Hacker Newsnew | past | comments | ask | show | jobs | submit | mezzode's commentslogin

It depends on the person, as a sample size of one I was on 5,000IU and my levels were still on the low end (almost still deficient), and my calcium levels were still safely on the low side as well. Ultimately people should be getting their levels checked before and after to see exactly what the effect on them is


As others have mentioned there already is the ".home.arpa" TLD but I definitely think ".internal" is a step up in terms of clarity. That said, for my internal network I just put things under a subdomain of a domain I own so I can use HTTPS with a proper SSL cert


> I just put things under a subdomain of a domain I own

Yup, same here. Great in combination with ACME DNS-01 so your DNS server can request all those certificates and then push them out to your devices. (Otherwise the hostnames need to be externally accessible, which means either exposing the internal devices, or mucking around with split-view DNS. The former is a terrible idea, the latter is also DNS server complexity and worse than doing DNS-01 IMHO.)


IMHO if you are already doing some process of "push certificates out to devices," you'll likely be much happier with getting a wildcard cert using DNS-01 and change that update process from "all devices all the time according to their schedule" over to "all devices but once every 80 days"

I do appreciate the threat model of one device getting owned leaks all your certs but security is always a trade-off between security and convenience. It also lowers the load upon the LE servers, for what that's worth


Not sure everything updating at the same time is more "convenient" than staggered failures. For one, if multiple things break at the same time, it's easier to lock yourself out of things in more complicated ways. Also it's generally the first refresh that breaks, and everything at once only helps when you freshly roll out certs to a whole bunch of devices… if you add things incrementally (e.g. either because you finally get around to it, or you just bought something new) it makes no difference if it's all in the same cycle. Except now you have a wildcard cert floating around…


That seems like a great way to go - get it signed the normal way and TLS will 'just work', no messing about configuring trust on your devices.

Will this be possible with .internal ?


The TLS cert will either be self-signed or you'll need to run a private CA. A public CA won't issue you a cert as you can't own any .internal domain.


You can use a proper certificate with any domain you like.


except not with .home.arpa .internal .lan or whatever else, since you don't have "domain ownership"


The logo isn't even just inspired by, it just outright is the NERV logo from Rebuild https://wiki.evageeks.org/Nerv_Logo


So it's basically the great tabs vs spaces debate again


>Isn’t there a word for when a lot of math and complexity and specific numbers with names imbue an article with some extra sense of being true or having authority?

Quantitative fallacy?


That’s not bad, and I think it does apply here. https://en.wikipedia.org/wiki/McNamara_fallacy


My problem with shower thoughts is often I have too many and it's a struggle to hold on to them all until the end of the shower so I can actually write them down


Start bringing a whiteboard marker with you


Or a waterproof notebook (with an attached waterproof pencil). They worked really well for me; I sketched a few public talks in the shower this way.


https://github.com/google/mundane/blob/master/DESIGN.md was where I first learned about how useful opaque types can be for ensuring the type system does the heavy lifting


Generally yes, although I definitely wish the initial load was speedier the better looks and "flow" are worth it imo. I usually browse Reddit using Relay and look at my saved posts on desktop, which has benefited a lot from the redesign since I can just do stuff in a single tab instead of middle-clicking a bunch of posts.


I still think that first-class support for PWAs will be a more promising alternative to Electron


Probably https://news.ycombinator.com/item?id=14964006

I remember seeing this comparison and finding it quite profound as well.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: