Damus
kasperd profile picture
kasperd
@kasperd

Currently testing this platform to decide whether it's the future of social networking.

Curriculum Vitae:
PhD degree from Aarhus University
Worked at Google Zürich and London
Partner at Intempus Timeregistrering - until it was acquired by Visma
Operating nat64.net/

Relays (1)
  • wss://relay.ditto.pub – read & write

Recent Notes

Alice Averlong🏳️‍⚧️ · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq3sz9ttend6sflgm3faqk2ldwk3c4c9k5mwv5e7v0hcgr99z7334sfpe72k doordash, on a good day
Stefano Marinelli · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq3sz9ttend6sflgm3faqk2ldwk3c4c9k5mwv5e7v0hcgr99z7334sfpe72k nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrald2st5vunwa0n75mqvam4tv78hpq0wvprlqdgmv0lvhf2xnl2qxwn688 yes, this is possible
David Chisnall (*Now with 50% more sarcasm!*) · 2w
PowerPoint has had a 'present in Teams' button, which shows you the presenter display and everyone else the slides, for at least five years. It renders the slides on each client, so works with access...
kasperd profile picture
Around 10 years ago I filed a feature request for such an integration to be added between Google Slides and Google Hangouts (or whatever Google Meet was called at the time, I have lost track of all the names it has had throughout the years).

I don’t know if any tool had such an integration at the time. I just felt it would make life so much easier for anyone doing presentations and also be less resource consuming.
Stefano Marinelli · 2w
The feud is finally over. And it's honestly hilarious. Recap: Last week, a client forwarded me a request from the CRM company's support to verify the presence and content of a file in a specific dire...
kasperd profile picture
I once had a customer demanding a screenshot showing that a certain security feature was turned on. I told the customer there is no such setting in the application because we don’t offer any way to turn this security feature off. They kept insisting.
1
Stefano Marinelli · 2w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq3sz9ttend6sflgm3faqk2ldwk3c4c9k5mwv5e7v0hcgr99z7334sfpe72k yes, I know that pain! “SSH isn’t secure! You’re not using the …Debian…” Hey, we’re using OpenBSD so ssh IS secure! But our documents say if it doesn’t say …Debian…
Stefan Eissing · 4w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqp450apv3j8jmqjct3ddfklzusxyfkkyqpzxx4p33u099xjzvfwwsyh2vzh nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqzc2tj7k0e3u2cdnukerryhhftg3dyt5...
kasperd profile picture
I do have a use case where a stronger preference for IPv6 would be relevant. I have a dual-stack host which acts as IPv4 frontend for hundreds of domains hosted on IPv6-only servers. Clients which have IPv6 access should access the IPv6-only server directly rather than through my frontend.

If the IPv6-only server is slow to respond clients may get SYN-ACK from the frontend faster than from the server. But overall response times are going to be worse because the frontend then has to wait for a connection to the server.
benjojo · 5w
Turning a z-buffer into a "how badly should something be JPEG compressed" mask, giving this interestingly "robotic myopia" view (The effect is a lot better on landscape on mobile / big screen) https...
kasperd profile picture
I thought the compression ratio of JPEG was a global setting and not something that could be varied for different parts of the image.

Does this approach actually produce smaller files than other video compression techniques? Or is it done just to produce that effect?
1
benjojo · 5w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq3sz9ttend6sflgm3faqk2ldwk3c4c9k5mwv5e7v0hcgr99z7334sfpe72k oh it's not compression at all, its more art
kasperd profile picture
I have noticed an ongoing pattern of GRE packets with seemingly random IP addresses. The only thing they all have in common is that the inner packet is UDP and always have the same length.

Anyone have any clue what this is trying to do?

19:31:40.964329 IP 62.64.246.18 > 116.202.1.213: GREv0, length 558: IP 136.59.155.105.925 > 217.154.122.200.59874: UDP, length 512
19:34:17.567755 IP 183.220.223.3 > 116.202.1.213: GREv0, length 558: IP 168.164.81.85.42864 > 234.72.215.4.58801: UDP, length 512
Filippo Valsorda · 67w
Oof. Reportedly, if you got a certificate from SSL.com by putting “example[@]gmail.com” at _validation-contactemail.example.com, they would add gmail.com (!!!) to your verified domains. A good re...
kasperd profile picture
I am curious about the disclosure timeline. I can see that SSL.com have disabled the buggy validation method, so exploitation should not be possible now.

But was this bugzilla issue visible to the public before the CA had been notified about the issue?
r1w1s1 · 67w
Comparing firewall syntax for SSH (port 22) with default-deny: #iptables (Linux) iptables -A INPUT -p tcp --dport 22 -j ACCEPT iptables -P INPUT DROP #nftables (Linux) nft add rule inet my_filter in...
kasperd profile picture
The only one of those I know how to read is iptables. And if what you are specifying is your complete firewall configuration, it would definitely not work.

There are a number of packets being dropped, which you would still need in order for things to work correctly:

Communication with localhost
Replies to your own outgoing connections
ICMP messages related to the allowed connections
Owen · 74w
Programmers out there: can I safely assume that you were drilled on the idea that global variables have a bunch of unpleasant side effects on the design of your programs, and that you should avoid the...
kasperd profile picture
I have definitely heard that advice. I cannot remember when I first heard it and how many times I have heard it. I am pretty sure it was mentioned in the first year programming course at university.

For the most part I do try to avoid global variables. But sometimes a global variable just is the most straightforward approach to some aspect of a program.