Show newer

@psiie

Lets call them NonninfiniteScroll and NonfiniteScroll respectively, just to make sure we equally piss off everyone.

@stux Happy birthday. You've done a wonderful job with the place!

@inference Do either of these solutions have hardware encryption options similar to yubikey?

I do . Always and recently , , and . I talk a lot about in . I (try very hard to) responsibly share accurate information from reliable, recognized sources, and correct misinformation.

@fiaanaut I am an expert in the AI field and do it for a living (though we usually call it ML, though there is a subtle difference)

I am stepping back into and conversations. If you are in or or or just are interested in , I would love to listen to your research and burning questions and what you care about in your life. I will occasionally make mistakes, and I am grateful for pointed and passionate corrections.

Show thread

@vwbusguy

I used to do security clearance govt work, so yea I know the drill.

@oliof@octodon.social

@vwbusguy

When i started this I wasnt even thinking of doing single signn on at all.. was going to bastardize keyoxide and be donen with it... nnow i feel a SSO solution might not be a bad idea.

@oliof@octodon.social

@vwbusguy

My company is on the scale of 20 people, so yea, nno where near there. But we have some very high security concerns and are trying to do security on the level of a much larger corp... For example hardware full drive encryption everywhere. We are also a software company so we need to use our PGP identities to assure the public that content is authentic...

All that said i dont plan onn replicating your setup, it is a bit much.. but i may take the idea and borrow from it in a simpler setup.

@oliof@octodon.social

@vwbusguy

Thanks, all very helpful. I will be rethinking my original plan which was admitidly much simpler.

@oliof@octodon.social

@freemo @oliof SSO is the Identity Provider (IdP) and LDAP is the Data Store layer, managed by an Identity Manager (IDM). LDAP shouldn't be exposed publicly, but SSO and key servers with data sources managed by an IDM are.

@vwbusguy

Can you give me a breakdown in your mind of what software fills all the roles in an open source company... Who is the IDM, the identity provider, what software does the SSO, the LDAP, etc... specifically solutions that would work well with open pgp...

Checking out free ipa now.

@oliof@octodon.social

@vwbusguy

So what software represents the IDM here?

@oliof@octodon.social

@oliof@octodon.social This sounds reasonable except the gap i see is by using LDAP and not a public key server there is no way for people outside of the company to know whos key to trust that claims to be part of the company.

For example if someone in the company posts some software, or a letter or any conntent and an external user wants to see if they should trust them as a representative of the company and ensure they arent just an employee but authorized to validate releases or make particular decisions, how would they do that?

@crosstrainor There are a handful of us on QOTO (STEM instance so to be expected)... Not super active though. I have posted about a dozen astrophotography pictures of mine on here in the past. Hopefully will be doing more soon.

EARN IT - Anti-Encryption Bill Passes Senate Judiciary Committee

Sad day + I have no candy for the kids... shame on me ...

gizmodo.com/earn-it-anti-encry

@realcaseyrollins

And make sure there is absolutely no attention to nuance...

Mention what race you are... ban

Say something negative about a minority race... ban

Say something positive about a minority race.. ban

Mention your favorite competitor in the Tour De France race.... ban

Ask for help fixing race condition bugs in the python code you just wrote... ban

Talk about cooking some rice with an English accent... ban

@icedquinn

@CanXClV Not that I heard of.. but I dont hear a lot of things.. why?

@hadriscus It can be used to that effect, at least if your operating solo... But usually for commercial diving on commercial boats with expensive setups you are getting a different but similar sort of certification. You also operate at deeper depths a lot of time in a rigid suit.

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.