HN user

louwrentius

4,200 karma

louwrentius.com

Posts103
Comments1,544
View on HN
louwrentius.com 5h ago

I Made My Blog Solar-Powered – A Significant Update

louwrentius
4pts0
louwrentius.com 5d ago

I Made My Blog Solar-Powered – An Update

louwrentius
4pts0
louwrentius.com 22d ago

The AI Mirage or Why I Think the Hype Can't Sustain Itself

louwrentius
6pts11
louwrentius.com 25d ago

I built a 10 inch mini rack from aluminium extrusions

louwrentius
106pts49
louwrentius.com 27d ago

I Build a 10 Inch Mini Rack from Aluminium Extrusions

louwrentius
5pts2
louwrentius.com 1mo ago

I Think Rutger Bregman and the School for Moral Ambition Are Full of Shit

louwrentius
42pts18
louwrentius.com 1mo ago

Rutger Bregman and His School for Moral Ambition Lacks Moral Ambition

louwrentius
3pts0
louwrentius.com 1mo ago

DNS is for people, not for IT infrastructure

louwrentius
63pts98
louwrentius.com 3mo ago

Improve Privacy by Running a DNS Server Without Forwarder

louwrentius
1pts0
louwrentius.com 3mo ago

Improve Privacy by Running a DNS Server Without Forwarder

louwrentius
1pts1
www.youtube.com 4mo ago

Boosting the Tesla tower strike energy

louwrentius
3pts0
louwrentius.com 6mo ago

What Will You Do When AI runs Out of Money and Disappear?

louwrentius
48pts47
solar.lowtechmagazine.com 9mo ago

How to Build a Solar Powered Electric Oven

louwrentius
4pts1
www.youtube.com 1y ago

Playing Music on the Oldest Running Computer in America

louwrentius
1pts0
louwrentius.com 1y ago

My 71 TiB ZFS NAS After 10 Years and Zero Drive Failures

louwrentius
419pts299
louwrentius.com 2y ago

The Raspberry Pi 5 Is No Match for a Tini-Mini-Micro PC

louwrentius
462pts351
louwrentius.com 2y ago

A Review of the HP Elitedesk 705 G4 Mini PC (Raspberry Pi Killer with a Caveat)

louwrentius
16pts7
louwrentius.com 2y ago

AI Is Critically Important but Not for You

louwrentius
2pts0
www.youtube.com 2y ago

We've brought back the internet's first search engine

louwrentius
2pts0
news.ycombinator.com 2y ago

Ask HN: Where to host my personal email

louwrentius
6pts14
www.washingtonpost.com 2y ago

See the moment 43 unionized YouTube contractors got laid off

louwrentius
3pts0
louwrentius.com 2y ago

IKEA $50 Vindstyrka vs. $290 Dylos Air Quality Monitor

louwrentius
2pts0
louwrentius.com 2y ago

IKEA $50 Vindstyrka vs. $290 Dylos Air Quality Monitor

louwrentius
7pts0
www.youtube.com 2y ago

Building Circuit Abominations in Factorio

louwrentius
1pts0
gizmodo.com 2y ago

I Gazed into Worldcoin’s Orb and Saw a Boring Dystopia Staring Back

louwrentius
2pts0
github.com 3y ago

iXsystems is sponsoring stalled ZFS VDEV Expansion feature

louwrentius
4pts0
louwrentius.com 3y ago

My solar-powered blog is now on lithium iron phosphate

louwrentius
131pts72
www.damninteresting.com 3y ago

The Ancient Order of Bali

louwrentius
55pts10
louwrentius.com 3y ago

Benchmarking Cheap SSDs for Fun, No Profit

louwrentius
166pts137
louwrentius.com 3y ago

Benchmarking Cheap SSDs for Fun, No Profit

louwrentius
2pts2

That word 'some' does quite a bit of heavy lifting.

Because there is a ton of work that people tend to perform that falls out the scope of that 'some'. And a lot of work requires alignment with other people, and so on. LLMs don't have agency, despite people hyping 'agents'.

Nothing happened to the Nerds. They are all showing their true colours.

They may have shared a love for technology, what they also shared is a deep immaturity.

The immaturity of a person not wanting to acknowledge and cary any responsibility for other people, for the consequences of their work, for any kind of accountability. Just play with their toys without any concern for the external world.

'I'm just here playing with tech and code'. Sure! but that stuff you're building is being weaponised by other (the venn diagram unfortunately overlaps) tech bro's so men can film women with their glasses in public like the little sick creeps they are. Or steal all their data. You can't pretend you are not responsible and complicit.

They want "what's theirs" and anything in their way - including people - have to comply or be destroyed.

Smart Glasses are for creepy men who want to make pictures of women without their consent in secret. I hope these glasses will be banned.

  Lawmaker Cifrová Ostrihoňová said that, from a gender-based violence perspective, it is "simply unacceptable for any woman to worry about being filmed in public secretly and then worry about those images being shared online.”
100% this

I wasn't talking about an office environment. I'm talking server-to-server communication. Like all the internal infrastructure to support a web application. Maybe I should have been more explicit about that.

How a new device bootstraps on the network without DNS? Depends, on the device, but a physical server doesn't need DNS, only PXE boot / TFTP / HTTP as usual and maybe a proxy to access an update server if you don't run one yourself.

Whatever does the canonical management is the piece that when it breaks everything breaks.

That is absolutely true. I believe that a solution where you provision a text file with an updated ip address or /etc/hosts file is inherently simpler, less risky and easier to recover from, although I admit I don't explicitly state this in the article.

It's interesting as I really address all these things in the article. Not explicitly PTR and SRV, MX records, but these aren't essential within your internal infrastructure. No need to look at MX records if I can just straight up point at the SMTP server(s).

And I explicitly argue within the section about egress filtering that allowing systems access to public DNS is a security risk.

I do state in the article that in the examples DNS isn't the root-cause, but the blast radius is very significant. Regardless of the topic of external/internal services, isn't it remarkable that a group of very smart and well-paid people create such circular dependancies?

Yet, I'm not arguing for Facebook or similar size companies to ditch DNS internally. I'm making the argument for much smaller organisations to pause and think where their own risks lie and if it would make sense to cut out DNS to reduce risk. Whatever process you used as an organisation to update DNS in a safe manner, you still use with the alternative solution, that doesn't change.

That said, even an broken update to /etc/hosts is probably easier and faster to recover from than a broken DNS service that everything is tied to and due to TTL caching, can take much longer to resolve.

- note I was talking about internal infrastructure, not public services

- DNS load balancing is not that important for internal services in most Cases? Would only use it if alternatives won’t work.

- the virtual host issue is really adressed by /etc/hosts, I thought that was obvious, I now regret not explicitly adressing it.

Maybe I’m missing something but because of this kind of risk, an old fashioned virtual machine feels like a more robust security boundary.

I agree, but Capitalism is inherently an unequal system, one group of people own the capital and the rest doesn't. And nobody talks about where that initial capital came from (large-scale theft, wage theft, slavery, and so on).

That means this inherent inequality gives one group tremendous power over the other.

What we really need is a system that doesn't automatically promote psychopaths and sociopaths to the top, the more ruthless, the more money you make, despite the human cost. We need a system that doesn't value money/capital as much, but other outcomes.

And we especially don't need Billionaire Philanthropists. Pay the damn taxes. Yet, this is the site for the Temporary Embarrassed Billionaires, so I know how this will go over...