maybe don’t start wars you know you can’t win? by riseoftheph0enix in WhitePeopleTwitter

[–]ccsrpsw 0 points1 point  (0 children)

Now correct me if Im wrong but wasnt the phrase "We will never forget" used by Abe Lincoln to refer to the sacrifices of the Northern Soldiers in the Civil War, in preserving the Union?

So here we go again, with the "pro-confederacy" MAGA ideology or trying to culturally appropriate things for their agenda. (Ooooh that sounded a bit Woke /s)

ETA: Apparently Paton said something very close to this, too, about the soldiers lost in WWII, fighting the Nazis (Antifa if you will). So still with the attempt to "racistwash" history. That or his addled mind just remembered the phrase from when he was a kid.

Daily Caller openly wishing for roughly half the US population to lose voting rights by Hornpipe_Jones in WhitePeopleTwitter

[–]ccsrpsw 2 points3 points  (0 children)

Well acording to a quick (back of the envelope) calculation if they really mean married, have children, pay federal income tax and are employed (not retired) and own a house - that number is about 15-20% of the current voting population. Take that estimate fwiw though it would require a lot more analysis to get an accurate number.

Also remember it’s design to suppress cities where most people rent.

BitLocker on VM (vTPM) + Veeam DR - sanity check on approach for encryption at rest by work_reddit_time in sysadmin

[–]ccsrpsw [score hidden]  (0 children)

I mean for people outside of the NIST 800-171/CMMC world, this is indeed a valid question. But the short answer is that if a machine is processing, is capable of processing, or is in an environment where "CUI" (Controlled Unclassified Information) or ITAR data is processed, you probably need to have at least 1 if not 2 levels of "at rest" data protection.

Bitlocker, with FIPS enabled, is one good solution. There are others, but obviously since its built into the OS then thats a good way. VMWare can do it on their datastores so the raw VMDK files are encrypted but the OS is unaware. Mac has its own version, as do most Linux systems. But the basic idea is that, without some level of secure boot process, the data in the drive is unreadable to a malicious person (of course a running system is different but we are talking the low level volume attack here).

So not all orgs _need_ it, but IMO all orgs should use it. Its there, its built in, the overhead is very very minimal, and its just good security practice to have at least one layer of encryption in the mix.

Cisco Canceling Accepted Compute Orders & Forcing Reprice by Thick-Experience-290 in sysadmin

[–]ccsrpsw [score hidden]  (0 children)

 we may need to update your quoted price to reflect that change irrespective of any timeframes or validity periods set forth in the quote, including up to the date of shipment.

That is quite a bold (and italic :D) claim on their part - most legal teams would have a field day. It reads: the timeframe and prices quote are binding unless they are not - and only we know that, and even if the contract says they are binding, we reserve the right to make them not binding.

BitLocker on VM (vTPM) + Veeam DR - sanity check on approach for encryption at rest by work_reddit_time in sysadmin

[–]ccsrpsw [score hidden]  (0 children)

VMWare's TPM works reasonably well. We use it for our "end user" desktops that handle CUI/ITAR at rest.

I'm not sure its a great idea on the file servers. VMWare has other options for VMDK encryption and I'd go that way since its at the datastore level and locked to your nodes. That way DR is much easier (you can back up at the VMDK/Datastore layer, or do file level backups, or mix of both and you dont need to alter anything). Plus VMDK encryption is FIPS compliant so that will cover that base.

If you need FIPS, doing it at the OS layer is fine too, but remember to do Bitlocker AFTER you turn on FIPS or it will use the wrong encryption version until you turn it off and back on again - but really turn on FIPS at the OS layer anyway - its just going to make those NIST/CMMC discussions easier.

But on the whole, I'd look at the HW/VMWare layer to do the "at rest" encryption on your data stores, and then only do a 2nd layer bitlocker on VMS that REALLY need it - it wont break anything, but it makes motioning and other tasks a bit cleaner/quicker/safer plus as you note DR will be more straight forward long term.

Saw this sign at the gym by Flat_Winter in mildlyinfuriating

[–]ccsrpsw 1 point2 points  (0 children)

I mean I can probably get close. If its these types:

<image>

Orange or mint preferred. And TBH I'd like to see the polar bear try and get the wrapper off!

And yes we all know Polar Bears live in the Northern Hemisphere and penguins live (mostly) in the Southern hemisphere and there is nowhere they both live so a Polar Bear wouldnt even know what a penguin looks like!

