[-] bear@slrpnk.net 7 points 7 months ago* (last edited 7 months ago)

Your response is "why are you doing X, you should do Y"

Because they're right, you shouldn't do X. I know that's not a satisfying answer for most people to hear, but it's often one people need to hear.

If the process must run as root, then giving a user direct and unauthenticated control over it is a security vulnerability. You've created a quick workaround for your issue, and to be clear it is unlikely to realistically cause you problems individually, but on a larger scale that becomes a massive issue. A better solution is required rather than recommend everybody create a hole in their security like yours in order to do this thing.

If this is something that unprivileged users reasonably want to control, then this control should be possible unprivileged, or at least with limited privilege, not by simply granting permanent total control of a root service.

This is ultimately an upstream issue more than anything else.

[-] bear@slrpnk.net 7 points 8 months ago

Motorola has always had some custom additions, it's not running raw AOSP. Unless it's changed in the last year, not even the Pixel can do it. Good to know Moto has apparently had this feature for a while though, wish Google would get it into Android itself so everyone can benefit.

[-] bear@slrpnk.net 6 points 1 year ago* (last edited 1 year ago)

I will have an OG Xiaomi Mi Box and it's absurd how over the years it went from a purely functional media device to a complete shit show covered ads. Genuinely disgusted me every time I turned the TV on. I couldn't stand it anymore, I had to tear out the launcher with ADB and replace it with FLauncher.

I wish Kodi wasn't such a pain in the ass to deal with, especially for YouTube. We really need a new FOSS media center application. Until then, at least FLauncher works for now as a simple app switcher for a handful of Android apps.

[-] bear@slrpnk.net 7 points 1 year ago

It's far better than it used to be. They didn't get the reputation for no reason. There were lots of Nvidia-specific bugs that have been slowly sorted out over the years. I'm told Wayland is even in a roughly usable state now. But it takes a lot of time to regain the lost trust. Let's see how long it takes them to support HDR, and what that support looks like.

[-] bear@slrpnk.net 7 points 1 year ago* (last edited 1 year ago)

Never ask ChatGPT to write code that you plan to actually use, and never take it as a source of truth. I use it to put me on a possible right path when I'm totally lost and lack the vocabulary to accurately describe what I need. Sometimes I'll ask it for an example of how sometimes works so that I can learn it myself. It's an incredibly useful tool, but you're out of your damn mind if you're just regularly copying code it spits out. You need to error check everything it does, and if you don't know the syntax well enough to write it yourself, how the hell do you plan to reliably error check it?

[-] bear@slrpnk.net 7 points 1 year ago* (last edited 1 year ago)

These are scripts that manage stuff on a few hundred user endpoints and a few servers. They were doing basically everything manually until I got here, and the only way I could get them on board with my slow introduction of automation is to let them see it. I have to ensure things don't get too long, complex, or hard to explain, or they start getting nervous.

[-] bear@slrpnk.net 7 points 1 year ago

You could just as easily day "oh, ban asbestos? I guess we gotta save everybody from themselves, what a nanny state."

This is bad logic that can be applied to any safety law. As a society we observe and mitigate known harms, because we can't expect every citizen to be up to date on every possible way to harm themselves without realizing it or understanding the true scope of the damage being done.

So yes; sometimes as a society we decide to save ourselves from ourselves. There's nothing wrong with that.

[-] bear@slrpnk.net 6 points 1 year ago

It's inclusive of both pedophiles and hebephiles - that is, prepubescent vs. pubescent children

https://youtu.be/nu6C2KL_S9o

[-] bear@slrpnk.net 7 points 1 year ago

Used Nvidia for years, got tired of it. I used to keep a list of all the problems but I got tired of posting it.

Off the top of my head, gaming at all on Nvidia used to break KDE on X if you disabled the compositor for performance, the whole UI would visually freeze. FFXIV and WoW would crash constantly until DXVK put in special handling for the Nvidia driver. Wayland still has issues which means users with mixed refresh rates or VRR have to choose what features to sacrifice. Optimus laptop graphics switching support is a goddamn joke on Linux, only supported on a couple generations and it barely works there. Video hardware acceleration never worked on Firefox, no idea if it does now.

I installed an AMD GPU about a year ago and I've literally not thought about it once since. It just works, it doesn't cause problems, I don't have to do anything with drivers. I'm never gonna go back unless they get a fully functional open source driver stack.

[-] bear@slrpnk.net 7 points 1 year ago

People are fine. Hierarchy turns man into monster. Destroy the hierarchy, destroy the beast.

[-] bear@slrpnk.net 6 points 1 year ago

Yeah, this is perfectly doable. I ran a very similar setup for a while. I'd recommend passing one of the NICs directly through to the VM and using one for the host to keep it simple, but you can also virtualize the networking if you need something more complex. If you do pass through a single NIC, you'll need a switch capable of handling VLANs and a bit of knowledge on how to set up what's called a "router on a stick" with everything trunked over one connection and only separated by VLANs.

Keep in mind, while this is a great way to save resources, it also means these systems are sharing resources. If you need to reboot, you're taking everything down. If you have other users, that might be annoying for everyone involved.

[-] bear@slrpnk.net 7 points 1 year ago* (last edited 1 year ago)

Heroes of Newerth was the most toxic community I've ever been apart of. Nothing comes even close. It was rotten from top to bottom and made me quit a game I otherwise loved to play. I'm talking "The CEO frequently calls people slurs in all chat" level of bad.

view more: ‹ prev next ›

bear

joined 1 year ago