biscuitswalrus

joined 1 year ago
[–] biscuitswalrus@aussie.zone 3 points 3 months ago (1 children)

You know it's stuff like this that forces me to rewrite dns on the firewall, but that's probably not even possible if they use DNS over TLS.

[–] biscuitswalrus@aussie.zone 32 points 4 months ago (1 children)

Hate to break it to you, but most IT Managers don't care about crowdstrike: they're forced to choose some kind of EDR to complete audits. But yes things like crowdstrike, huntress, sentinelone, even Microsoft Defender all run on Linux too.

[–] biscuitswalrus@aussie.zone 9 points 4 months ago (3 children)

Well, what I really wonder is if because the kernel can include it, if this will make an install more agnostic. Like literally pull my disk out of a gaming nvidia machine, and plug it into my AMD machine with full working graphics. If so this is good for me since I use a usb-c nvme ssd for my os to boot from on my work and home machines and laptops for when I'm not worrying. All three currently have nvidia cards and this works ok. I have some games to chill and take a break. My works core OS for work MDM etc unmodified. I like it that way.

I realise this is not a terribly useful case, but I could see it for graphically optimised VM migrations too not that I have many. Less work in transitioning gives greater flexibility.

[–] biscuitswalrus@aussie.zone 2 points 4 months ago

I mean to say, once I'm home I'm watching this with headphones and absolute attention haha.

[–] biscuitswalrus@aussie.zone 4 points 4 months ago (1 children)

I was going to comment in the thread "what YouTuber don't you watch any more" and this I considered putting as one because they left on such a high note. My favourite is the Jackie Chan. I've rewatched that at least 3 or 4 times to share to about anyone who wants to sit down.

[–] biscuitswalrus@aussie.zone 1 points 4 months ago

Sorry to clarify: updates come as security or as feature updates. If I've already got a standard operating environment (SOE) with all the features I/staff need to do work, I don't need new features.

I then have to watch cves with my cve trackers to know when software updates are needed and all devices with those software get updated and the SOE is updated.

I can go on a rant about how bad the Linux has recently made my life as someone's policy is that any Linux bug might be a security vulnerability and therefore I now have infinite noise in my cve feed, which in turn is making decisions on how to mitigate security issues hard, but that is beyond this discussion.

So in short I'm only talking about when you update, updating only security fixes, not the software and features. Live patching security vulnerabilities is pretty much free low effort, low impact, and in my personal opinion, absolutely critical. But software features patching can be disruptive, leaves little to be gained, and really only should be driven for a request to need that feature at which point it would also include an update to the SOE.

[–] biscuitswalrus@aussie.zone 1 points 4 months ago

Inertia is just a sign of maturity. It's fine. Nothing wrong with it. Especially when the new stuff is happening along side it. In 10 years there may be people asking why you're using arch or nix, when whatever new thing is superior. But it'll just be proof that nix can run in production for 10+ years.

[–] biscuitswalrus@aussie.zone 4 points 4 months ago

Is that the one where you start with a stealth mission that never appears again in the game? It acts as a mandatory tutorial and makes the whole thing unreplayable because of its heavy handed enforcement? If I'm right, this game is a really good minor evolution of the original for exactly one play through. However I wanted to enjoy it a second time a few times but never got through the intro. Hmm exactly how I'd describe metal gear solid 5. I've got great memories just can't revisit it.

[–] biscuitswalrus@aussie.zone 2 points 4 months ago

Yeah I have constant crashes back to login screen but never have I seen a kernel panic except before a system boots. Mm a few exceptions

[–] biscuitswalrus@aussie.zone 2 points 4 months ago

Oh you got a good chuckle out of me

[–] biscuitswalrus@aussie.zone 1 points 4 months ago (2 children)

They probably have been using it for years, and for the last more then a decade I've been using Ubuntu as my main Linux distribution since I have work to do and I'll get to doing work faster in ubuntu than any other distribution.

Why did I start with Ubuntu? 10+ years ago Ubuntu was lightyears ahead for community support for issues. Again, I had work to do, I wasn't hobbyist playing "fuck windows".

In fact look at things like ROS where you can get going with "apt install ros-noetic-desktop" and now you can build your robotics stuff instantly. Every dependency to start and all the other tooling is there too. Sure a bunch of people would now say "use nix" but my autonomous robotics project doesn't care I am trying to get lidar, camera, motors, and SLAM algorithms to work. I don't want to care or think about compiling ROS for some arch distribution.

I won't say I don't dabble with other distributions but if I've got work to do, I'm going to use the tools I already know better than the back of my hand. And at the time, when selecting these tools, Ubuntu had it answered and is stable enough to have been unchanging for basically a decade.

Oh and if I needed to, I could pay and get support so the CEO can hear that risk is gone too (despite almost every other vendor we pay never actually resolving a issue before we find and fix it.. Though I do like also being able to say "we have raised a ticket with vendor x and am waiting on a reply").

[–] biscuitswalrus@aussie.zone 5 points 4 months ago (6 children)

From my perspective, if used for work, automatic security updates should be mandatory. Linux is damn impressive with live patch. With thousands or even tens of thousands of endpoints, it's negligent to not patch.

Features? Don't care. But security updates are essential in a large organisation.

The worst part of the Linux fan base is the users who hate forced updates, and also don't believe in AV. Ok on your home network that's not very risky compared to a corp network with a million student and staff personal information often with byo devices only a network segment away and APT groups targeting you because they know your reputation is worth something to ransom.

view more: ‹ prev next ›