RDNS with this as well as the Cloud Seeder appliance!

Thanks again for your comments and as well thoughts!

if you have to reason about how the operator will handle legal threats, you shouldn't bother reasoning about the messenger at all.

That's true.

You need to run your own platform people. XMPP is plenty simple, plenty powerful, and plenty safe -- and even your metadata is in your control.

Just self host. There's no excuse in 2024.

Wake up people!

Why should the arrest of someone else affect YOU?

I for one am a fan of the short and sweet. I think it's very straight forward -- if someone follows the video they can do the same, with you, in real time and I think that's great.

Good job and good luck with your speech tomorrow. It's really good that you're promoting self hosting -- this really is the final line for the battle of the people vs big data on the internet.

Awesome XMPP 2 years ago

In light of the issues being uncovered about Signal (storing messages and media encrypted, but storing the key unencrypted on the same filesystem) among other things, I thought it might be worth making sure everyone on HN is aware that Jabber (XMPP) is doing very well.

You should never use an LLM/AI Chatbot with a third party service for anything that could be confidential, private in nature, or may have to do with your security.

All of the LLM/AI providers can read your contents. The only thing between them and your chats is "trust," and we've all had promises broken on us before.

Trust is not security.

Shameless plug: You can definitely use IPv6.rs and Cloud Seeder [1][2] to run Ollama and OpenWebUI on your own computer (confidentially) and access it via TLS remotely (via phone, etc.).

[1] https://ipv6.rs/cloudseeder https://github.com/ipv6rslimited/cloudseeder

[2] https://www.youtube.com/watch?v=g_JyDvBbZ6Q

Then, if your server’s hard drive grows legs and walks out of the data center, your users’ most sensitive data will remain confidential.

Unfortunately, for the server-side encryption at rest use case, that’s basically all that Disk Encryption protects against.

If you aren't able to self host, then encryption at rest is a real use case and the next best thing to actually controlling your data. That being said, obviously self hosting with FDE@Rest is the best.

Or you can end up like the people who lost their data [1][2].

[1] https://spectrum.ieee.org/thousands-of-bitcoins-stolen-in-a-...

[2] https://www.youtube.com/watch?v=g_JyDvBbZ6Q

Just wanted to chime in and say thank you Seth for all of the work you did to create LetsEncrypt.

You've made the internet safer for all of us.

I believe that IPv6 [1] is without a doubt coming in the future. Even with carrier grade NAT'ing and the likes, there are too many major providers who have already switched to single stack IPv6 natively.

That said, I agree that 240/4 is necessary to assist with the transition. Due to the fact that most network operators aren't even dealing with /24's, it becomes increasingly hard to facilitate bridges between the legacy IP and IPv6 so more IPv4 space is always appreciated (until the day we don't need to bridge at all).

[1] I may have a bias due to affiliation with https://IPv6.rs

We do backwards and forwards compatibility between v4 and v6 using NAT64+DNS64 between IPv6 -> IPv4[1] and a reverse proxy (delorean) for IPv4 -> IPv6 [2]. To ensure reachability to IPv4 endpoints without a domain, we use visibleip.com [3].

For our users, it doesn't matter if it's IPv4 or IPv6 - they can reach it, and it can reach them.

[1] https://blog.ipv6.rs/ipv4-activated-via-nat64/

[2] https://github.com/ipv6rslimited/delorean

[3] https://github.com/ipv6rslimited/legacydns

This is the nail on the coffin, but make no mistake, Cloudflare has been a liability. It's a massive Man In the Middle decrypting all traffic, including OkCupid and 4chan for example. Imagine all those 4channers learning they aren't actually anon.

Not sure it's really in their best interest to self-police in the end, as they could lose their DMCA safe harbor provision ?

This.

That said, we're seeing this across so many platforms, from datacenters to social network sites.

They blew their safe harbor provisions years ago and yet remain untouched despite this.

If that's the take, that means Cloudflare is okay with 'breaking laws' so long as they can take a heavy cut of the ill gotten gains? </sarcasm>

Let's not try to find reasons to harm the messenger and stick to the facts -- a paying customer was suddenly extorted for hundreds of thousand of dollars out of nowhere.