Note that the creator explained that this method no longer works after Cloudflare patched it: https://gist.github.com/hackermondev/45a3cdfa52246f1d1201c1e...
HN user
m-app
Solutions Engineer @ Cloudflare - but posts/opinions are my own.
Right, that makes sense. But why would you mention your state’s tree anywhere, and why specifically in your robots.txt? Seems pretty random.
What does “OUR TREE IS A REDWOOD” refer to? A quick search doesn’t yield any definite results.
Cloudflare has even seen ERSPAN traffic coming in on 1.1.1.1 due to documentation listing that IP as a default: https://www.youtube.com/watch?v=vR4GbRMAWj8
TL;DW: if you need to use example IPs in your documentation, use the ones listed in RFC3849 and RFC5737!
Regarding your second point: When I initially configured my Cloudflare Tunnels + Access setup, I spent way too much time getting the App Launcher [0] nice and pretty. Seemed really useful seeing as I came from a setup with VPNs and internal IPs, but did not realize that because Cloudflare Access gives you free pretty URLs, I would never look at it again…
0: https://developers.cloudflare.com/cloudflare-one/application...
I have personally been using Banktivity for some years. It’s a great app with decent feature velocity (not too slow, but not too fast either), has decent support for EU banks now, and syncs really well. You do have to be in the Apple ecosystem to enjoy its benefits though.
Something along those lines is actually highlighted for Private Relay connections:
“All connections that use Private Relay validate that the client is an iPhone, iPad, or Mac and that the customer has a valid iCloud+ subscription. Private Relay enforces several anti-abuse and anti-fraud techniques, such as single-use authentication tokens and rate-limiting. This is designed to ensure only valid Apple devices and accounts in good standing are allowed to use Private Relay.”
https://developer.apple.com/support/prepare-your-network-for...
Seems to be quite stable and well-documented: https://www.cloudflare.com/ips/
Edit: but yes, the tunnel ‘thing’ is exactly that! So would be even better.
Was about to link to your older comment I have bookmarked[1], glad to see you sharing your experience once again, Kliment!
Have been using Vimium C for some time and even sponsored because I cannot imagine using Firefox without it. I love the way you can customise everything, although am not sure how that compares to other Vim-like extensions. The developer is also very responsive and helpful, providing work-arounds and quickfixes when needed.
I LOVE the iDrive controller and it is a definite plus for choosing a BMW over another car with a touchscreen only. My current BMW also has a touch screen, but I rarely use it. The iDrive controller is perfect for the BMW-specific UI, but also works pretty OK even with Apple CarPlay. I would not miss the touch screen at all.
There’s not a lot of content to be exchanged between Siberia and Alaska. And running long stretches of fiber over land is actually more costly and subject to failure than under the sea, so going from Moscow -> Vladivostok (or something) over land, then going subsea, and then Alaska -> West-coast US over land, is not really beneficial.
This is such a great piece (once again), too bad it got snowed under. Hopefully dang can add it to the second-chance pool?
Depends on what you may already have! I was looking for something similar the other day, and remembered that I already had some redirects setup under my custom Fastmail domain; turns out they also allow you to host static HTML. You can even generate a dedicated FTP login to automate uploading. This specific case might not apply to you, but perhaps you’re already paying for another service that also offers something like this?
Related video presentation: https://www.youtube.com/watch?v=GQnE0BLEi8k
Although the article does not add anything new, I do have to agree that the way Telegram is positioning itself is rather frustrating: they are really pushing the "secure" nature of the service and try their best to make it seem even _more_ secure than WhatsApp or Signal (eg. speculating other encryption standards are US-funded and therefor not trustworthy), while it is clear that they have made some design decisions that make it less secure. And that's fine!
The user experience is great, and I like the service in general. The fact that it's not tied to an advertising company that is profiling users and making money of it is of course the biggest plus, but please stop with the whole "totally secure" BS. It's confusing and is probably even hurting their image: I have had to explain multiple times to friends and family I finally moved off of WhatsApp that we did not do it for the security, but rather to be free of being mined for personal data... Same thing goes for these non-tech 'news' sources that make a big deal out of it as well, while it's totally obvious if you investigate a bit more.
(Apologies for the rant, I guess had to get this off my chest.)