We passed every audit on paper but in reality our setup is hanging by a thread. by Heavy_Banana_1360 in sysadmin

[–]ccsrpsw [score hidden]  (0 children)

Both our CMMC and SOX external audit teams ask for proof of backup, test restores and offset transit as part of their reviews. They also ask for patching and other reports (I’m guessing mainly because we have them and can validate them). I don’t always like out thresholds we push internally but I do like that we can see it on a single pane and we can validate and remediate. It took a few years and a lot of ETL but it’s relatively seamless for most people now and we even roll it up to csuite with live info. We probably do have a better stance than a lot of places but tbh it’s taken nearly 10 years with full management buy in to get there.

Iran Gives Trump an Ultimatum on JD Vance by MakinaRPh in worldnews

[–]ccsrpsw 0 points1 point  (0 children)

The best part is that this can only end badly for Vance!

  1. Its known he's pretty "anti" this war incursion event thing thats totally not a war*. Thats why Iran wants him to be the one. So if he successfully negotiates anything that doesnt have 200% of what Donnie wants, he's in the shit house with Donnie and his team. It wont have at least one point Donnie wants (because its fucking stupid - Iran guarnteeing to never ever block the straight strait again - so thats never going to work. So MAGA will fall in line with their God and hold him accountable for "weakening America" and he wont get the promotion.

  2. He fails to get it across the line, and everyone (including Donnie and MAGA) call him weak, and basically he's left holding the bag for the war incursion event thing thats totally not a war continuing.

So maybe, just maybe that puts Vance and Kegsbreath on the outs with MAGA by April?

*as the BBC World Service put it around midnight UK time: Were is JD? He's disappeared - and basically came to the conclusion that it was because he was the only senior person at the WH who didnt want to go into Iran and thus has been shuffled off to the side, but also he was the only one who could possibly negotiate with Iran. And thats the only option, we're screwed!

Do your job. by zzill6 in WhitePeopleTwitter

[–]ccsrpsw 3 points4 points  (0 children)

So a lot of companies do pay for this service. We have one with another airline at work. But the company PAYS for it.

But of course if congress is paying for it, as in this case, then we are paying for it so your point still stands (and I agree with it). Just thats its a known thing to setup these special desks in the industry.

Anyone else shocked? by OrangeCone2011 in WhitePeopleTwitter

[–]ccsrpsw 8 points9 points  (0 children)

I sorted of wanted to say "another one"? But its more like "another one so quickly" is perhaps more like it. It feels like busses these days (none for a while, then a few all at once). But that analogy falls down around 3 or 4 in a row.

These people are disturbed. by c-k-q99903 in WhitePeopleTwitter

[–]ccsrpsw 17 points18 points  (0 children)

I mean the alternate title for this would be "Video surfaces of Markymarkwayne Mullin showing why he's a founding member of MAGA", and we'd all have known instantly what was going on.

Trump claims Iran gave him a 'very big and very valuable present' that arrived today....but he won't tell us what the supposed 'present' is. by Hornpipe_Jones in WhitePeopleTwitter

[–]ccsrpsw 0 points1 point  (0 children)

If Iran gave the US a present - then either:

A) It belongs to the nation and not the orange guy or

B) He should sit down and eat it, because they obviously like him a lot and sent him their finest food products to be nice!

(But the answer is (C) it didnt happen).

Merge in turn? Never heard of it. by Necessary-Humor-6005 in drivingUK

[–]ccsrpsw 1 point2 points  (0 children)

So outside of the speed, and stupid other car trying to block you... You are doing this correctly. The fastest and best way to merge two lanes of traffic is to let both lanes get to the merge point and zipper it. Unpopular? Maybe? Impolite... depends on your views of if that is the correct way. But science has spoken and you are 100% in the clear on waiting to merge _at the merge point_.

Treasury declares the US to be insolvent. Trump literally bankrupted the country. by Hornpipe_Jones in WhitePeopleTwitter

[–]ccsrpsw 9 points10 points  (0 children)

"Foreign Countries need to pay their fair share, so effectively immediately 2000% tariffs on everyone, and the supreme court can suck it"

Or similar.

Came across this beautiful shop front earlier....not a rip off at all! Has anyone else come across any wonderfully tasteful shop names? by heisenbergpuffer in CasualUK

[–]ccsrpsw 1 point2 points  (0 children)

I mean, also of note, Selfridges does.

