Forgot your password?
typodupeerror

Comment "Amateur city"? (Score 1) 6

I'm...curious...if Nadella's assessment of the board had to do with some deficiency in keeping minutes; or if he's just shocked into incomprehension by the idea that the board would fire you for anything aside from failing to make line go up or some really sordid sex thing that is going to reach public knowledge real soon.

For basically any employee "is lying snake who none of us can trust about anything he says" would seem like it does the job, especially with the fairly limited US requirements for firing people; so it's hard for me to see that as an obviously amateur move unless they were either chaotic in some visibly horrifying way about it; or he is just applying his own theory of what the board should and shouldn't fire you for (and to what, at least theoretically, is a nonprofit board that was supposed to be keeping the c-suite on-mission; not just appeasing the shareholders).

Comment Re:All according to plan. (Score 1) 198

Yeah but I have to drive 1000 miles up hill (both ways) every day for work in temperatures where lithium itself freezes, and I only pee on Sundays.

I don't need 1000 miles. 600 (unencumbered) is definitely sufficient, and 500 might be okay. The thing is that I'll lose half to 2/3 of that range when towing my camp trailer, and that's not even considering that I'm typically towing it up into the mountains, gaining ~5000 vertical feet. I also need minimum 12k pounds of towing capacity and I'd like a little headroom, so call it 16k, and the bed payload has to be able to take at least 2000 pounds, because that's how much the trailer puts on the fifth-wheel hitch.

I'm anxiously awaiting an EV pickup that can do this. I'd love to have essentially unllimited electricity to buffer cloudy days (I have 1 kW of solar panels on the trailer and on sunny days they generate way more than enough, but consecutive cloudy days can leave be difficult).

3/4 ton and 1-ton gas and diesel pickups typically have oversized fuel tanks that provide about 600 miles of range, because that's what you actually need when you start hauling or towing significant loads. I don't think an EV pickup needs to have more range, but it needs to be comparable, and to be able to tow and haul comparable loads.

I'm not anti-EV by any means. I bought my first EV in 2011, and have had electric cars ever since. Trucks are a different sort of problem, though.

Comment Re:All according to plan. (Score 1) 198

Oh, I think the Silverado EV's are adequate. 480+ mile range in best conditions still puts me way over my bladders ability to drive even in the absolute worst conditions of that tow + cold weather. That thing will still be 200'ish miles of towing in cold weather.

That's getting there, though I'd like to see some driving tests with a good-sized fifth wheel at highway speeds. The towing capacity is probably okay, though it provides very little headroom for when I'm towing both my camp trailer (~8k) and my boat (~3.5k), which I actually do several times each summer. But I think the payload capacity is too small to tow the trailer, which puts about 2000 points on the truck.

Comment Re:Pare down the bloat (Score 1) 88

I suspect that it depends on how strongly or weakly the 'bloat' is connected to other things; and what supporting them involves.

Something like not having TSC (which itself comes in several variants depending on whether it's from the era where you actually had 'a' CPU that just ran at a speed, or if it's one of the ones that tries to compensate for the complications of variable clocks and multiple cores) presumably comes up in a variety of nasty places related to the bad things that happen when things are not done in the expected order.

Just some random PCI device that nobody developing actually owns anymore is presumably at risk of unnoticed regressions; but (especially with the amount of PCI DNA that got carried over into PCIe or was used for the software-visible interface of some system on chip that skipped the cost of actually implementing a 32 bit parallel multidrop bus out to the PCB but either specifically sought compatibility or couldn't justify cooking up something custom when the peripherals they were integrating were all derivatives of PCI designs) it's not necessarily much maintenance overhead for it to just exist on a 'cool if it works for you' basis as a module that you probably don't need.

There's also the secondary matter of the fact that 'the kernel' has a limited number of people directly focused on its interests in the abstract; rather than some hardware vendor, distro, enthusiast, or hyperscaler's interests. If preserving hardware compatibility is directly contrary to the interests of supporting the major contemporary use case of fairly large 64 bit x86 servers and embedded ARM widgets (as 486 and pre-TSC 685-ish likely was) it's going to have relatively few friends among the people actually doing the work. If someone wants to maintain some weirdo HAM radio interface card that merely assumes the existence of PCI it's not clear anyone will go out of their way to help if they need to update something to cope with a change elsewhere; but it's not like the Ministry of Kernel is going to order them to go find bugs in the implementation of CXL memory because that's where the money is.

