Readit News logoReadit News
confiq commented on Open-sourcing OpenPubkey SSH (OPKSSH): integrating single sign-on with SSH   blog.cloudflare.com/open-... · Posted by u/PranaFlux
slt2021 · 5 months ago
> The SSH server now has the secret you used to authenticate with.

secrets can be made unique per connection and single use

confiq · 5 months ago
this ^

GSSAPI can be more secured than public/private key if configured right.

confiq commented on European Cloud, Global Reach   upcloud.com/blog/european... · Posted by u/Sami_Lehtinen
fer · 5 months ago
> This should be disclaimer at your first message when you compared AWS with UPCloud.

Fair, my bad. Still obviously misleading.

1. DB instances "starting at $144", I have a $63 in my basket at the moment, and also Aurora Serverless charges on resources used and can be potentially cheaper depending on the workload.

2. "$82.8 /mo" for a 2 core 8GB server is actually just under 50.

3. European DC locations: 8 for both. Unsure what UpCloud means for them here[0], they look like actual, individual DCs, but AWS has 8 European regions. Each region has normally 3 AZs which are physically separate DCs (which can be in proximity or not) and can be composed of multiple DCs each. Plus there are localzones depending from certain regions, each with at least one DC (and there are 11 of those). So the AWS number is certainly over 30 if we compare apples to apples.

The rest I don't have time to dive in, or are just opinions (certifications needed for proficiency? really?)

>TBH, I would not trust AWS with countering the Patriot Act.

AWS China wouldn't have happened if they didn't offer enough safeguards. Complying with Patriot Act will guarantee enormous fines for AWS in the EU, so I'm sure legal and finance did their homework for AWS not to end up between a rock and a hard place.

[0] https://upcloud.com/data-centers

confiq · 5 months ago
> AWS China wouldn't have happened if they didn't offer enough safeguards.

AWS China vs. AWS EU: Data centers in China are managed by Chinese companies, whereas DCs in the EU are managed by USA companies.

From a regulatory perspective, it's two different worlds. The Patriot Act can happen in the EU, not in China.

This is why GDPR does allow that EU user data is transferred to non-EU countries, but not to the USA.[0]

Furthermore, a discernible trend has emerged, attributable to the inadequacies in privacy regulations and suboptimal Trump geopolitical strategies with the EU, the EU is actively seeking better cloud services [1].

[0] https://gdpr-info.eu/issues/third-countries/

[1] https://www.wired.com/story/trump-us-cloud-services-europe/

confiq commented on Osgint – OSINT tool to find information about GitHub user   github.com/hippiiee/osgin... · Posted by u/CHEF-KOCH
numinix · 5 months ago
How can you tell? This website doesn't explain what the product is, how it works, or even bother with a privacy policy.
confiq · 5 months ago
It also requires registration to use it.
confiq commented on European Cloud, Global Reach   upcloud.com/blog/european... · Posted by u/Sami_Lehtinen
fer · 5 months ago
Having worked at AWS, no, it's a separate partition under a separate legal entity, and the EU framework is specifically designed to counter Patriot Act, CLOUD Act and the like. It's gonna be similar to AWS China, and potentially more restrictive in some senses. That leaving aside regions we're not allowed to talk about.
confiq · 5 months ago
> Having worked at AWS

This should be disclaimer at your first message when you compared AWS with UPCloud.

TBH, I would not trust AWS with countering the Patriot Act.

confiq commented on European Cloud, Global Reach   upcloud.com/blog/european... · Posted by u/Sami_Lehtinen
sschueller · 5 months ago
> At UpCloud, we are committed to complying with European data protection laws and compliance with ISO 27001. This international standard not only signifies our dedication to maintaining a high level of information security but also ensures that we adhere to recognized best practices in managing and safeguarding your data.

If you want to be Europe only that includes not terminating your SSL at a US CDN provider like Cloudflare...

I just hit "Gateway time-out Error code 504" from Cloudflare trying to open https://upcloud.com/pricing

confiq · 5 months ago
I'm not expecting 100% SLO, but using Cloudflare cloud service while you are a cloud service is little ridiculous.
confiq commented on European Cloud, Global Reach   upcloud.com/blog/european... · Posted by u/Sami_Lehtinen
confiq · 5 months ago
they have terraform [provider](https://search.opentofu.org/provider/upcloudltd/upcloud/late...), that is great!

This is how they compare with AWS: https://upcloud.com/competitors-and-alternatives/aws

confiq commented on SQLiteStudio: Create, edit, browse SQLite databases   sqlitestudio.pl/... · Posted by u/thunderbong
googie · 9 months ago
Author here. I'm surprised and honored to have my pet project here ;) As mentioned in another comment, I'm currently in the process of bugfixing/polishing 3.4.x branch. Then I will focus more on 3.5.0, which will bring many big features. One of them being ERD (read & write).
confiq · 9 months ago
Where have you been all my life? :)

Seriously, I needed this 10 years ago.

confiq commented on Manipulating Terraform states for fun, profit, and reusability   github.com/ergomake/layer... · Posted by u/lucasfcosta
confiq · 2 years ago
hmm, we did something similar using workspaces in terraform. If I would know about this before I might reevaluate it.

It would be cool if we could transfer from workspaces to layerform

confiq commented on Pixel Binary Transparency: verifiable security for Pixel devices   security.googleblog.com/2... · Posted by u/transpute
anon84873628 · 2 years ago
Maybe just lessons learned from SolarWinds

u/confiq

KarmaCake day236July 12, 2015
About
[ my public key: https://keybase.io/confiq; my proof: https://keybase.io/confiq/sigs/e72xiV-tMhn_GIhBDmhc8lMsS8zv3IqZiQLS4doghWg ]
View Original