Hacker Newsnew | past | comments | ask | show | jobs | submit | juergbi's commentslogin

Java is optional, not used for any of the core office functionality. You can build and use LibreOffice completely without Java.


Cloudflare sometimes preventing access to some sites and annoying CAPTCHA challenges due to CGNAT are relevant to the average person.

Full IPv6 support should be a requirement for both ISPs as well as websites and other servers.


> Cloudflare sometimes preventing access to some sites and annoying CAPTCHA challenges due to CGNAT are relevant to the average person.

They would be, but thankfully CGNAT doesn’t cause that.


It contributes to it, because now you're behind the same public IP address as X other people. You're then X-times more likely to get flagged as suspicious and need to enter a CAPTCHA X-times more frequently.


Cloudflare easily detects that using your discrete external port range and knows better than to show you a CAPTCHA.


Anecdotal experience (I know, of course... this is sample size n=1) tells me that you can't be further from the truth.

Putting CF aside, anyone who has tried to edit Wikipedia anonymously should understand the pain of CGNAT.


Someone should tell Cloudflare that because it's not been my experience at all.

(now n=2)


It's not a direct cause, but if an IP is hitting my website with spam, I don't care if it's a spam bot or a CGNAT exit point. The only way to stop the spam is to take action against the IP address. For CGNAT customers, that means extra CAPTCHAs or worse.

You can ask your ISP for your own IPv6 subnet if you don't want to be lumped in with the people whose computers and phones are part of a scraping/spamming botnet.


This may make sense if the extended warranty is limited to defects introduced by the remote change. I.e., if they remotely break your device, they should be responsible for fixing the damage. A full warranty extension doesn't seem reasonable to me, though.

With regards to your last sentence, I think a good first step would be to require at least security and other critical updates to be provided within the full warranty period. And this would make sense even without the (limited) warranty extension, and I actually consider it more important.


if the extended warranty is limited to defects introduced by the remote change

yes, of course. it may be hard to distinguish though. the device getting hot may create additional stress on the mainboard or RAM or other parts causing it to break faster.


Doesn't Facebook require users to verify the email address with a confirmation email? If so, the only Facebook spam you should be able to get would be such confirmation emails. Or what am I missing?


I can't speak about facebook but I am in the case of having a gmail address[1] with my first name initial followed by my last name and I am in the case of having people with same last name and first name initial using my email address to register. That box is polluted by regular confirmation emails followed by spams from the same many websites. It turns out that more often than not the confirmation email is made to protect the companies running the websites (I guess to limit bots and password that can't be reinitialized), not promotionnal mail registration. You still receive all the promotionnal and automated email regardless if the user is active. Different table in the database I guess. Also there websites/services that don't use confirmation emails as well as processes initiated through physical office/point of sale.

[1] now pretty much abandonned but I mostly keep it to avoid anyone obtaining it and impersonating me. I still need to do some housekeeping and make sure I am not registered anywhere with that address anymore.


In my experience, surprisingly few services nowadays require email confirmation, I suppose in the name of increasing conversions or something.

I've had a number of accounts opened in my address but with different dots (eBay, Spotify, Shutterstock) that didn't require confirmation.

I usually reset the password, inform customer service (who generally don't care, or don't want to do anything because it's not my account), and then I close the account.


Oh I wish that were true, I've been receiving email for years for someone who signed up to facebook with my email address. It's a horrible pain, you can't contact facebook without a facebook account, and I can't create one because someone already has one with my email address.


Do a password recovery, log in and simply delete the account.

I had to do this once when someone signed up to FB with my email address. It actually was an eye opening experience as to how much data FB collects from everyone.

Now keep in mind that: 1) I don't have a FB account myself 2) This person signed up with my email address (which is <something-generic>@gmail.com), but their name is completely different from mine 3) They didn't even speak the same language, when I logged in to the new account the whole thing was in Swedish or something like it.

So nothing at all linking the account to me, except a misspelled e-mail address. When I logged in, FB was happy to suggest I friend a whole bunch of people I know IRL. Including people that do not know the e-mail address used. Absolutely crazy. How were they able to link me to these people when I was signed in to a complete stranger's account?


