/srv/irclogs.ubuntu.com/2018/03/16/#ubuntu-us-mi.txt

Scary_Guycmaloney, thanks for reminding me about our impending doom.  even if we solve death somehow we either need to escape this universe into a new dimension or break the laws of thermodynamics and create energy from nothing05:21
Scary_Guywe all get to die three times.  first when we actually die, then when we get thought about for the last time, and finally when the energy that made up us is frozen in a block of ice at absolute zero05:23
Scary_Guywell, that's my hypothesis anyway05:24
Scary_Guyand no, nihilism is not as fun as it sounds :-(05:25
_stink__that'll get you going on a friday morning11:55
cmaloneyheh13:01
cmaloneygood am13:01
Scary_Guymorning13:20
jrwrenGood Morning13:49
jrwrenrick_h: https://medium.com/delightful-treats/nest-video-doorbell-first-impressions-a-surprise-ending-2bbba9adf810  ut oh14:28
cmaloneySurprise ending?14:32
cmaloneyWhat could be surprising about this?14:32
Scary_Guywell, I don't think he expected it with the other two services working fine14:33
Scary_Guynot that Next might be an inferior device, it may have just been the one active when the transformer decided to blow.  they don't last forever, nothing does14:33
jrwrennearly burning down his house is a surprise.14:36
jrwrenrick_h isn't wiring his to a transformer anyway, so we don't have to worry about him.14:37
Scary_Guyit's in the Nest firmware, so if you piss them off or cancel they just burn down your house14:37
jrwrenScary_Guy: wow... or... hackers get root on it and just run commands to increase power draw and BAM, house burning down.14:37
jrwreninternet of shit at its finest.14:37
Scary_Guybecause just how many sci-fi movies where the smart house tries to kill its owner are there?  Oh and that Outer Limits episode.  Pretty sure there's a trope for this14:39
cmaloneyAt it's basest trope is man vs. machine14:40
cmaloneybut yeah, house-connected eqquipment vs.man14:40
jrwrenHouse is one of the best comedy horror movies of all time. There. I said it.14:42
Scary_Guyyeah, but that's supernatural based14:45
Scary_GuyI'm thinking more like Electric Dreams14:45
Scary_Guyor Fortress14:45
jrwrenha! Fortress!14:45
Scary_Guythat's the movie that inspired me to make my keyboard chair14:46
jrwrenhey, I actually have an ubuntu question!14:48
Scary_Guyhttps://imgur.com/a/WqwHR is a lot like mine14:49
Scary_Guywell, I have those same arm rest attachments that the keyboard(s) sit on14:49
jrwrenwhen I run ubuntu on a certified cloud, the cloud image automagically has the cloud tools for that cloud. e.g. amazon cli tools in ec2, azure cli tools in azure, gcloud in google compute.  But if I am running docker images based on ubuntu, I don't get that. What are the names of the packages for each certified cloud?14:49
jrwrenI should ask on askubuntu.14:49
Scary_Guyyou'd probably cast a wider net that's for sure14:50
jrwrenya know what would be really interesting if some samba client apps started accepting port number and we rant it over the internet, like SFTP only better and faster.15:09
cmaloneyI'm not sure I would trust Samba over the internet like that. :)16:01
cmaloney(though I'm likely misunderstanding the sentiment)16:01
jrwrencmaloney: why not? modern samba is very secure.16:01
jrwrencmaloney: I'm talking encrypted SMB3 only.16:02
cmaloneySamba always felt a little too promiscuous to me16:02
=== hpucks_ is now known as hpucks
cmaloneypartly because it seemed to announce itself on the network and say "hey, I'm a file server!"16:03
jrwrenyou have to let go of your feelings.16:03
cmaloneyand that felt like a prelude to disaster16:03
jrwrenhahaha, except EVERYTHING announces itself now.16:03
