<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: doorsopen</title><link>https://news.ycombinator.com/user?id=doorsopen</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 22 Apr 2026 12:05:11 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=doorsopen" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by doorsopen in "Thoughts on having SSH allow password authentication from the Internet"]]></title><description><![CDATA[
<p>Port knocking is so 2014. Single Packet auth for publicly exposed hidden services is great: <a href="https://github.com/mrash/fwknop">https://github.com/mrash/fwknop</a></p>
]]></description><pubDate>Sat, 18 Jan 2025 10:46:40 +0000</pubDate><link>https://news.ycombinator.com/item?id=42747425</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=42747425</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42747425</guid></item><item><title><![CDATA[New comment by doorsopen in "Thoughts on having SSH allow password authentication from the Internet"]]></title><description><![CDATA[
<p>As someone who works with SREs every day, this breaks my heart.<p>1 - Don't be on-call while going to ski<p>2 - fail2ban and other automated systems can do this for you<p>3 - Passwords suck and are typically not regularly rotated unless you're using some centralized IdP<p>If you're in this situation you have already failed. If you use password auth use 2FA as well, and then I don't cry, it's just toil though.</p>
]]></description><pubDate>Sat, 18 Jan 2025 10:42:11 +0000</pubDate><link>https://news.ycombinator.com/item?id=42747395</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=42747395</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=42747395</guid></item><item><title><![CDATA[New comment by doorsopen in "UK Government scans all web servers hosted in the UK for vulnerabilities"]]></title><description><![CDATA[
<p>Someone types in your new server/domain, like "ijustmadethissite.com", or "newlocation.existingsite.com"<p>For their computer to resolve this domain name, it's going to call out to a DNS server, of which Google hosts a major one. It can be assumed that they log these names, and can then use that as a "notification" for a site coming up.</p>
]]></description><pubDate>Fri, 04 Nov 2022 18:12:20 +0000</pubDate><link>https://news.ycombinator.com/item?id=33471351</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=33471351</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=33471351</guid></item><item><title><![CDATA[New comment by doorsopen in "Kill Bill – Open-Source Subscription Billing and Payments Platform"]]></title><description><![CDATA[
<p>Maybe an uninformed question, but I tool a look at the documentation, the stripe plugin demo, and then looked at what stripe offers. As someone who uses neither but might be interested in subscription + shop type purchases, what do I get with KillBill+Stripe that I don't with just Stripe?</p>
]]></description><pubDate>Wed, 19 Oct 2022 23:54:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=33269274</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=33269274</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=33269274</guid></item><item><title><![CDATA[New comment by doorsopen in "Splunk IP suit against Cribl"]]></title><description><![CDATA[
<p>I think the line is drawn at actual stealing. In this case, they're not redesigning the protocol from memory or black box testing. Allegedly they took several specs of the protocol from former employees. Even then, apparently the founders were involved in some of the Patent filings from splunk that they are accused of violating. You cant claim IP for a company in the form of a patent and then turn around and re-implement that IP. You clearly believed it was patent-able since you patented it. There's ways of doing this (clean room dev) if you wanted to do that without infringement. (I do feel a lot of the patent claims in the lawsuit are typical generic weak software patents)<p>Really egregious is taking the sales data. Business analytics around leads, customer satisfaction, pricing, etc are not the same as retaining general knowledge. If you left and remember the point of contact you had at a customer, that's allowed (barring non-solicitation agreements). If you leave and you take a list of customers, data that the business has generated about them, etc, that was never yours and it's not your knowledge. It's clearly the business's and there's usually dozens of people involved in the creation. That's clearly theft, especially since it was never yours to begin with.</p>
]]></description><pubDate>Thu, 06 Oct 2022 15:30:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=33109537</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=33109537</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=33109537</guid></item><item><title><![CDATA[New comment by doorsopen in "Splunk IP suit against Cribl"]]></title><description><![CDATA[
<p>From the lawsuit looks like the most clear cut evidence they have is:<p>- Founder publishing a private protocol definition to help in building for it<p>- Sales staff sending account and prospect info to their new cribl email addresses before leaving Splunk<p>- Engineers leaving Splunk with technical specifications, such as their newer S2S protocol versions<p>The patent stuff is kind of whatever, but all three of those items would be enough to establish some very clear damages. Cribls an exciting new player but they can't take shortcuts like this, if the allegations are founded.</p>
]]></description><pubDate>Thu, 06 Oct 2022 05:26:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=33104684</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=33104684</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=33104684</guid></item><item><title><![CDATA[New comment by doorsopen in "DOE to invest up to $165M to advance domestic geothermal energy"]]></title><description><![CDATA[
<p>Does the term Geothermal apply to long-duration thermal driven power generation? I have a design for a large scale tidal power generation system, and as global warming continues it becomes more beneficial. Does that count?</p>
]]></description><pubDate>Sat, 27 Aug 2022 01:22:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=32614624</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=32614624</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=32614624</guid></item><item><title><![CDATA[New comment by doorsopen in "Plex: Important notice of a potential data breach"]]></title><description><![CDATA[
<p>I've switched to using jellyfin and i've never looked back.</p>
]]></description><pubDate>Wed, 24 Aug 2022 15:53:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=32581092</link><dc:creator>doorsopen</dc:creator><comments>https://news.ycombinator.com/item?id=32581092</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=32581092</guid></item></channel></rss>