Well I sort of did, didn't want to delete the guy's stuff, so I made a dummy gmail account, switched it to that and deleted the gmail account after weeks of spam emails and trying to contact facebook I figured he could do some of the hard work to get his account back.

Of course it backfired, after he stopped using his account facebook and a couple of weeks facebook started sending begging emails to my email account again (don't believe them when they say they delete anything), I still get the occasional "what you've missed on FB" emails and about once a year the guy tries to recover his account and I get an email, I'd drop him a note, but the only email address I have for him is mine


Recover the account if you own the email address?


(see my reply above)


It does, i just tested it.


While this may be an option in some cases, this wouldn't be an open source project.


open source means the source is.. open. It does not mean the source is necessary free. These two points are not in conflict.


That is not how we define open source. See:

https://opensource.org/osd

Openness is much more than “source available”. Open for use by others is an important part of that.


"unlicensed open source" exists, however -- it is a real thing, referred to as open source, despite that it cannot be used legally.

i.e. https://www.synopsys.com/blogs/software-security/unlicensed-...


That's not how I've decided to define open source. Looking forward to seeing that page updated!


do you mean to say it wouldn't be libre software, due to the commercial use restriction?


Yes


Many retail AM4 motherboards support ECC with retail Ryzen CPUs. At least on Linux it works as expected. ECC UDIMMs can be difficult to find but it shouldn't be necessary to buy a TR Pro for ECC if memory capacity, I/O lanes and the performance of AM4 Ryzen CPUs suffice.


I haven't looked into deeply but I've heard stories from others with Ryzen boxes that ECC features of the RAM are turned off with Ryzen CPUs installed. Supposedly you can see this in Linux w/dmidecode or other tools. I'd appreciate good links if anybody has them.

PS: https://www.reddit.com/r/Amd/comments/lh3m42/demystifying_ry...

https://www.reddit.com/r/Amd/comments/ggmyyg/an_overview_of_...


Ryzen APUs (i.e., Socket AM4 CPUs with with integrated AMD graphics) do _not_ support ECC UDIMM, _unless_ they carry a "Pro" in their name.

Ryzen CPUs without an iGPU _will_ support ECC UDIMM, _unless_ the mainboard specs specifically tell you that it won't support ECC, or simply omit mentioning ECC UDIMM at all.

Fwiw, I've enjoyed proper ECC on an ASRock Fatal1ty B450 Gaming-ITX/ac with a Ryzen 5 3600 for more than two years now (using GNU/Linux; I am not sure how Windows would fare).


Interesting. Thank you for the info.


The system could supply an empty contact list.


> 1. Rust has very strong stability guarantees. If you want to you can continue coding like it's Rust 1.0 even on the latest compiler.

There have been at least two cases where Firefox build broke due to having a too recent version of Rust installed. The stability guarantees may be fairly strong but it's definitely not perfect.


Sorry, I didn't mean to imply it's bug-for-bug compatible with Rust 1.0. The language however is the same.


I know this one hit quite a few people: https://github.com/rust-windowing/winit/issues/1773. Compiles on new rustc but panics at runtime. API churn also made upgrading to a new winit painful.


Use of uninitialized memory is Undefined Behavior. So in a sense, that code never worked properly, but authors didn't know about it until Rust caught it explicitly.


Any observable behavior will be depended upon. A breaking change is a breaking change no matter what.

Of course it's good that they fixed the UB.


It's undefined behavior. Anything can happen, by definition.

I understand what you're saying, but anyone who knowingly relies on undefined behavior deserves whatever pain they get, and anyone who didn't know they were relying on undefined behavior, needed to know about it.


You can't rent them for less than 24 hours.


Yes, but my point is that they won't be used every day. I used to work in a dev shop that had to compile 20+ applications every month or so. Our automated mac/build box, would require poking and resurrecting every other time it was used. This would have saved us a fortune.


You can order a USB HDMI capture dongle for around USD 10 on AliExpress, e.g., from AIXXCO. It's not perfect but it should suffice to setup or debug a headless system. TinyPilot uses such a dongle for server KVM purposes.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: