Today we bring you the second @localfirstconf.com@bsky.brid.gy Lab Day video.
Follow Ivy Reese @spiralganglion.com@bsky.brid.gy as she whirls through PlayBook: A Programmable Paper Notebook
It's a blank page in the truest sense, for pulling ideas out of your head so you can feel and think differently about them.
PlayBook: A Programmable Paper...
as Jayne notes, Sam is not the politest bot we've run into so far.
Following up with Arkady...
Sixteen Locks Ought to Be Enough for Anybody
https://thebuild.com/blog/sixteen-locks-ought-to-be-enough-for-anybody/
Comments: https://news.ycombinator.com/item?id=49699611
#HackerNews #sixteenlocks #security #cybersecurity #technology #accesscontrol
72% of Americans believe promoting DEI should be a priority for businesses. 3/4 said businesses w/ diverse workforces make more innovative products & 71% say they are more profitable. 95% of Dems consider DEI a key priority; 71% of Independents; 37% of Republicans. https://www.usatoday.com/story/money/2026/09/17/corporate-dei-retreat-surprising-bipartisan-pushback/91767177007/
@neil I did this, but the guest stuff seems to completely override the LDAP stuff:
https://medium.com/@rupesharma203/how-to-integrate-zimbra-ldap-with-jitsi-meet-for-secure-authentication-decf6dfc6e14
So I added some auth config to jicofo, which is now making LDAP prompt correctly, but for some reason username and password rejected (they're correct, and saslauthd is running and working). 🤷
I'll poke more later. So close. LDAP works, guest works, LDAP falling back to guest, not so much! There must be some tiny change since the docs were last updated.
@greg_harvey Aha - I have not tried LDAP integration. So perhaps it was simpler when I did it.
(I wrote some of the Jitsi "secure domain" documentation, years ago, but it may have changed...)
Was hat die Debatte um Künstliche Intelligenz mit digitaler Souveränität zu tun? Den Zusammenhang habe ich in der DW - Talkshow "auf den Punkt" erklärt.
Wir sind der Entwicklung nicht hilflos ausgeliefert. Wir haben Handlungsmacht, die wir noch zu zu wenig nutzen.
https://www.dw.com/de/ki-au%C3%9Fer-kontrolle-panikmache-oder-reale-gefahr/video-79308257
g to the i to r to the l to the b to the a to the GIRLBALL
I get that song stuck in my head all the time now
What It Means to Lose Autistici/Inventati
p.s. always on the hunt for good stickers 😉 bonus points if it supports something open-source
@juliagersey I'm also just now starting to collect some laptop stickers. I picked up these two nice small ones at @berlinfediday. I think @informatik has a few that I gotta try to get my hands on. And we'll try to get some printed for @SafeguardingResearch and https://sciop.net via my current work project soon.
Quick heads-up for other Mastodon admins: this registration spam wave isn't over yet.
On lsbt.me, we first saw a flood of API registrations using Python/aiohttp. The telltale signs were usernames following the pattern bp plus 16 hex characters, and the sign-up reason was always "Automated protocol deliverability probe". A narrow block on that user agent stopped the first wave.
Today, however, five new registrations came in with the same usernames and the same sign-up reason. This time the bot simply identified itself as Chrome 126. That's exactly why a user agent is only useful as a short-term filter. It's a header the client can set to anything.
The requests go to POST /api/v1/accounts. This endpoint lets client apps create a new local account directly in the app. No app needs it for OAuth connections to existing accounts. #FediSuite doesn't use it either. It registers itself via /api/v1/apps, obtains consent via /oauth/authorize, and then works with a user token. Regular sign-up through the Mastodon website is also handled separately via POST /auth.
So I've completely disabled API account creation on lsbt.me. Web sign-up, OAuth, and existing clients keep working as before. Anyone who wants a new account just signs up once on the web as usual and can then use any client.
If you'd also rather not offer this optional native sign-up path, you can add the following to your Nginx server block, before the general location / block. The example assumes the @proxy location that many Mastodon Nginx configs already include:
location = /api/v1/accounts {
limit_except GET {
deny all;
}
try_files $uri @proxy;
}
This returns a 403 only for POST /api/v1/accounts. The read-only GET endpoint remains reachable. As always, run nginx -t afterwards and only reload once the test passes.
