23 Followers
59 Following
492 Posts

Slice of tech and slice of life. I do like both of those

Aka jilleJr or applejag

GitHubhttps://github.com/applejag
Websitehttps://applejag.eu

The Hacker News thread about Go 1.24's crypto/fips140 module being validated by FIPS 140-3 is full of misconceptions and it's too exhausting to reply to them all.

https://go.dev/blog/fips140

https://news.ycombinator.com/item?id=44575607

Before I begin, don't call it "FIPS certified". You have "validated modules", not certifications. This isn't CompTIA.

Broadly speaking, FIPS module validation has very little to do with actual cybersecurity. FIPS doesn't make you more secure.

FIPS is the minimum bar you must clear in order to sell to US government customers. Some non-US entities also care about it, but mostly you only give a shit if you want to sell to the US gov.

If you don't care about that, you don't care about FIPS. You're free!

Most developers shouldn't care about FIPS.

The handful of developers that need to care about FIPS will be well-served by Go's crypto module being validated, as it provides a memory-safe implementation of these algorithms that isn't Java.

In short, FIPS ain't what many HN users think it is.

The FIPS 140-3 Go Cryptographic Module - The Go Programming Language

Go now has a built-in, native FIPS 140-3 compliant mode.

Naturally I'm talking about managed Kubernetes. Not the AWS kind, but more like the Civo or Linode kind

I use #kubernetes for my self hosting. Don't tell me "I don't need kubernetes for that" - why the hell do I want to mess around with mysql, python, and Apache installation via apt-get when I can helm install. "Kubernetes is for getting 99.999% uptime, you don't need that" no bruh I use Kubernetes because it's simpler.

Using a VM is all fun and games until you need to upgrade the software, or host multiple different versions of a database on the same server. At that point it becomes eye-gouging

@scm I got some antibiotics, which is my first time trying. New milestone I guess, and actually a little exciting
START DERG
RAWR
END DERG
@scm that I did! I danced sitting down too :)

Hours before midsummer's eve, and I go and puncture my foot with 3 rusty nails.

There goes my dancing, swimming, and sauna plans.

Damn I hate this new #YouTube thing where a video can have different thumbnails. I've never felt more like I was part of a unconsented scientific study before

I might've dug my own grave here, but I have installed Fedora Cosmic Spin

So far it's a little buggy around the edges, but overall works great. I'm a big fan of dnf too so I feel way more at home

I'm gonna do a "rate my setup" and it's just a bondfire made out of computer hardware