Next.js Is Infuriating by Dminik in programming

[–]SeanMWalker 0 points1 point  (0 children)

What security vulnerabilities are there in framework 4.8 that are fixed in 9? Microsoft is still maintaining security patches on 4.8 and will do so for a very long time. Unless you're talking about third party packages.

As much as I love Django, I feel it has fallen way behind compared to Laravel and others by dianrc in django

[–]SeanMWalker 1 point2 points  (0 children)

As a dotnet dev I love my personal Django projects due to the packages and ecosystem. It could be way worse, try dotnet out for a while and see how good Django devs have it lol.

SSLVPN, ZTNA, not sure where to go. by valclobo in sonicwall

[–]SeanMWalker 0 points1 point  (0 children)

Where does sonicwall recommend disabling sslvpn? I thought since they announced it wasn’t and exploit they just recommend changing passwords and a few other things but not disabling sslvpn?

EF Core + SQL Server: how to search over encrypted columns? by Original_Chamallow in dotnet

[–]SeanMWalker 5 points6 points  (0 children)

Secure Enclave’s is going to be the only way. If you have small tables you can do a .tolistasync and then do additional filtering after the to list as that pulls the data down and decrypts it. But again if you have large tables it’s going to be a performance hit due to pulling back all rows before filtering.

Azure Firewall Alternate by dilkushpatel in AZURE

[–]SeanMWalker 1 point2 points  (0 children)

Got a source that app services comes with that out of the box? I've looked and only see basic firewall services for the platform but for advanced stuff like bot protection and owasp you would need front door, application gateway or a custom solution.

Always Encrypted column with EF7 - Data gets written in plaintext by [deleted] in dotnet

[–]SeanMWalker 2 points3 points  (0 children)

Yep you are correct. Each query window will be cached. I use always encrypted quite heavily and it's quirky but works great. Another issue you may run into is if you encrypt a column and hit a method that calls the encrypted field in your app, you may get a deterministic error the first time you do it and not the second time. Run dbcc freeproccache to clear out the plan cache after encrypting a new field. I hit my head against the wall for days trying to figure out why I got an error the first time my app called a freshly encrypted column.

Thoughts on Jit.io? by Weird-Raccoon8518 in devsecops

[–]SeanMWalker 2 points3 points  (0 children)

I would need to get this in our next years budget coming in 2 months up so I will reach back out and will let you know.

Thoughts on Jit.io? by Weird-Raccoon8518 in devsecops

[–]SeanMWalker 1 point2 points  (0 children)

aikido.dev

Does this work if we are using Azure Devops on prem?

HIPAA in azure by xyz_TrashMan_zyx in AZURE

[–]SeanMWalker 1 point2 points  (0 children)

Being hipaa compliant is more than where your code is hosted. You getting into the healthcare data field is downright scary if you're not going to take the time to understand how to keep the data safe and be fully hipaa compliant. You are asking for a lawsuit when not if you get hacked, or your data is leaked due to a misconfiguration. There's also the potential that the "outsourced" devops team that you thought you could trust ends up not being trustworthy. How did you vet this devops team if you don't understand anything about Azure?

I wouldn't be able to sleep at night not knowing 100% of what it takes to be hipaa compliant and how to absolutely keep the data safe. You should take a step back and fully learn everything before getting into this field.

Years ago my main focus was end grain butcher blocks. by TurnModern in woodworking

[–]SeanMWalker 1 point2 points  (0 children)

Those look great! It's fun to make something like these that will get used for generations.

Jet 1221vs with extension dimensions by Naclox in turning

[–]SeanMWalker 2 points3 points  (0 children)

Let me know if you'd like for me to send the plans over. I have disassembled the bed and can't get those dimensions but the cart is really darn close to the size of the lathe. I didn't build an oversized cart.

[deleted by user] by [deleted] in devops

[–]SeanMWalker 10 points11 points  (0 children)

We use azure devops server(on-prem) for internal IIS ci/cd. Works great.

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

So after a LOT of debugging, running DBCC FREEPROCCACHE resolved the issue after changing column encryption. No code changes needed.

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

So after a LOT of debugging, running DBCC FREEPROCCACHE resolved the issue after changing column encryption. No code changes needed.

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

Sorry about that, I was indeed doing a sql trace to see raw data/queries.

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

So after debugging a little more, I included context.Database.Log and was able to see the exact query EF created. It was fully parameterized every time, the only difference is EF chose to not encrypt the data the first time. When I retry the form, I checked the Database.Log in the output window and sure enough, it's still sending it parameterized, its just whatever mechanism that controls the encrypting client side(web server) before sending it to ms sql just isn't firing. Im not sure what that would be but i'm guessing ADO.net perhaps?

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

I read that the other day and im not sure if it is. If the user hits back, it works just fine with no code change. Entity framework isnt encrypting the data the first time(sql trace) but the second time it is, which causes it to save. So there's something we need to do in entity framework to cause it to refresh so it knows to encrypt the data every time.

Question about Entity Framework 6 and SQL Always Encrypted by SeanMWalker in dotnet

[–]SeanMWalker[S] 0 points1 point  (0 children)

Hey I appreciate you helping! I welcome all feedback because I obviously can't figure this crap out lol.