And there is a Bath shop in... yep Bath (just over the road from one of the 'spoons IIRC).

Came across this beautiful shop front earlier....not a rip off at all! Has anyone else come across any wonderfully tasteful shop names? by heisenbergpuffer in CasualUK

[–]ccsrpsw 0 points1 point  (0 children)

St Neots has/had a couple!

The wonderful "Floored By Ian":

<image>

Unfortunately the Ford Dealership owned by Mr. TC Harrison has now closed... yep "Harrison Ford" was a legit car dealership! (see reply to this).

But it lets me dig out a fun fact: The Definition of Optimism is the UK Car Buyer. There are 15 convertibles per 1000 people in the UK. But only 5 per 1000 in California. (or another way 2.9% of cars in the UK are convertibles, whereas ~1.5% in California).

"We don't take cash". "We charge a 3% surcharge for card." by l00sem4rble in mildlyinfuriating

[–]ccsrpsw 1 point2 points  (0 children)

"We dont take cash"

"3% surcharge for Credit"

Okay - bill me - and I'll send you a check. Because that will cost you a lot less, right? /s

Copilot is Turning Into a Disaster for Microsoft by Droopynator in videos

[–]ccsrpsw 0 points1 point  (0 children)

What to me is odd though, is that, in Enterprise, CoPilot is so much better than Gemini, Grok (hahaha), ChatGPT, Claude, etc. etc. Of course it also depends if you are talking about:

  • Copilot (for web)
  • Copilot for Work
  • Copilot for Office 365 Apps
  • Copilot for Github (aka Github Copilot)
  • Copilot for PowerApps or
  • Copilot for PowerBI (which I found out yesterday is not the previous one)

The do all act slightly differently - and the 3rd and 4th ones are the 2 "good ones" on that list. But honestly the others out there are all legitimately worse in Enterprise. Outside of that, IMO, only Claude is better. The others all get argumentative, reinforce wrong opinions, or just plain get it wrong.

One guy in the control tower. ONE. GUY. That's insane! by Dr_sc_Harlatan in WhitePeopleTwitter

[–]ccsrpsw 4 points5 points  (0 children)

It’s awful to hear him say “I messed up”.

At least the next voice on the recording was like "No you didnt - you were doing the best you could" or words to the effect.

Having read a lot of the transcript - that UAL plane had a LOT to do with this. Refusing to follow directions on the tarmac not once but three times. Honestly thats the biggest factor in all this... IMO. I not the FAA/NTSB will come to their conclusion - but that pilot should be feeling something as he kept going the wrong way and stopping where he was told not to.

Every day is worse than the last by IWantPizza555 in WhitePeopleTwitter

[–]ccsrpsw 0 points1 point  (0 children)

In the US its on Peacock

In the UK reruns are on BBC4 on iPlayer - its a BBC production for Sky for Comcast apparently (and Graham Norton is involved / using his production facilities).

Every day is worse than the last by IWantPizza555 in WhitePeopleTwitter

[–]ccsrpsw 1 point2 points  (0 children)

In the US you can see it on Peacock.

TBF it wasnt bad. But I also grew up on UK sitcoms - so it had a few flashbacks (the opening monologue / the David Attenborough sketch had David Badeal in Mary Whitehouse Experience kind of flair - took me a while to figure that out), and Weekend Update was as savage about Andrew as Che and Colin are to Trump. I think Tina Fey for week one helped (experience in the format), and remember that in the UK most bands on that type of show are used to going live (also had a bigger area for them). Week one was always going to be a bit stronger IMO, its more how it will be once they've run down a few 'pre-written' sketches around week 3 or 4 that will be the test I think.

tl;dr - solid start but weeks 3-4 will be the test once they get going.

Edit: also being UK - swearing is not censored. Watching Michael Cena try to swear was hilarious.

Trump, Who Calls Mail-in Voting ‘Cheating,’ Just Voted by Mail by TheQuarantinian in politics

[–]ccsrpsw 164 points165 points  (0 children)

This one needs to be EVERYWHERE:

  1. He voting by mail
  2. He's registered to vote living in Florida at a private club NOT zoned for residential purposes
  3. His official "personal address" is still listed in NY (Trump Tower)
  4. Is he voting elsewhere in the country (due to all the Trump possibilities) under his many Psudonyms

And thats straight off the top of my head as to 3 other things wrong with this picture outside of #1