Comment Re:All according to plan. (Score 1) 198

Agreed. My sedan has been electric for nearly a decade now, but I'm still driving a diesel pickup (1-ton, though a 3/4 ton would be sufficient) because EV pickup range is inadequate -- and I think it may be inadequate for a while. I need 250 miles of range when towing a trailer, which means I need ~500 -- maybe 600 -- miles of range without.

I'm not generally a fan of hybrids, but I think plug-in hybrids with large-ish batteries may be the sweet spot for a while with pickups. The Dodge Ramcharger is looking really good to me, though I'd like to see them make a 2500.

Comment This should go well. (Score 3, Insightful) 95

If these guys are actually treating a user agent string as an authentication mechanism I'm honestly surprised that being on the public internet hasn't already eaten them alive purely because of the supply of malicious opportunists; and I'll be even more surprised if it continues to work out for them now that they've drawn a fair amount of attention to it.

Comment Re:META is doing this to make them quit (Score 1) 91

That's actually a smart strategy.

It is effective at reducing staff cheaply, but it has a huge downside, shared with most attrition-based schemes for reducing payroll: The best employees are also the ones who find it the easiest to leave. The worst employees are also the ones who will grit their teeth and hold on to the bitter end.

It's harder and more costly (in the short term) to do targeted layoffs which allows the company to target low-performers, or those who are low performers relative to their cost. It's the better choice, though.

But I wonder how many employees will quit in today's job market.

Lots of the top performers will.

Comment Re:I'm curious what the response will be. (Score 1) 28

If the 'AI' guys are anything to go by; probably get increasingly elaborate with their attempts to bypass whatever rate limiting is put in place. It's honestly sort of wild seeing the hottest, most heavily capitalized, elements of 'tech' wrap around so rapidly and with so little concern toward the sort of traffic patterns you normally associate with criminals as soon as it's in their interests. At one time I would have been surprised.

Comment Re: Yeah. It will (Score 1) 72

There is an intermediate situation that that case arguably illustrated:

Using violence against harder targets is more of an organizational problem; and solving that problem potentially skews your candidate pool; but what's very curious(particularly for a society whose overall violence numbers are very much on the high side by developed world standards) is how safe it apparently is to be widely notorious and a fairly soft target. Thompson was just walking down the sidewalk alone at a predictable time and location. Zero precautions. Something like the Sacklers were a household name for over a decade, with strong cases for culpability in at least low 6 figures worth of deaths sprinkled across a variety of walks of life; even the ones you suspect might be risky like deer hunters with dead kids and members of criminal organizations where internecine homicide is routine, and what came of it? Nothing. Not even any 'foiled at a late stage'/'shot and missed' level stuff.

That's the genuinely puzzling bit to me: not that there's nobody going after people who take the sort of precautions that would probably require one of the old-school 80s red army faction types to deal with; but that it's apparently really safe to be widely loathed and not do much about it in a country where 20k firearms homicides a year isn't considers terribly exceptional. If the people who can actually afford guard labor were having to make the onerous lifestyle commitments to living like someone's out to get them it would be relatively unsurprising that being able to afford competent professionals puts you ahead of angry amateurs much of the time. What is surprising is how often there's apparently no downside to not even bothering. We even have to import the lurid stories of 'crypto kidnapping' by purely financial opportunists from overseas to obtain them in any quantity.

Comment I'm curious what the response will be. (Score 0) 28

It's essentially impossible to make a good argument for some uncached CI lunacy that has you outperforming the overtly malicious as a source of traffic; but if there's one thing that reliably upsets people it's getting called on convenient behavior that they can't readily justify; so I'm genuinely curious what the ratio of sensible adjustment to unhinged freakout by bro whose subsidy is not in fact a law of nature they'll see.

Comment I really don't get it. (Score 5, Interesting) 72

Obviously trump doesn't care; if anything the grifts that you can totally phone in are probably even funnier than the ones where you have to try; but I'm puzzled by why this sort of thing doesn't bother some of his enthusiasts more. Not the nihilistic edgelords and ethnic nationalists so much; but if you are actually enthusiastic about 'greatness' shouldn't it worry you that Dear Leader, who you trust to deliver national renewal, apparently can't puke up the sort of zero-effort ODM rebadge job that any garbage tier prepaid carrier does anywhere from multiple times a year to at least annually, depending on market conditions?

