▪█─────█▪

  • 2 Posts
  • 80 Comments
Joined 1 year ago
cake
Cake day: June 19th, 2023

help-circle
  • And despite security recommendations, too many IT depts still force password resets every 90 days…

    It could be for contractual or for insurance reasons. We have some contracts with government agencies that require it, and our cyberinsurance also does. Even though NIST has been recommending for years to do long passphrase + MFA and no reset unless you suspect compromise.

    So yeah, the reason behind this might not be just plain incompetence.


  • Well you see, finding a way to reliably deliver ads via the API would have taken far too much developer brainpower for a company that can’t make a functional video player or a mobile app

    It honestly wouldn’t be that hard at all. You deliver ads via the API alongside actual posts, as if they are an actual post, and forbid altering them in the developer ToS. If you want to be anal about enforcement, run popular 3rd-party apps in an emulator to verify that the JSON returned by the site is unaltered when it’s rendered in the app. You could put this together in a weekend.

    Which really just speaks to quality of talent at reddit, or the management at reddit suppressing that talent. Or both.






  • Edit: on the other hand, does the latest nginx get pulled at time of creation?

    It depends on how you have your docker compose file set up. If you pin the version, no, it’s never going to get updated unless a new version with that exact tag is released. If you omit the tag, it’s going to default to whatever is tagged as latest in the image repository, and that’s only going to actually update the image when you either manually pull the image or relaunch the compose stack.

    If you want it to auto-update without relaunching the stack or manually pulling the latest image, you’d have to set up something like Watchtower and have it monitor that container.




  • Yep. I’m not making a proclamation, just stating an opinion. I don’t have a problem with what they’re doing, and if other people do, that’s fine. Some people like their cucumbers pickled, let them have their pickle.

    I actually wouldn’t be surprised to see it go open source in the future, Microsoft has been doing that a lot recently, like VScode and the whole of .NET and friends like PowerShell. Pretty much the only things worthwhile from Microsoft are already open source, except Copilot.


  • My feelings on the subject is that they don’t live nearly long enough to not give them a simple pleasure like sleeping with their people.

    Even when he wakes me up at 4am because his paws must be licked for 20 minutes.

    Or when he wakes me up at 5am whining to get under the covers.

    Or when he sleeps like this, which is all the time:


  • My feelings on the subject is that they don’t live nearly long enough to not give them a simple pleasure like sleeping with their people.

    Even when he wakes me up at 4am because his paws must be licked for 20 minutes.

    Or when he wakes me up at 5am whining to get under the covers.

    Or when he sleeps like this, which is all the time:



  • and how hard it was to get x11 working

    Oh good God. If you really want to test someone’s resolve, sit them down at an old computer with a CRT and no Internet and have them configure X11 from scratch. Seeing that default X11 crosshatch background for the first time was practically orgasmic after the bullshit I went through to make it work.

    That’s one of those traumatizing experiences I’d completely blocked from my memory until I read your comment.

    Traumatizing experience #2 that just came back to me was getting a winmodem working and connected to my ISP via minicom.


  • Copilot was trained on copylefted code while itself being closed. What was brought to attention by @ralC@lemmy.fmhy.ml isn’t efficacy, but Microsoft’s lack of ethics and social responsibility when it comes to their bottom line.

    I honestly don’t have a problem with that. Everything that it was trained on is publicly-available/open-source code, and I’m not aware of any license that requires you to distribute your modifications if you don’t make modified binaries publicly available, not even GPL. And even then, you’re only required to make available the code that was modified, not related code. And I don’t even think that situation would apply in this case, since nothing was modified, it was just ingested as training data. Copilot read a book, it didn’t steal a book from the library and sell it with its name pasted over the original author’s.

    This isn’t really any different of a situation than a closed-source Android app using openssl or libcurl or whatever. Just because those open-source libraries were employed in the making of the app doesn’t mean that the developer must release the source for that app, and it doesn’t make them a bad person for trying to make money from selling that app. Even Stallman is on board with selling software.

    And even if you take all that off the table, you’re free to do the exact same thing and make a competitor. Microsoft didn’t make their own language model, they’re using a commercially-available model developed by OpenAI. There’s literally nothing stopping anyone else from doing this as well and making a competing service called “Programming Pal” and making their code open-source. In fact, it’s already been done with FauxPilot and CodeGeex and the like.

    So yeah, I really don’t have a problem with it. This ended up a lot longer than I had originally thought it would, sorry for the novel.




  • Gotcha. I’m actually in the process of moving away from Namecheap because of an experience I just had with them. I tried to register a domain about a month ago (the domain my Lemmy instance is on) and it stopped the registration process immediately after I hit the Pay/Checkout/whatever button and told me to contact their support team to register it.

    The error message said it was because the domain name was too similar to something that already existed, and that the support team would have to decide whether I’d be allowed to register it or not. So I went to another registrar and registered it with no issue. I really didn’t like that, and it’s enough to make them lose me as a decade+ long customer. I already use Route53 for DNS for all my domains, so it’s not like I was using them for anything else other than a registrar, so untangling that shouldn’t be too much of a pain.