Monthly Shaarli

All links of one month in a single page.

July, 2021

ISO/IEC: Publicly Available Standards
firewalld 1.0.0
VisiData
thumbnail

visidata is a terminal interface for exploring and arranging tabular data.

LiveKit
thumbnail

Open-source, distributed video/audio rooms over WebRTC.

AWS's Egregious Egress
thumbnail

Article on AWS's questionable egress pricing.

Germany's National Healthcare System Adopts Matrix

The national agency for the digitalization of the healthcare system in Germany will use Matrix as an instant messaging standard.

A Case Against Security Nihilism
thumbnail

»While cynics are probably correct (for now) that we probably can't shut down every avenue for compromise, there's good reason to believe we can close down a vector for 0-interaction compromise. And we should try to do that.«

rpm-ostree

rpm-ostree is a hybrid image/package system allowing atomic upgrades/rollbacks.

AmIUnique

»Learn how identifiable you are on the Internet.«

Mitmproxy 7

Among other improvements, mitmproxy now supports TLS-over-TLS, HTTP/2 - HTTP/1 interopatibility, and host header-based proxying.

`time(1)` and CPU frequency scaling

With dynamic CPU scaling, the time a CPU took to complete a task and how much work the CPU did have to do, are two different things.

Microsoft Puts PCs in the Cloud with Windows 365
thumbnail

Microsoft introduces Windows 365, its virtual desktop product.

"But What if We Just Use Encryption?" – Practical GDPR for CTOs
thumbnail

For data protected by the GDPR, encryption is not sufficient for processing data.

Let’s Build a Simple Database

»Writing a SQLite clone from scratch in C.«

Rustpad
thumbnail

»Rustpad is an efficient and minimal open-source collaborative text editor based on the operational transformation algorithm.«

How to Backup KVM Virtual Machines Using virt-backup.pl Script
thumbnail

In this post, the author gives a short introduction to using virt-backup for KVM backups.

TCP Fast Open? Not So Fast!
thumbnail

TCP Fast Open allows the initial SYN packet to contain data. This post shows what practical challenges TFO is currently facing.

»A Damn Stupid Thing to Do« — The Origins of C
thumbnail
The Geography of Open Source Software: Evidence from GitHub

This paper is analyzing the geographical distribution of OSS contributions from GitHub.

git-quick-stats
thumbnail
OpenZFS 2.1
thumbnail

The latest OpenZFS version comes with support for Distributed RAID (dRAID) topology.

System CPU Time – `sys` Time in `top`
thumbnail

This blog post explains system CPU time and user CPU time.

Can I Take Your Subdomain?
thumbnail

This site and the related paper focuses on same-site attacks on the modern web through the takeover of insufficiently secured subdomains.

entr
thumbnail
LNAV

lnav is a command-line log file viewer.

Rhit

Rhit is an Nginx log analyzer.

rdiff-backup
Eternal Terminal
thumbnail

Eternal Terminal (ET) is a remote shell that automatically reconnects. Inspired by autossh and mosh.

Sequoia: A Deep Root in Linux's Filesystem Layer (CVE-2021-33909)

This article summarizes a size_t-to-int conversion vulnerability in Linux's files system layer exploited by creating, mounting, and deleting a deep directory structure.

Migrating Facebook to MySQL 8.0
thumbnail

This blog post gives insights into how Facebook migrated from MySQL 5.6 to 8.0.

Regex Cheatsheet
Casio fx-9750GII Webserver

Webserver on a calculator.

Raspberry Pi 1U Server
thumbnail
Ghidra
thumbnail

Ghidra is a software reverse engineering (SRE) framework by the NSA.

Proxmox Backup Server 2.0
thumbnail

Like Proxmox VE, the new release of Proxmox Backup Server is based on the upcoming Debian Bullseye and includes Kernel 5.11 as well as ZFS 2.0.

Installing SCO UNIX

Two-part blog series on installing SCO UNIX.

MySQL/ZFS Performance Update
thumbnail

Percona finds that MySQL on ZFS is now on par with ext4 performance-wise for their test use case.

Sovereign Cloud Stack (SCS)
thumbnail

The Sovereign Cloud Stack (SCS) is the open-source base for the federated data infrastructure project Gaia-X.

OpenVAS

»OpenVAS is a full-featured vulnerability scanner.«

Harvester

Harvester is a bare metal HCI solution by SUSE.

