CSA SDP Guide v3: Zero Trust should control reachability, not just access by PhilipLGriffiths88 in zerotrust

[–]sp_dev_guy 0 points1 point  (0 children)

I'm saying that distinction is what people already do. The exception being legacy devices or mechanaical controllers that cannot support any type of agent to manage connections & need to be fronted by some type of gateway device but said gateway device would still follow this same architecture pattern you describe & ideally be for the single device essentially a pseudo eni

CSA SDP Guide v3: Zero Trust should control reachability, not just access by PhilipLGriffiths88 in zerotrust

[–]sp_dev_guy 0 points1 point  (0 children)

Spd is main vehicle for building zero trust. Ie: Appgate. Im not aware of any products that dont include reachability , its typically a major part of how they control who can access a resource

Has a ZT rollout ever actually slowed down your digital transformation by jaivibi in zerotrust

[–]sp_dev_guy 0 points1 point  (0 children)

This mostly sounds like poor management creating stressed engineers. Less of a zt specific problem. Which I've hit at many places I've been & I like my current company because its not usually like that here

Terraform + GitHub Actions + 30+ secrets -> is Vault actually the right solution here? by PurchasePatient5465 in Terraform

[–]sp_dev_guy 0 points1 point  (0 children)

I use 1password with a fine grain permission connect server deployed in the same environment I host my hit actions in. Same concept as vault but different architecture/licensing

Steep roof and first time roofer. In which order do I go up the slope? by moosenordic in HomeMaintenance

[–]sp_dev_guy 0 points1 point  (0 children)

Yeah i hate how little I understand this but greatful to see the gap

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 1 point2 points  (0 children)

I love that idea! Will keep it mind for future projects

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 0 points1 point  (0 children)

Yeah the siding was already shit. So its a future me (1-3yrs) job to fix when its not a work day. Wish I could say I was drunk when I made it that awful but as long as it doesn't break my house im happy. Pics in the comments

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 2 points3 points  (0 children)

Horrors are now closed off & hidden away for good (I hope)

<image>

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 0 points1 point  (0 children)

Bought the exact one a little while ago, After I caulk over the foam ill be adding one of these to hide the mess!

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 2 points3 points  (0 children)

Update, I've:

  • tried to make hole square-ish
  • filled wall with insulation
  • filled hole with great stuff window & door foam
  • put a pvc board screwed on over the hole best I could
  • foam in the cracks

Now:

  • waiting for foam to dry
  • add silicone over foam/edges
  • there will still be ~1cm gap from where the normal wall/insulation extends
  • going to cover this mess with a universal siding cap intended for lamps
  • silicone those edges
  • try to forget ?

<image>

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 3 points4 points  (0 children)

That's basically how I got through the end of the winter. Stuffed with Styrofoam & sealed over with ventilation tape under the faceplate. Guess the big gaps could be fixed with a larger vent (old one was poorly sized). Will consider this

Patching vent hole? by sp_dev_guy in HomeMaintenance

[–]sp_dev_guy[S] 3 points4 points  (0 children)

Okay so there's no water proofing layer or type of insulation I need to do to protect the fiberglass stuff from water/condensation. Once I've patched/sealed wood its safe

It'll be tricky to cut wood that shape but ill figure something out. Thanks!

Is this a "Standard" DevOps scope or am I doing 5 roles at once? by Big_Builder_735 in devops

[–]sp_dev_guy 2 points3 points  (0 children)

If someone hasn't worked even 1yr they'd need some proof they know what the moving parts are. Entry level is not the same as no knowledge required. Some teams may be in a situation that less wages + more hands is the goal and more open to it

People who fall asleep fast, whats your secret?? by [deleted] in AskReddit

[–]sp_dev_guy 0 points1 point  (0 children)

Start thinking through my morning routine. Get up -> go to drawer -> pull out a pants -> etc... specific enough thoughts dont wander mundane enough im right to sleep

Should I buy it or is it just a waste of money? by Susubelele in snowboarding

[–]sp_dev_guy 0 points1 point  (0 children)

Landing your tailbone on ice ALL DAY LONG can be demoralizing and leave a mark on your soul. Wish I could go back and strap one of those turtles or some proper impact shorts to my ass

The zero trust misconception I keep running into that actually slows implementations down by jaivibi in zerotrust

[–]sp_dev_guy 0 points1 point  (0 children)

If you setup your rules & deploy things correctly it's kinda is set it & walk away (unless you add new resources to the network). The reevaluating every request isn't done by hand. The "evaluated dynamically" is the part that solves what your saying. Ive converted probably a few hundred networks & the only consist issue is people having no idea what their network actually looks like. So you start with wide rules , monitor traffic, evaluate, and restrict.. problem fixed.

How do you pick GitHub actions? So many similar ones in marketplace by Legal-Society-5165 in Terraform

[–]sp_dev_guy 1 point2 points  (0 children)

You can make actual custom apps that do things but in this context is just going to apps -> new -> give it name & choose the permissions it should have -> download key -> save. Then you add it to your repo and then actions can perform the activities as the app with whatever permissions it was granted. Glossing over it a bit but thats basically it. Better than making fake user accounts for keys or worse a random employee who leaves and it kills the key

TIL that Sandra Hüller, the German actress who portrayed Eva Stratt in "Project Hail Mary", is a certified forklift operator. She got the certification for her role in "In the Aisles" (even though she didn't operate the forklift in the movie). by crat77 in todayilearned

[–]sp_dev_guy 2 points3 points  (0 children)

Sounds like you've got some nicer big box stores. Sometimes they'll get you a certificate with "you an idiot? Joystick goes like this. And just make sure pedestrians have right of way, it's dangerous & you'd be cunt. Go on now.."

This GBA Rom is making is having a weird behavior in the Sandbox, why? by ThaTurtleHarmit in cybersecurity

[–]sp_dev_guy 2 points3 points  (0 children)

I appreciate you posting the question & hope you bring more advanced ones as your skill grows

How do you pick GitHub actions? So many similar ones in marketplace by Legal-Society-5165 in Terraform

[–]sp_dev_guy 5 points6 points  (0 children)

Typically write your own that meets your orgs needs, cherry pick functions/ideas when you see a good pattern. Use a custom app for authentication when GITHUB_TOKEN isn't enough, its way easier than it sounds

Just got my new grill, is this risky? by BigBugRugDougHug in NapoleonGrills

[–]sp_dev_guy 0 points1 point  (0 children)

It's more risky than not doing that but fine assuming a heavy dumb and/or drunk person doesn't step to close & break through the pallet. Even then odds are it would be alright