#Mastodon #Fediverse #MastoAdmin #FediAdmin #FediMod #FediBlock #Moderation #Registration #Spam #Nginx #SelfHosting #SysAdmin #ActivityPub
it's so good to be a girl baaaaalllll
g to the i to r to the l to the b to the a to the GIRLBALL
RE: https://neuromatch.social/@neuralreckoning/117207726663968699
Reminder everyone, the SNUFA spiking neural network workshop abstract submission deadline is end of next week! Get your abstracts in, and register for the event too.
#Neuroscience #ComputationalNeuroscience #SpikingNeuralNetworks
I got lots of responses pointing out technologies that had to be forced on people. I've thought about them. The ones I agree with are:
- Internal Combustion Cars
- Telephones
- LLMs and GenAI
The internal combustion engine in general didn't have to be forced on to people (farmers, for example, loved it both for their tractors and also for other makeshift machines they'd construct around their farms)
Cars as a class didn't have to be forced on people, high society types in big cities loved having electric carriages. They were clean, easy to maintain, and quiet. They were also reliable enough that they didn't get replaced often enough to become an industry.
But, while the rich were driving around in their electric carriages and the poor were walking, taking horse-carriages, taking trains, and riding cable cars (and people were experimenting with electric and steam cars) Henry Ford decided that, if he could get the US government to heavily invest in a roadway system and trick a bunch of municipalities into giving up a bunch of green space and pedestrian space to cars, he could make a lot of money while also leaving people responsible for both driving (which is dangerous and should be left to those who are interested in learning how to do it effectively, not a requirement for participation in society) and maintenance (which is expensive, and prior to Ford was largely a public expense for a public good.)
Cars introduced a lot of new freedoms for people, but were perhaps the worst of the several available alternatives to do that in dozens of ways, and we're still trying to overcome that fallout. There were significantly more (and significantly safer!) transit options in my region before cars.
Cars, as I've said before and taken blowback from, are usually bad. They are, at best, a necessary evil. There was a time when they were not necessary.
Telephones are a really interesting case that end up in a similar situation to Cars, but for different reasons.
Many people loved the concept of the telephone and were eager to use it. Public phones and communal phones and the phone as a replacement for the telegraph were all pretty popular.
But private ownership of telephones resulted in a major upset of etiquette and an erosion of the separation between home and public, an encroachment.
Many people of the day resented that.
I've never know a world without a telephone, but I knew one without a cellphone.
I miss being unreachable. The telephone was, ultimately, more good than harm. The cellphone (though perhaps not the smartphone) probably the same.
But I can absolutely understand how and why some people would have been resistant to it. I still know people without cellphones, I knew people without a phone of any kind not that long ago ("Write me a letter or come over. If it's not important enough to tell me in person, it can wait on the post")
Ah oui mais je suis déjà signataire désolé!!!
@adamas.dev défaut : trop zinzinsoumis
@CrusherMD Had I not literally watched the first part last night I probably wouldn't have gotten this joke.
I like some of JA Westenberg's ideas and writing I've read, being exposed to them as they're pretty popular on the fediverse (@ Daojoan@mastodon.social, don't want to @ them here), picked up their Permissionless book, then see most of their Substack posts are paywalled, then see this in their about section (https://www.joanwestenberg.com/about).
I'm really uninclined to pay for your newsletter if it's going for you to pay companies like Substack, Grok, VidIQ, AI/LLM subscriptions, and you use Omarchy, your YouTube has AI slop thumbnails... it's just a big yikes for me. I don't remember getting this vibe reading their earlier posts and am kind of surprised to see the AI grindhustleslopcore progression. Also, if you use AI substantially in your writing, I am not really going to want to read it or be impressed by one's seemingly prolific output.
Yikes! Yeah, using Grok of all things is definitely a choice.
it's so good to be a girl baaaaalllll
LFI a lancé un système de gamification de la campagne 2027, je vous en conjure donc de m'aider à atteindre la tortue en or en signant avec mon lien : https://jlm27.fr/p/wgxd0lgGSE
Ah oui mais je suis déjà signataire désolé!!!
🇨🇭 If you are in Geneva today for the #WTOPublicForum, join us for a working session on #interoperability as a catalyst for growth, job creation and sustainable development.
🔵 Details: https://www.wto.org/english/forums_e/public_forum26_e/pf26_session_fullpage_e.htm?session=1629
Photo: WTO
Howdy #UnionPlace ! We've had to close registrations temporarily because of a nasty mail flood bot that's hitting the Mastodon / Fediverse world. You should be able to invite folks still, and if anyone is looking to join, feel free to reach out to me, my email is the same as my Mastodon handle, and I can hook you up.