cmaloneyI still haven't forgiven Bon Jour. ;)16:03
jrwrenSSDP and upnp and so on.16:03
jrwrenno mdns for you?16:03
cmaloneyGod, upnp is a disaster imho16:03
jrwrendlna!16:04
cmaloneyStahp16:04
cmaloneyNext you're going to say that whatever they used on routers to automatically pair them was a great idea.16:04
* cmaloney is blanking on the acronym16:04
jrwrenI let go of my smb1 past because i learned long ago not to consider the past, only the here and now.16:04
jrwrene.g. My team lead once prefered telnet to ssh because ssh once had a security whole which allowed access for all and telnet didn't.16:05
jrwrenWPS.  no, i've never WPS. neveer, not even once.16:05
cmaloneyRight, but I have a hard time with MS protocols because they tend to treat security as a secondary level of access16:05
cmaloneyYeah, WPS.16:05
cmaloneyGod, that's a clusterfuck16:06
jrwrenI don't even consider SMB2 or SMB3 as MSFT protocols. I guess I'm crazy like that.16:06
jrwrenAnd their treatment of security as secondary hasnt' been true in about 15yrs.16:06
cmaloneyUm, weren't they responsible for pushing upnp?16:07
cmaloneymaybe I'm mis-attributing that to them16:07
jrwrenyeah, I dont' know.16:07
cmaloneybut it seemed they were at the forefront of pushing protocols that did things that were transparent to the user that could damage security16:07
jrwrenI know very little about upnp16:07
cmaloneyand upnp seemed at the forefront of that. :)16:08
jrwrenYou mean like automatically pass your windows login password as the password to connect to remote shares?  I always loved that feature :)16:08
cmaloneyyyyyeaahhh.16:08
cmaloneyhttp://www.upnp-hacks.org/16:09
jrwrenConficker!!!16:09
jrwrenstill, "SANE 2006"  I said 15 yrs, but that was only 12. so sorry.16:10
cmaloneyhttps://arstechnica.com/information-technology/2013/01/to-prevent-hacking-disable-universal-plug-and-play-now/16:10
cmaloneyI mean, these are old, but they seem to describe a pattern of ease-of-use vs security16:10
cmaloney"There are a number of articles describing how many UPnP capable routers don't check if an IP is internal before opening the ports. You can knock from the outside to open say, 3389 and scan through the typical LAN addresses to see if anyone is home. "16:11
cmaloneyA lot of it is naive implementations of standard protocols16:11
jrwrenso... that is routers, not MSFT, right?16:11
cmaloneyright16:11
cmaloneyBut again, it's the promiscuous nature of the protocol that gives me pause16:12
jrwrenyou are projecting that.16:12
cmaloneyNot that it's a unique problem of Microsoft, to be fair16:12
jrwrenthere is absolutely nothing promiscuous about smb316:12
cmaloneyMaybe it is16:12
cmaloneybut that's something I'm having a hard time shaking16:13
cmaloneyI really don't like CIFS / Samba16:13
cmaloneyand that's likely in part because I don't understand it and I don't trust it16:13
cmaloneybut then again I trust NFS, so that is likely misplaced trust as well. ;)16:13
cmaloney(and not even NFS v4)16:13
jrwrenha! yeah.16:15
jrwrenif you trust an untrusted host to mount NFS shares, you REALLY need to learn why not to.16:15
cmaloneyOh absolutely16:15
jrwrenSMB on the other hand is built for that.16:15
cmaloneyI don't trust untrusted hosts with NFS16:15
cmaloneybut I haven't gone to the level of NFSv4 because ugh16:16
jrwrenright.16:18
jrwrenthis is why i like smb so much. less complexity than a secure nfs, and just as secure.16:18
jrwrenand its FAST16:18
jrwrenwhy is https://packages.cloud.google.com/apt/doc/apt-key.gpg empty on one client and non empty on antoehr client?17:46
cmaloneyCDN?17:48
jrwrenmust be.17:51
jrwrensame client network even.17:51

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!