Obviously the phone itself is basically irrelevant; but it seems like the sort of project that would cause anyone not wholly immune to feel some degree of at least secondhand embarrassment about.

Comment Use Argon2id (Score 1) 106

Using a proper password hashing algorithm mostly addresses this concern... and standard cryptographic hashes like MD-5, SHA-1, SHA-256, etc. are not appropriate. They're designed to be as time and space-efficient as possible while still achieving their security goals. Password hashing functions (more precisely, password-based key derivation functions) are designed specifically to be time and space-hungry, efficient enough that you can execute them in half-second or so for user authentication, but slow enough that brute forcing even moderately-good passwords is intractible.

The best widely-available algorithm is Argon2id. The modern algorithms don't focus so much on requiring lots of CPU cycles because GPUs. Instead, they focus on requiring significant amounts of RAM, in ways that provably cannot be reduced. The most-recommended Argon2id configuration requires 2GB RAM. This makes it feasible for most servers to handle fairly easily, as long as they don't have to verify too many passwords in parallel, but it means that GPUs don't help the attacker, and it's also slow enough that while you can get some traction by using a large botnet, it's really not very much. If a PC requires 500ms per attempt, and you have a million-machine botnet, you can still only try 2M passwords per second. If user passwords have, say, 30 bits of entropy, your massive botnet can find one every five minutes on average. If they have 40 bits, your botnet can find a password every ~3 days, on average. That's not nothing, but if you have control of a million machines, you can definitely find better uses for them.

Of course, even better is to use passkeys or similar, but as a practical matter you probably have to have a password to fall back on.

Comment Re: If the asset tax passes, he'll owe 1.5B (Score 1) 167

Not necessarily true. Pattern day traders are forced to mark to market.

Cite? I'm not a CPA but AFAIK, being a PDT has no direct tax implications, it just invokes brokerage/margin rules.

As I understand it (and I skimmed the law), 475(f) elections are entirely optional. The tricky thing is that you have to make the decision of whether you're going to elect to mark to market by April 15 (e.g. you have to decide by April 15, 2026 if you'll mark to market on December 31, 2026), and you generally cannot change that decision. So if you think it's going to be a bad year, it's a good idea to elect, because it removes the cap on loss deductions. If you expect to make a lot of wash sales and don't want to bother tracking them, that's another reason to elect.

But as far as I can tell, it's purely voluntary. Can you point to evidence to the contrary? Ideally in the law, but a reputable investor information site would be fine. I checked several (e.g. https://www.optionstaxguy.com/...) and they all describe it as a choice. One that is binding once made, but still a choice.

Comment Re:Just... no. (Score 1) 162

You don't know if it's always on. Those details aren't present (that I saw), and it's likely that they would throttle when the grid was under heavy load. A reasonable inference from what the company (who make "smart" electric panels) is saying about power management.

As for cooling, "Span is incorporating technology from Nvidia into its system, including a liquid-cooled, fanless component inside the server. The design helps eliminate the noise typically associated with data centers—a frequent complaint in communities near large facilities."

It's also possible to pair it with a large residential roof solar installation. I installed solar recently (just in time to grab the 30% credit) and my system routinely generates 3X what my home uses in the course of a day (I typically use about 40 kWh per day, and often generate 130+kWh per day). I've been thinking I'd really like to find something to suck up that extra power, because the monthly net billing plan I have means that once I've zeroed out my bill for the month, I get no benefit from additional production.

As deployment of renewables continue, this "problem" of what do do with excess capacity will increase and spread.

However, if power for the mini-datacenter is only intermittently available, the cost of the hardware effectively increases on a per-token (or per FLOP or however you want to measure the system's work) basis... and hardware cost is already going to be a tough problem for this kind of deployment. Even if it could count on 100% utilization, it will struggle to compete with large datacenters for exactly the reason we build large datacenters: Economies of scale. Enclosures (buildings), cooling, maintenance... all of the overheads fall with scale.

Intermittent utilization just makes that problem worse.

On balance, I'm skeptical that this makes sense, unless the cost of the hardware falls significantly. It seems like that's a baseline requirement for a lot of the alternative datacenter ideas, though: orbital datacenters, floating datacenters, etc.

Slashdot Top Deals

If it's worth doing, it's worth doing for money.

Working...