Kevin

1.2K posts

Kevin banner
Kevin

Kevin

@KevinRedDot

#ipv6 and #cybersecurity nerd. Used to look at consoles and network dumps. Now mostly looks at PowerPoint. #StandWithUkraine

Katılım Ocak 2022
398 Takip Edilen44 Takipçiler
Kevin
Kevin@KevinRedDot·
Bye! kevinreddot@ioc.exchange
HT
0
0
0
36
Matthew Green
Matthew Green@matthew_d_green·
This letter is pretty amazing. It’s from a Senate Armed Services member explaining how they’re going to build the infrastructure to monitor most Internet users, network-wide using private DNS metadata.
Wolfie Christl@WolfieChristl

"Both DNS and Netflow from them will be a goldmine. The fact that they have international recursive traffic - something that we only really get from Neustar - is just mind blowing" FOIA records on Georgia Tech, DoD and others with some additional detail: undeadfoia.substack.com/p/new-email-sh…

English
13
152
394
156.7K
Kevin
Kevin@KevinRedDot·
@FernandoGont @Enno_Insinuator Jen long was an apologist of /64 per host for predictable addressing. I think I heard her talking about it at least 5 years ago.
English
0
0
0
43
Ru Campbell
Ru Campbell@rucam365·
Seeking opinions: If you’re “cloud only”, what are you using as an alternative to Active Directory Certificate Services?
English
30
10
83
30K
Kevin
Kevin@KevinRedDot·
@UlfLundh @acjuelich @rucam365 Service to service authentication in a cloud, client to service authentication for ZTNA, client to network authentication in the office.
English
0
0
0
52
Robert White
Robert White@etihwdtrebor·
@matthew_d_green This is why I run my own private DNS servers, use ODOH resolvers, and route my entire network (including DNS queries) through a rotating set of VPNs.
English
3
0
11
1.5K
nixCraft 🐧
nixCraft 🐧@nixcraft·
I always used Nginx or Apache. There was a time I used Lighttpd too. What web server do you guys roll out these days for a new project?
English
155
24
380
145.8K
Dushyant
Dushyant@DevDminGod·
@big_red_s @geospacedman @nixcraft yea, I just tell new ppl, look at the keyboard -- it makes a shape zxcvf -- c for compress x for extract.. easy to remember
English
1
0
1
136
nixCraft 🐧
nixCraft 🐧@nixcraft·
Which Linux command has the most challenging and confusing syntax to follow even after reading the man page?
English
250
41
513
194.6K
Kevin
Kevin@KevinRedDot·
@Lisias @nixcraft This is easy to check: IETF discussions and mailing lists are public. Can you point to the evidence of this claim?
English
1
0
0
24
Lisias జ్ఞా
Lisias జ్ఞా@Lisias·
@KevinRedDot @nixcraft Well.. So they didn't listened to the guys, because this is what people I known on the telecoms around here told me: they didn't listened to them.
English
1
0
0
20
nixCraft 🐧
nixCraft 🐧@nixcraft·
Why is IPv6 such a failure? Is it next to impossible to go with IPv6? I tried recently, and half of the stuff doesn't work. Beyond our tech bubble, most people don't care about it. Even many service/API providers avoid it. Is IPv6 hard to understand?
English
93
42
450
0
April King 🌀
April King 🌀@CubicleApril·
I’ve been using FaceID as 2FA to sign into @okta for years now, but since upgrading to 16.2 it now asks me to scan a QR code… on a device running iOS 16 or higher. I have no idea how to do this at all, I can’t scan the QR code in this way. 🤔
English
3
0
15
4K
Colm MacCárthaigh
Colm MacCárthaigh@colmmacc·
@robertgraham Nobody puts periods inside parenthesis. Putting a period inside a quotation feels very inconsistent and like a violation of linguistic recursion.
English
1
0
1
0
Robert Graham
Robert Graham@robertgraham·
They go either way. It was a TYPOGRAPHICAL standard set during the 1800s. It was the PRINTERS who formatted text this way, not WRITERS. It allowed for better KERNING, placing the period underneath rather next to the quotation marks.
English
7
3
39
0
Kevin
Kevin@KevinRedDot·
@willnorris @jankatins @Tailscale Since you cannot do a reproducible build, partial source code availability might not be relevant from the trust perspective. Yes, Thompson’s seminal paper is a good illustration of the problem.
English
0
0
0
0
Tailscale
Tailscale@Tailscale·
When you use Tailscale, we can't see your traffic - but we are responsible for distributing the public keys for your tailnet. What if we maliciously added new nodes to your network? With tailnet lock, you don't have to trust us.
English
2
15
139
0
Kevin
Kevin@KevinRedDot·
@pudgenet @noIPv6 They do **rely** on IPv6 because they ran out of RFC1918 addresses.
English
0
0
0
0
Pudge 🏒
Pudge 🏒@pudgenet·
@noIPv6 Facebook datacenters do not **rely** on IPv6. No reason they could not have used IPv4 internally. It scales well enough.
English
4
0
0
0
Pudge 🏒
Pudge 🏒@pudgenet·
Does anyone rely on IPv6 for *anything*? I never have.
English
14
1
8
0
Kevin
Kevin@KevinRedDot·
@noIPv6 Does “the Internet” “VPC” count?
English
1
0
1
0
Kevin
Kevin@KevinRedDot·
Recent Chrome upgrade caused Chrome to lose platform FIDO authenticator on Windows (i.e., Windows Hello). They also changed terminology and now it's "passkeys enrollment". On top of it, they thought nothing better than using QR codes to bind the authentication flow to Android
English
2
0
0
0
Kevin
Kevin@KevinRedDot·
@timcappalli If you have a hint what to look for in RP, I greatly appreciate that.
English
0
0
0
0