• 0 Posts
  • 119 Comments
Joined 10 months ago
cake
Cake day: November 8th, 2025

help-circle
  • I think you’re making a lot of assumptions on how the setup is. It could be fine IF they configured everything correctly and are enforcing things on the work profile. Or, it could be terrible IF they just said “install this app, that’s it”.

    Having a company provided device with poor guardrails would at least mean it’s not a device that the staff would do their personal stuff on, installing random apps. Having a company provided device with strong guardrails and fully locked down for this purpose would avoid most of the risk of an undiscovered vulnerability being abused. However well the work profile stuff is now separated in mobile OSs today, there can always be day 0s, and people will install any random apps on their phones or fall for plain social engineering.

    Maybe technically right now they’re comparable for security, but their risk profile is different I think.

    Imagine just targeting this place for phishing and creating a similar looking app with the same name, then sending fake communication to staff to say there is a new version and install it. They can just install it on their personal profile even if the work one doesn’t allow it and start putting data in it. In the case of a locked down work device they could just not install it. Also, there’s no reason for these devices to leave the grounds whereas personal devices will need to go out into the wild.

    Maybe if you consider it a personal device if the staff has to relinquish all control of their entire personal device to the work provided security controls they can achieve a similar risk profile, but at that point it’s just a work device the staff had to pay for, not their personal device.


  • You can have *.srv.lan point to your reverse proxy, and then just add something.srv.lan to point to somewhere else as well as another record. The exact record will overwrite the wildcard, but things would default to the wildcard.

    Alternatively, your router’s DHCP server should make things accessible under a local domain, sometimes it’s just .lan, or .local, or .home. If it’s nice it’d set the DNS search to that by default so you may be able to just ping the hostname of a device without any domains. Using those, you could keep your wildcard for services behind your reverse proxy vs devices on your network using the hostnames.

    You could also consider structuring your domains. E.g. $device.lan = the network interface. *.$device.lan = the reverse proxy on it.






  • The key doesn’t correspond to capability. It’s about the connector’s physical shape. i.e. which side is the lil notch on. B has a notch on the right, M on the left. B & M have a notch on both sides and therefore fits into either connector, but it is limited to PCIex2/SATA speed (i’d guess this won’t matter to you as pciex2 is around 4gbps even on pci1). It also doesn’t mean the length would fit, that’ll be a number like 2230, 2280 etc.

    You’d have to check the manual for the motherboard to see if it specifies, but if it’s labelled m.2 PCIe it should work I think. If it only said SATA then it would not work.

    You can try dmidecode --type slot on Linux, it should list them as available and presumably specify the type to be PCI express.

    I think ultimately you’ll only know when you try, but these may give you some confidence.


  • There are other means to help this exact issue than just increasing supply.

    They could instead re-introduce the government programs (ECO) to insulate homes better - which is just ending - to reduce demand. Pumping heat into a home that has a draft going through it is still just burning money.

    Increasing supply instead just fuels speeding up global warming which is contributing to higher energy usage due to requiring more heating/cooling. The same people will be equally affected by those issues, and that’s before even talking about the environmental impact and risks of the actual drilling.




  • I agree with you, and also consider the current AI setup destructive and unethical all the way from the model creation from mostly stolen data to the data centers to run it with the issue you listed.

    I would also prefer if more people spoke up on that to fasten the demise of this current hype.

    That being said I also realise that Linux (and therefore the kernel) is incredibly important in a different fight for privacy and owning our own devices. If it were to fall behind because they completely lock themselves off from the admittedly useful aspects of AI, it could backfire in a different way.

    I think it’s a lose-lose situation here and he understandably picked the side that’s more impactful for the Linux kernel (and him).








  • It is a good point about the bullying never stopping, but there are other ways to look at it as well. For example, online communities can be the escape for kids and a way for them to find support and friends if for some reason they are unable to in person. Sure the bill says they’re aiming not to block chat, but it’s not always a clear cut (e.g. discord, also not universally good or bad either).

    I also wonder if removing the social media and the online bullying aspect will simply increase the ferocity of the in-person aspect, or even the overall depth as bullies may assign blame to their victims for them losing access to services.

    I agree with the rest of your points, unfortunately it’s evident the goal is not to protect kids but to remove anonymity and cater to the oligarchy - otherwise the government would be pushing social media sites to moderate themselves and service providers to give parents tools for this (or age verification in a manner that doesn’t expose your identity outside of your device aside from the age group flag)


  • Thank you for the perspective.

    I’m surprised parents think this is helping the issue though. I remember being bullied in school and going home after being beaten by other kids, before the time the internet became broadly available or smartphones existing.

    Not that I don’t think bullying is a problem, rather that this is duct tape with a side of privacy violation for everyone with barely a thought about how to even do the age verification well.

    We are not seeing anything about funding the educational system, trying to attract more teachers, aiming for smaller class sizes, funding activities and clubs or more support for parents to spend time with their kids.