Mark is a user on octodon.social. You can follow them or interact with them if you have an account anywhere in the fediverse. If you don't, you can sign up here.

Mark @mark@octodon.social

FYI, my for baseimages. If any smaller exist (which is possible because I refuse to remove tools like ) let me know, please.
hub.docker.com/r/blitznote/deb

I am currently reading RFC 8188 to learn if this is something worth implementing in any software of mine or OSS I contribute.
tools.ietf.org/html/rfc8188

@jomo Keine Ahnung, worauf du dich mit „Poe“ beziehst. Allerdings weiß ich auch nicht, wie du meine Bemerkungen zu SHA HMAC bei TLS aufgenommen hast.

Mark boosted

I was thinking about a content auto expire feature for mastodon, and I would love people's feedback github.com/tootsuite/mastodon/

@jomo „Poe“? Sagt mir gerade nichts eindeutig. — Eine „passive“ Attacke ginge sehr viel leichter über Known-Content, ferner Länge von Übertragungen (Bursts). Auch hier ist eine „stärkere“ MAC nicht hilfreich (für keinen). Bin kein Fan von GCM, eher CBC+EtM. Kann GnuTLS, aber nicht OpenSSL afaik.

@jomo sha384 hmac kann aber nicht jeder und alles. Besser Kompatibilität mit sha oder sha256. Eine MAC geht ohnehin nur über ca. max. 16kB und hat eine Lebenszeit von Millisekunden. Zu wenig, zu schnell, zu teuer um eine Kollision (sha) zum nachgelagerten Bit-Flipping zu finden.

Intriguing new approach to Twitter and Mastodon: Scuttlebutt (»ssb«):
scuttlebutt.nz/

@chriseppstein Some prominent Linux kernel devs sticked with Google+. I wonder, hyperbolically speaking, will every subculture eventually adopt its own group-message/broadcast platform?

Mark boosted

Here's my prediction for mastodon:

* wave of new users, most will go back to twitter
* enough will stay to keep things interesting and development will proceed apace.
* Valid feedback will be iterated on. instance-independent Identity, federated search, instance migration, performance tuning and bug fixes, etc.
* As it matures, it will grow.

Ultimately, a focus on keeping the community welcoming and easing the barriers to adoption will pay off.

Mark boosted

@mark @Pixxella I'm happy to see a whole range of expression, from toots to blogs to 1-sheet folded paper zines

@potentato @Pixxella I wonder, what's the point in tweeting/tooting anyway. We could get back to running blogs and publish blogrolls (or not, privacy and the such). The perfect decentralization.

Ahh, I see. You cannot edit the tweets here, too. (toots? messages? broadcasts?). s/not being/not be/

@majormobius If you hand out such a stick to a third party, it's of »unknown provenance« to them and should, per recommendation, not being plugged in.

There's a conflict between recommending »don't plug in USB sticks of unknown provenance« (use CD/DVD to share files) and offering Fido U2F sticks.

Hɪɢʜ-Cʟᴀss Tʀᴏʟʟɪɴɢ: When you consider every word and sentence to craft a beautiful expert testimony, set it in TeX, and submit it. — Only to get a response by telefax from court to please submit the conclusion only, written in MS Word and Arial 12pt.