HN user

devicenull

886 karma
Posts6
Comments573
View on HN

Which presumably only works if your site is using Cloudflare? Since you wouldn't be MITMing SSL in order to inject this header?

I've been trying to get Fi to resolve a billing issue.... I'm stuck in a loop with support where they keep asking me for a security code, then the next day they'll respond back saying it expired and they need another one. The codes only seem to be valid for 30m, so I don't have any idea why they keep asking for them...

You Need Deli Cups 8 years ago

Just wait until you hear my life hack about using plastic to prevent things from getting wet.

Except many of the big upstream providers don't actually filter anything. HE.net for example, doesn't.

We forgot to create some IRR entries and GTT just accepted our prefixes.

There is essentially no security, it's fairly trivial to hijack whatever space you want. (Doing it undetected is more difficult though!)

Spam is back 9 years ago

It's all clean, except on http://www.spamrats.com (specifically the RATS-Dyna list, and I am not using a home connection.)

That particular list is very well known for doing this. Essentially no one uses them, but they get a bunch of free traffic by being listed on mxtoolbox.

Their removal requirements are fairly absurd anyway (must provide them with a full customer list of everyone using your IPs)

The only way around it is to shadow-ban: - Send blackholed orders to an approval page. - Send blackholed orders an approval email. Train your customer service to know which orders were banned, which weren't.

I don't use woot anymore because they did this to me... and apparently had no process for removing it.

I do, however, often feel like USPS costs me more than UPS and FedEx just because I have to spend time each day throwing 95% of what I get from them in the recycle bin (and that's after I've opted out of everything I can).

I've been using PaperKarma for awhile, which has significantly reduced the amount of junk mail I get. It's been pretty effective, we're down to only a couple pieces of junk mail per day (most of which is stuff for previous residents that I've never seen before)

Yubikey with USB-C 10 years ago

I've worn out multiple USB extension cables with my Yubikey, but the device itself is still going strong.

We haven’t talked about toilets but this much is true: they used to work well but the low-flow model is vastly inferior. Combined with low water pressure, toilets clog and break down, to the point that you always have to have a plunger nearby (this didn’t use to be the case). Folks, we know how to make toilets that work: they need lots of water. Your constant problems with flushing are not your fault!

My experience is exactly the opposite. After replacing an 80's era toilet with a modern one, it flushes much better (despite using a lot less water). Water pressure also doesn't effect toilet flushes (excluding commercial tankless toilets), it just effects how quickly the tank refills.

The NTP servers are all run by random members of the community. There's no real coordination between them (outside of being part of the pool), so you can't really rate limit between servers.

The library was only doing a couple request per NTP server, so rate limiting really wouldn't have helped.

If you're doing this right, the management network will not actually be accessible via the normal operating system. Most IPMI controllers support sharing a normal nic and management (meaning both the IPMI controller and host OS can access it), but I wouldn't recommend doing this.

Each of the two physical network connections will connect to a different top of rack router. We want to get a Software Defined Networking (SDN) compatible router so we have flexibility there. We're considering the 10/40GbE SDN SuperSwitch (SSE-X3648S/SSE-X3648SR) that can switch 1440 Gbps.

Noooooo. Do not go for Supermicro for anything where the operating system matters. Their software quality leaves a lot to be desired.

You might want something Cumulus Linux supports, since it seems like you have a lot more Linux experience then networking...