hrefna,
@hrefna@hachyderm.io avatar

It's worthwhile to expand on a point to @devnull that I made: "preventing the sending server from seeing the IP" is a mostly* BS justification for local caching of media.

Broadly speaking:

  1. Inconsistency around security policies is a recipe for dramatic, consequential failures.

  2. Users are not notified if this is a feature, and clients and servers can both override it.

  3. You probably* don't want it anyways.

  • I'll get into the caveats on these at the end.

1/

#security #fediverse #s3

  • All
  • Subscribed
  • Moderated
  • Favorites
  • security
  • GTA5RPClips
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • osvaldo12
  • ethstaker
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • ngwrru68w68
  • kavyap
  • tester
  • cubers
  • provamag3
  • InstantRegret
  • khanakhh
  • normalnudes
  • everett
  • Durango
  • tacticalgear
  • Leos
  • cisconetworking
  • megavids
  • modclub
  • anitta
  • JUstTest
  • lostlight
  • All magazines