23 Followers
59 Following
492 Posts

Slice of tech and slice of life. I do like both of those

Aka jilleJr or applejag

GitHubhttps://github.com/applejag
Websitehttps://applejag.eu

The Hacker News thread about Go 1.24's crypto/fips140 module being validated by FIPS 140-3 is full of misconceptions and it's too exhausting to reply to them all.

https://go.dev/blog/fips140

https://news.ycombinator.com/item?id=44575607

Before I begin, don't call it "FIPS certified". You have "validated modules", not certifications. This isn't CompTIA.

Broadly speaking, FIPS module validation has very little to do with actual cybersecurity. FIPS doesn't make you more secure.

FIPS is the minimum bar you must clear in order to sell to US government customers. Some non-US entities also care about it, but mostly you only give a shit if you want to sell to the US gov.

If you don't care about that, you don't care about FIPS. You're free!

Most developers shouldn't care about FIPS.

The handful of developers that need to care about FIPS will be well-served by Go's crypto module being validated, as it provides a memory-safe implementation of these algorithms that isn't Java.

In short, FIPS ain't what many HN users think it is.

The FIPS 140-3 Go Cryptographic Module - The Go Programming Language

Go now has a built-in, native FIPS 140-3 compliant mode.

Naturally I'm talking about managed Kubernetes. Not the AWS kind, but more like the Civo or Linode kind

I use #kubernetes for my self hosting. Don't tell me "I don't need kubernetes for that" - why the hell do I want to mess around with mysql, python, and Apache installation via apt-get when I can helm install. "Kubernetes is for getting 99.999% uptime, you don't need that" no bruh I use Kubernetes because it's simpler.

Using a VM is all fun and games until you need to upgrade the software, or host multiple different versions of a database on the same server. At that point it becomes eye-gouging

START DERG
RAWR
END DERG

Hours before midsummer's eve, and I go and puncture my foot with 3 rusty nails.

There goes my dancing, swimming, and sauna plans.

Damn I hate this new #YouTube thing where a video can have different thumbnails. I've never felt more like I was part of a unconsented scientific study before

I might've dug my own grave here, but I have installed Fedora Cosmic Spin

So far it's a little buggy around the edges, but overall works great. I'm a big fan of dnf too so I feel way more at home

I'm gonna do a "rate my setup" and it's just a bondfire made out of computer hardware

Omfg and the pxie boot can't get an IP from my router because "address already assigned"

What does that even mean???

Fuck now I have to find a USB drive to burn

I made the mistake of rebooting my desktop. I had some pending updates. Now it won't boot anymore.

I just want to play some games, but here I am spending my evening reinstalling this crap.

At this point I'm starting to blame Tuxedo OS, but let's see how a different distro deals with my hardware. I might just go with a simple #Fedora or something.

So much for Tuxedo selling a computer that will "just work" with Linux. Not impressed at this point.

#linux #tuxedoos