Proxmox VE 7.0
thumbnail

This week, version 7 of the Proxmox Virtualization Environment landed. It is already based on the upcoming Debian 11, and among other improvements, it supports using BTRFS and Ceph version 16.2.

Video, Slides, and References: USENIX LISA2021 Computing Performance: On the Horizon

In his LISA21 talk, Brendan Gregg gives an overview and makes some predictions on server performance.

BGP in a Nutshell

This blog post gives a brief introduction to the Border Gateway Protocol (BGP).

Ausfall am 29.06.2021

Post-Mortem über einen Incident mit dem Ceph-Cluster bei Uberspace, verursacht durch eine Spannungsschwankung.

25 Gigabit Linux Internet Router PC Build
thumbnail

In this blog post, the author introduces his custom build 25 Gbit/s Internet router.

A Curated List of Books on Software Architecture
thumbnail
Timeshift
thumbnail

Timeshift for Linux takes system snapshots in regular intervals.

Internet-in-a-Box

»Internet-in-a-Box brings the power of a free Digital Library of Alexandria into the hands of any school, hospital, or community worldwide.«

Video: Kind Engineering: How to Engineer Kindness

In his talk, Evan Smith gives practical tips on how to become a kinder engineer.

Nice Nginx Features for Operators

The blog presents some practical Nginx features, e.g., rate-limiting, caching, and the split-client module.

fd
thumbnail

»fd is a program to find entries in your filesystem. It is a simple, fast and user-friendly alternative to find. While it does not aim to support all of find's powerful functionality, it provides sensible (opinionated) defaults for a majority of use cases.«

Video: A Tour of the Fuchsia Operating System
thumbnail

Demonstation of some of the concepts in Fuchsia.

Video: Roundtable: Demystifying European Digital Sovereignty
thumbnail

»…roundtable for a dynamic and open discussion around the meaning and implications of the notion of European sovereignty in today's digital world.«

2021 CWE Top 25 Most Dangerous Software Weaknesses

MITRE 2021 Common Weakness Enumeration (CWE) Top 25 list.

Open Insulin Foundation
mboxviewer
thumbnail

»Simple mbox viewer.«

Looking Glass

VGA PCI Pass-through KVM optimized for low latency and performance.

OpenSearch 1.0

OpenSearch, Amazon's fork of Elasicsearch and Kibana, is now generally available.

Virtuozzo Linux 8.4

Virtuozzo Linux is another alternative to RHEL/CentOS 8.4.

First Complementary Vertical Organic Transistors Reach GHz Speeds
thumbnail

»A team at the Technische Universität Dresden has developed the first implementation of a complementary, vertical organic transistor technology.«

Japan Has Shattered the Internet Speed Record at 319 Terabits per Second
thumbnail
What Wrent Wrong?

Poul-Henning Kamp on why it's time for governments to establish IT accident investigation boards.

MyDumper
thumbnail

MySQL backup tool.

XCP-ng

XCP-ng is an open-souce Hypervisor based on XenServer.

Nextcloud Hub 22
thumbnail

Version 22 of Nextcloud Hub is now available. Some of the improvements: User-defined groups, integrated chat and task management, PDF document signing, and integrated knowledge management.

Upgrading a FreeBSD 12.2 jail to FreeBSD 13 using `mkjail`

Dan Langille on upgrading jails with mkjail without a jail manager being involved.

High Availability With OpenBGPD on OpenBSD 6.9
PostgreSQL, Memory and the Cloud

The author explains how Postgres out-of-memory situations are handled differently on cloud instances.

CMake Part 1 - The Dark Arts
thumbnail

Introduction to CMake.

Audio: What Is Good Release Engineering?
thumbnail

This podcast episode from The Changelog gives Insights into the release process of RabbitMQ and FreeBSD.

apprise
thumbnail

apprise is a notification framework that integrates many popular notification services.

The Open Voice Network

The Open Voice Network is a Voice assistance project funded by the Linux Foundation.

REvil
thumbnail

»A massive REvil ransomware attack affects multiple managed service providers and over a thousand of their customers through a reported Kaseya supply-chain attack.«

An EPYC escape: Case-study of a KVM breakout

The Google Project Zero team explains how AMD-specific led to KVM virtual machine escape.