This is very similar to how I started out almost thirty years ago. Static files, a complicated JavaScript navigation, maybe even entirely flash based! Not everyone needs a hyperscaler!
HN user
zeeZ
One of the draft authors is already working on a cert-manager implementation. I'm optimistic it'll make it into cert-manager once the spec is ready and CAs actually start to implement it.
That would be DANE with TLSA (RFC 6698, not the stock ticker symbol). You've still got just another chain of trust with the DNSSEC requirement, and the recent DENIC outage breaking that for the entirety of .de isn't the greatest advertisement :D
Jet Lag videos release on YT one week after they premiere on Nebula.
Consistency would be nice. YT music on Android Auto moved the buttons around again recently. You can still see where the thumbs up button used to be from my fingerprints. It's not smaller and on the other side.
The problem is that until I think 2024, DB paid for maintenance, while the government funded replacements. Of course they let everything deteriorate until it wasn't their problem anymore.
The reform and merge into InfraGO with government funding is supposed to help fix that, but there's a massive backlog.
Everyone using the road following the same set of rules makes their actions more predictable and thus safer (in theory)
It's a German hosting company making a translation error from the German "IT-Branche". The wording doesn't appear in the German version, but very well could have at some point in the process.
https://www.hetzner.com/pressroom/statement-price-adjustment...
Text in full:
There have been drastic price increases in various areas in the IT branch recently. That is why, unfortunately, we must also increase the prices of our products.
The costs to operate our infrastructure and to buy new hardware have both increased dramatically. Therefore, our price changes will affect both existing products and new orders and will take effect starting on 1 April 2026.
We have genuinely tried hard to optimize our costs and to prevent increasing our prices for as long as possible. But we can no longer compensate for the strain that it has placed on our operations. We want to continue to deliver quality products that meet both our standards and your expectations, so we must take this step.
The price changes take effect on 1 April 2026 and are for both new orders and existing products. There is list of affected prices on Hetzner Docs at https://docs.hetzner.com/general/infrastructure-and-availabi....
Maybe this would have helped with something like Mastodon losing non-profit status? https://blog.joinmastodon.org/2024/04/mastodon-forms-new-u.s...
In addition to tax stuff there's a card you can get in most states, issued by cities/districts based on certain criteria, like doing a certain amount of hours per week of volunteer work, that will give you a discount or free entry to museums, pools, movie theaters, events.. There's listings online of all the institutions and businesses that give a discount.
To expand on that, those websites mostly operate on random volunteers self hosting a (starting price) fairly cheap receiver and antenna with an open source stack that feeds the ADS-B data to the website operator in exchange for nothing or free "premium" benefits.
The spoofer could have just sent them fake location information drawing an image using latitude, longitude and altitude for color (in the default view flight paths have different colors based on the altitude of the plane at that point in time).
They could have built an antenna and actually broadcast this data, but that would be a lot more effort and most likely some form of crime.
That data is already available. Including torrents.
Their data is freely available to download. There are weekly dumps of the entire planet and several sources for partial data. There's no need for most legitimate use cases to scrape their API.
It's a universal setting. You have to enable it per third-party app, though. You get to choose whether you want to see them listed with WhatsApp chats or in a separate folder
30% of households living in single family homes is not insignificant. In the villages outside the large cities there's plenty of space to charge your car at home and an increasing amount of solar on the roof.
Not being able to access the web interface where you have to manually upload a new certificate due to HSTS and the old certificate having expired a couple hours ago...
I've been told that since the privatization, the funding was split between DB paying for maintenance while the state provided funds for replacement and new lines. Allegedly this provided an incentive to let things deteriorate until they needed replacement.
Projects are planned, coordinated and funds allocated far in advance, so if the government can't agree on a budget and projects are shelved or canned, restarting the process causes a significant delay.
They can, but the list of "if..." and "it depends..." is much longer and complicated, especially when getting to the part how the obtained information may be used
Last time I had enabled RCS I received a flood of "DHL needs your address" and "Mom I have a new phone number" scams from the UK and the Philippines. So far I'm not aware of anything useful I've missed out on by not having it enabled.
What do you gain from compiling it yourself and never updating versus picking the binary you consider done and never updating that?
For the curious, look up BSI TR-03124 eID-Client and BSI TR-03130 eID-Server for technical implementation, available in English.
There's:
-the ID card which trusts the government PKI and has its own private key and certificate
- the application that does some certificate checks and facilitates communication between the card and an eID server
- an eID server which is connected to the PKI and regularly received short lived certificates to present to the card, does revocation checks, validity checks and a bunch of other stuff. Also provides a list of fingerprints of TLS certificates of eID services allowed for the session
- an eID service which opens a session with the eID server indicating requested data and ultimately receives this data from the eID server. They own the legalese certificate of which data they have access to.
- maybe another provider wrapping all this and the required certifications,. compliance and hardware into an easy to use API. But could also all be the same.
It could be argued that the government has influence on the eID server providers - which do the actual communication with the card and are the first to receive the data before passing it on - via access to the necessary PKI, but they're not directly involved in the communication.
There are some steps missing.
The card communicates with an eID server via the app. This server is connected to the PKI and receives a new certificate daily-ish and also has a revocation list of blocked IDs. There's a ridiculous amount of regulation for hosting one yourself, so you get that service from one of the two or three who provide it as a service.
ID data this eID server received from the card is then sent to the eID service that initiated the session, which may either be the entity who needs it, or another service provider who wraps another set of regulation requirements and complex eID server API calls into an easy to use API for their customers.
ID data isn't actually shown to the user in the app unless it's a custom implementation that loops it all the way back from the service provider at the end.
That "small sample of telemetry and spying domains" also contains login pages and update downloads, among others. You're just saying everything Microsoft is telemetry and spying, here are all their domains.
From the video you can also see that it's moving backwards.
The Japan Rail Pass has gotten a price hike recently and now it feels like you have to keep chasing trains a lot to make it worthwhile. The regional passes are a bit better, but still require more moving around than I'm comfortable with for a vacation.
The Deutschlandticket is only valid for up to Reginald lines and not on faster trains like IC and ICE. It's already worth it money wise for the first trip already, but only using local connections adds at least an hour per trip between those cities, plus a bunch of layovers.
It feels similar to people conflating green https check marks in browsers and trustworthiness.
It doesn't allow for different extensions though. I need to use a full profile in order to use separate bitwarden accounts, for example.
That list contains a lot of Microsoft services and login urls and seems to be more than just telemetry, though