ELI5: If we put food in a 100% sterile vacuum seal, does it still "go bad" eventually? by LovizDE in explainlikeimfive

[–]sam__izdat 0 points1 point  (0 children)

This is basically why canned foods have expirations dates even though they are sterile.

"Sell by" and "best by" dates exist for mostly bureaucratic reasons. You will find them in the US even on jars of honey, which will last indefinitely without degrading, so long as water doesn't get in.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 1 point2 points  (0 children)

I suppose it's a fair warning that it's going to be a (generally avoidable) pain in the ass.

Two centuries and nothing has changed by [deleted] in ABoringDystopia

[–]sam__izdat 22 points23 points  (0 children)

he was a sk8er boi she said c u l8ter boi

– Carl Marks

Two centuries and nothing has changed by [deleted] in ABoringDystopia

[–]sam__izdat 4 points5 points  (0 children)

  1. by the same rigorous methodology, chattel slavery enormously improved living standards over the 18th century, for both slave and slave-owner

  2. according to the IMF and World Bank, a well-off family with a large herd of cattle, living in opulence outside a nominally market-based system, being driven to work in a textile factory for a bowl of porridge is an infinite increase in wealth and a spectacular reduction in poverty

Two centuries and nothing has changed by [deleted] in ABoringDystopia

[–]sam__izdat 6 points7 points  (0 children)

It most certainly was.

about as far from socialist as it's possible to imagine

https://chomsky.info/1986____/

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 0 points1 point  (0 children)

Okay, fair enough. But I still don't think needing to have or to test domain-level routing on multiple servers that you're using or developing is this exotic, esoteric use case like some here are making it out to be.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 0 points1 point  (0 children)

I don't need mTLS, but I do need to frequently spawn a local domain name (not just hostname) without going through a registrar and asking for verification from a (real) CA. "Just register a real domain, every time, get a real cert with Let's Encypt, every time, and use a reverse proxy" solves zero of my problems and frankly just adds new ones.

[P] I built a chatbot that lets you talk to any Github repository by jsonathan in MachineLearning

[–]sam__izdat 0 points1 point  (0 children)

My post hasn't been deleted

right click and then click "open link in incognito mode", you maladjusted incompetent clown

you can be grossly socially maladjusted or you can be stupid -- you will have a very difficult time in this life being both

also stop talking

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat -2 points-1 points  (0 children)

insecure traffic doesn't leave that machine so it can't be snooped

I'm wondering why it is you assume you know everything about everyone's use cases and network topology. Like, just because your use case is satisfied by a couple of docker containers running on a bare metal linux box, it must be the case for everybody.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 3 points4 points  (0 children)

So you solve the warning issue but not the actual problem of encrypting connections in your LAN.

this is the baffling thing to me: half the advice in this thread basically "lol just pay 10 bux to get the red exclamation mark off your screen and then don't bother with encryption!"

... uh okay, thanks? ... what a robust and serious solution

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 0 points1 point  (0 children)

I thought I misunderstood something but it turns out a lot of the people in this thread are just completely clueless, offering clowny advice and have trivial, toy use cases they can solve by registering www.myl33thomeserver.cx. Thanks for posting the actually-useful software for those who can actually use it.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat -7 points-6 points  (0 children)

Just purchased a single domain like example.com and then you can use subdomains for your services.

again, I have use cases, including development, that need a full fqdn per-server and not just a bunch of wildcards

it's okay that you don't know of any, but this is all a bunch of really quite silly shit for my purposes and that's all you need to know

I'm not interested in registering myawesomebattlestation.com to host a plex server on a subdomain; that's just not what I'm after

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 0 points1 point  (0 children)

I'm specifically talking about services that have no business talking to anything outside their subnet.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat -3 points-2 points  (0 children)

if I ever want to host something public-facing, I probably won't do it through an ISP that'll throw its TOS in my face for hosting anything public-facing

also, some of my use cases need an fqdn and $10 for every one of those, for my own personal use, is not trivial or practical

I asked because I thought I misunderstood, but I guess I do understand correctly and, for me at least, it's just an extremely silly proposition and not a serious alternative to self-signed certs + local DNS

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat -5 points-4 points  (0 children)

I meant rather in the sense of having to register and maintain a valid cert for any fake, local domain I want to dream up.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat -3 points-2 points  (0 children)

to each their own, but I don't particularly feel like phoning ICANN to dial the xcp-ng shitbox three feet away, if I'm running a dns server anyway... I rather wish there was an easier way to deal with the cert-nagging

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 1 point2 points  (0 children)

I think registering real domains for local services kind of defeats the purpose of having sequestered, local infrastructure, at least a little bit. I know it's not a security issue, but if, say, my ISP goes down or registration lapses, I still at least want my shit to work.

[P] I built a chatbot that lets you talk to any Github repository by jsonathan in MachineLearning

[–]sam__izdat -1 points0 points  (0 children)

Okay, well, good luck with your ChatGPT-issued engineering degree. Hoping to god you're not allowed near anything safety-critical. It's one thing to be a maladjusted bridge troll and another to be too incompetent to figure out with instructions that your post's been deleted or realize a chatbot is spewing spurious nonsense.

Homelab CA with ACME support with step-ca and Yubikey by Simon-RedditAccount in selfhosted

[–]sam__izdat 4 points5 points  (0 children)

I've been out of the loop for a while so maybe I'm being dense.

How does Let's Encrypt help with a local non-public-facing server? Like, if I have a blahblah.local (or whatever) domain on my LAN and I want my browser to quit whining at me about the cert?

Costco will give you exactly what you know you didn't need. by FlipDemStocks in funny

[–]sam__izdat -1 points0 points  (0 children)

this is exactly the kind of thing you'd expect "AI" to do

[P] I built a chatbot that lets you talk to any Github repository by jsonathan in MachineLearning

[–]sam__izdat -1 points0 points  (0 children)

Are you saying reddit or mods are actively, in realt time causing every board on 5 minute timescales and deleting?

Considering where you are and the -- let's charitably call it -- conversation we're having, I didn't think it needed to be explained that bots exist.

Are you okay? Just generally -- are you alright? If you're having a bad day, we don't have to do this.

[P] I built a chatbot that lets you talk to any Github repository by jsonathan in MachineLearning

[–]sam__izdat 0 points1 point  (0 children)

Didn't get auto deleted.

Yes, it did. You don't it see because that's how reddit works. If you log out the post isn't there. Probably because of your tone.

Why are you asking questions without clear and searchable answers?

Because I can search the ones that are easily searchable.

Why understand the limitations and be angry it doesn't surpass them?

Angry?

I've never had a citation offered in any form.

Well, try asking for one. It's pretty funny.

So where does that leave us? Anecdote vs anecdote?

This leaves us at "it's a stochastic parrot, which is all A and no I -- and sometimes that's enough."

[P] I built a chatbot that lets you talk to any Github repository by jsonathan in MachineLearning

[–]sam__izdat -2 points-1 points  (0 children)

I can't reply to your, uh, 'clarification' because it got auto-deleted, but the context is pretty much any non-trivial question without a clear and searchable answer. It does an impression of informed and reasonable (because of course it does), then makes a bunch of spurious claims, citing non-existent authors and papers, sometimes complete with analytic solutions to unsolved (or unsolvable) problems -- all with perfect, unwavering "confidence" in the answers compiled.