boblin

joined 2 years ago
[–] [email protected] 3 points 2 years ago

Using containers from public registries is no worse than using third party software. In both cases there's a risk of malicious code. The big difference is that for containers you can scan the image before running it, SBOMs are becoming ubiquitous so dependency vulnerabilities are easier to detect, and runtime protection software is more effective on containers because each container has a deterministic expected behaviour, making it easier to find deviations. I'd much rather manage runtime controls for containers than craft selinux policies.

The bottom line (which the OP article misses) is that while individual container configurations require more effort to set up the additional work to manage them at scale is low, whereas compliance for host based installs is requiring more and more effort. In fact given how popular curl | sh ... is becoming for host based installs I'd argue that they are regressing in terms of safety and reproducibility.

[–] [email protected] 7 points 2 years ago (2 children)

W-why do the masks have ear holes??

[–] [email protected] 33 points 2 years ago (1 children)

That's impossible, we know Anakin is Luke's dad and Obi-Wan told Luke that Vader killed him.

[–] [email protected] 7 points 2 years ago (2 children)

16 and below is unambiguous. It's a child up to and including 16 years old. Compare that to "below 17" for example, which technically means the same but might be confused to include 17 by someone skimming the question.

[–] [email protected] 44 points 2 years ago (1 children)

I don't recall Reddit having unique content - what I do remember however was that it had aggregated content. It filled the role of Slashdot, Fark, and other sites, and it had a comment threading system that was far more usable. The memes came after.

[–] [email protected] 41 points 2 years ago (1 children)

"Don't you think he looks tired?"

[–] [email protected] 5 points 2 years ago

That's s good trick.

[–] [email protected] 9 points 2 years ago (2 children)

Legally it is quite clear. Taking a description of a closed source program and writing a new one is ok in most cases (unless that description is API docs - see Cisco vs Arista). Taking a look at closed source software and then implementing your own version is poison as far as OSS goes. OP implemented the first version, so that's already a problem. They may get away is they describe what the program does to someone else and let them implement it, but OP would not be able to touch the source code

[–] [email protected] 1 points 2 years ago

If you can find a Portuguese translation of Borges' books that would be a good choice.

[–] [email protected] 2 points 2 years ago

So... Seven Samurai in space?

[–] [email protected] 2 points 2 years ago

TL;DR: It's Prometheus, and he didn't call the whole film dumb, just a lot of its plot points.

[–] [email protected] 3 points 2 years ago (1 children)

But Jaskier isn't gay in the show, either. He's bisexual.

Oh yeah, that completely changes things, and does completely fit in with the character.

I do have to admit that I did not watch the latest season, not because of Jaskier but because of what they did to Eskel in the previous season. So I took the other commenter's word that the character was made gay. I guess that's what I get for assuming honesty until proven differently on the Internet.

view more: ‹ prev next ›