• 4 Posts
  • 581 Comments
Joined 3 years ago
cake
Cake day: June 16th, 2023

help-circle




  • I won’t deny it’s godawful to have shit split across AD, Group Policy, Regedit, and Azure/Entra/Intune.

    But they very much still have controls for all this shit, almost always available before the feature rolls out. I’ve literally never seen this shit make it through to our end user devices in an un-intended fashion.

    Hell, just hold non-security updates for a period of time for review before pushing it to your entire environment if this (not actually happening) issue is a concern. That’s like basic table stakes for Windows environment administration: update cadence management and pilot machines.

    Please don’t claim to speak from a place of authority on this and then spread falsehoods. There’s plenty of shit to hate without making things up.

    Like the third party app approvals in Azure and Teams defaulting to allow any non-admin user to be able to approve any azure app access to all of their data with no oversight. You can (and should) lock that the fuck down. It’s a batshit default, not a lack of controls.






  • Lol, lmao even. Welcome to the grind. There aren’t many/any easy ways, it wildly varies based off your situation and skillset, and anyone who found any sort of “trick” isn’t about to share it.


    The “easiest” way online, assuming no particular skills, is probably mechanical turk work. Amazon has a system for it. mturk.com

    You get paid barely anything, I mean like literal pennies, to go and do stuff like fill out surveys, categorize photos for AI training datasets, etc. Most people who make any halfway reasonable amount from it are using all sorts of scripts and stuff to maximize how much they can do in the least amount of time.


    If you already have money, giving it to an investment banker to handle for you can be enough to live off of, but you need an absurd amount of money to start with in order to just live off dividends.



  • wizardbeard@lemmy.dbzer0.comtoProgramming@programming.devLLMS Are Not Fun
    link
    fedilink
    English
    arrow-up
    17
    arrow-down
    1
    ·
    3 days ago

    Tell me again how you’ve never become the subject matter expert on something simply because you were around when it was built.

    Or had to overhaul a project due to a “post-live” requirements change a year later.

    I write “good enough” code for me, so I don’t want to take a can opener to my head when I inevitably get asked to change things later.

    It also lets me be lazier, as 9 times out of 10 I can get most of my code from a previous project and I already know it front to back. I get to fuck about and still get complex stuff out fast enough to argue for a raise.




  • Also his claim that email chains end up creating an extra copy of an attachment every time? That’s not how most email clients handle attachments. They usually only carry forward in forwards.

    And even if his idea is true for his setup somehow, data deduplication at the storage level isn’t particularly difficult to set up, and I would argue is table stakes for any business doing self hosting.

    Similar when it comes to data retention policies, quotas, auto deletion of spam after a shorter time window. It’s not fun and for some setups may not be easy, but it’s part of the bare minimum for email. So yeah, you absolutely do it yourself or pay someone to do it for you.

    Edit: and if you pay someone to do it for you, you have to abide by whatever dumb hoops they make you jump through, or find someone else to pay.



  • This is awful, but while I see the huge impact for personal users, I’m not sure I see the business case for his current setup. I’m sure this will inpact business setups, but his specific use case just seems off.

    He really buries the lede about why the weird setup of why [email protected] (to my mind the professional business email) had to be accessible from [email protected] (to my mind a misused personal email) in the first place. It’s down in the comments:

    You can’t be serious. Especially for a company he runs, this is silly. Just tell them they have to use the business domain for business email. The whole @gmail.com thing also opens up potential regulatory issues depending on the details of the business.

    With his current setup Google is already accessing all his company mail data. I don’t really get his objection to having the MX record directly route to them at this point.

    I’m probably missing some big detail, but I don’t get why he has his current setup to begin with.

    Edit: Didn’t want to jump to conclusions, but I’m not the only one with the takeaway that this seems to be jwz trying to use google/gmail for email storage without paying for google workspaces for his employees. Maybe that isn’t the case, but it sure looks like it.