• 0 Posts
  • 17 Comments
Joined 1 year ago
cake
Cake day: June 17th, 2023

help-circle






  • If you use the AWS load balancer product or their certificates, they have access to the private key, regardless of whether you forward traffic from the LB to the container over HTTPS or not.

    If you terminate the SSL with your own certificate yourself, Amazon still installs the SSM agent by default on Linux boxes. That runs as root and they control it.

    If you disable the SSM agent and terminate SSL within Linux boxes you control at AWS, then I don’t think they can access inside your host as long as you are using encrypted EBS volumes encrypted with your key.








  • For all the comments that say “the real problem is…”: this is crisis and working on all emission sources contributes to a solution not just the biggest emitters.

    Everything we online has an impact in the real world and there’s some value in reminding people that. And yes, some sites could be causing a lot emissions than others.

    Some are powered by solar, others by coal.

    ARM chips are more energy efficient than x86 and so on.