The actual WHO Influenza update [1] rightfully adds a disclaimer:
The current influenza surveillance data should be interpreted with caution as the ongoing COVID-19 pandemic have influenced to varying extents health seeking behaviours, staffing/routines in sentinel sites, as well as testing priorities and capacities in Member States. The various hygiene and physical distancing measures implemented by Member States to reduce SARS-CoV-2 virus transmission have likely played a role in reducing influenza virus transmission.
But also:
Globally, despite continued or even increased testing for influenza in some countries influenza activity remained at lower levels than expected for this time of the year.
[1] https://www.who.int/influenza/surveillance_monitoring/update...
If you are running a small Clos network and don’t have IPv6 or EVPN [..]
... seem like two relevant qualifiers to choose BGP over OSPF.
Other than that, being religious about a certain technology seems like a bad mindset to hold on to indeed. When you have a certain scale it starts to make sense to question the efficiency of the primary technology in the market for your specific use case.
Edit: essential qualifier for the mentioned mindset added
The last time I looked for an alternative for Google/Apple Maps some months ago, I couldn't really find a decent OSM (or even Mapbox)-based app for iOS. Any recommendations from anyone?
I really like the web-based Openroute Service [1] that was shared here recently, but AFAIK this doesn't have an app version.
Related to this, reading some Chinese science-fiction (mainly Ken Liu's translations of full books and collections of short stories) has made me realize the gap in knowledge I have with regards to Chinese history. In some of the time travel-related stories some dynasties and other historical events are mentioned as easily as we do our Roman or Greek histories for example, which of course makes sense.
Does anyone have any recommendations on books covering the major Chinese historical eras? This article and the diagram in it are a great start that I would love to dig deeper into.
From TFA: "The bill has exceptions: cetaceans can be kept in captivity if they're receiving care or rehabilitation after an injury, or for scientific research."
AFAICT, you can still read today's news, but the major difference being not being able anymore to browse through magazines and newspapers, but their team and algorithms determining what will be highlighted. I feel this is a major step back on an Internet that is already redacted enough on multiple feeds/timelines.
Yes, and this is already happening due to the feature that Macbooks have to connect to eg. BL keyboards and mouses. Perhaps also the "Smart Sleep" function (not sure what it's called exactly) that periodically connects to Wifi to fetch emails so they're there when you open your Mac again. This has happened to me and other folks here in NL, by the way.
Indeed, due to MaxMind's GeoIP location for the middle of the US (when it can't find a more accurate US location) at 38°N 97°W. So unfortunate.
https://splinternews.com/how-an-internet-mapping-glitch-turn...
This is something that seems long overdue, so hopefully it takes off.
Interestingly, the domain is leading me to think on how we have reached a next phase in domain names, where you can not have $product.com anymore, but now need $verb$product.com. Of course what made this click for me is a domain I visit first whenever I (re)install a host: getflux.com
I'm no expert on this, but could this be the reason of the confusion in the picture titled "Section of the Quai de Gare usine: 1892", where the author mentions "A = drying channels (not sure what that means- they look like sewers in cross-section. May just mean 'drainage')"?
This is exactly what has been researched at multiple security companies and productized by Cisco under "Encrypted Traffic Analytics". This is based on research from 2016 that can be found on arXiv: https://arxiv.org/abs/1607.01639
We conclude that malware's usage of TLS is distinct from benign usage in an enterprise setting, and that these differences can be effectively used in rules and machine learning classifiers.
Disclaimer: I work for Cisco
Before anyone decides not to read the article because of this TLDR, this is not the summary at all. Which is more, a new Google gadget (Expedition) requires L2 adjacency which is pretty much always blocked in business environments for security purposes. Furthermore, Google suggest ways to get around this...
I'm just about finishing the Stripe Press re-release. It's an amazing collection of stories in a beautiful book. Can highly recommend it.
It doesn't say what growth – perhaps it's revenue growth, but my interpretation would be network/bandwidth/user/devices growth. The unfortunate thing with these huge service providers is that the number of people they staff to operate their infrastructure grows in conjunction with their network/bandwidth growth. Their operations simply doesn't scale as compared to the web-players who manage their global network with 10-20 people. Cutting costs and automating is something that is long overdue at these companies, and will be imperative when moving to mass-scale 5G networks. I'm not so sure the gains are to be "maximized" as you say, I think actually being able to make a profit will be hard enough in the coming years.