frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Show HN: Mediapipe.js for browser eye detection in meditation app

https://heartful.day
1•louison11•26s ago•0 comments

AI chatbots to face strict online safety rules in UK

https://www.cnn.com/2026/02/16/business/uk-ai-chatbots-online-safety-act-intl
1•Bender•36s ago•0 comments

Global warming forced scientists to change the way they look at El Niño

https://www.cnn.com/2026/02/17/weather/el-nino-global-warming-pacific-ocean
1•Bender•2m ago•0 comments

How Anthropic evaluated computer use models

https://www.kernel.sh/blog/anthropic
2•mesto1•3m ago•0 comments

The Bitter Lesson

https://www.artfintel.com/p/the-bitter-lesson
1•verdverm•4m ago•0 comments

An methodology for new business development in the GenAI era

1•leading-AI•5m ago•0 comments

Faster package builds using Icecream and a Mac

https://iovec.net/2026-01-26
1•PaulHoule•5m ago•0 comments

Reading an Ancient Comic Strip

https://www.nationalgeographic.com/trajan-column/
1•zeristor•5m ago•0 comments

Composition-RL: Compose Verifiable Prompts for Reinforcement Learning of LLMs

https://arxiv.org/abs/2602.12036
2•gmays•6m ago•0 comments

Bild AI (YC W25) Is Hiring Interns in SF

https://account.ycombinator.com/
1•rooppal•6m ago•1 comments

Trump Is Tearing Apart the North American Auto Industry

https://jacobin.com/2026/02/trump-auto-industry-us-canada
1•djkivi•7m ago•0 comments

AI dev team that plans and ships, not just generates code

1•bohdokas•8m ago•0 comments

Show HN: We built a free VC platform that shares data between GPS and founders

https://vistaley.com/
1•jamesatistari•8m ago•0 comments

Rethinking Data Ingestion as a DAG

https://falconer.com/notes/rethinking-data-ingestion-dag/
1•nimbus3001•9m ago•0 comments

Claude Code Playbooks for Non-Coders

https://www.claudecodehq.com/
3•Danielopol•10m ago•1 comments

Canadians promised to boycott travel to US. They meant it

https://www.usatoday.com/story/travel/2026/02/12/canadian-tourism-us-decline/88632515007/
4•djkivi•10m ago•0 comments

Show HN: NBA-API-ts – Zero-dep TypeScript client for 138 NBA stats endpoints

https://github.com/gek0z/nba-api-ts
2•gek0z•10m ago•1 comments

Show HN: Maravel Framework 10.63 avoids runtime reflection on DI

https://marius-ciclistu.medium.com/maravel-framework-10-63-avoids-runtime-reflection-on-di-e097ab...
2•marius-ciclistu•12m ago•0 comments

I'm not skeptical of AI anymore

https://medium.com/@richardjli/im-not-skeptical-of-ai-anymore-46d5c2d2ac68
2•in-silico•12m ago•0 comments

A real use case for local models?

https://olegselajev.substack.com/p/finally-a-real-use-case-for-local
2•shelajev•12m ago•1 comments

Print your own Mount Everest on a 3D printer (open source, web based)

https://terrain.modelrift.com/
3•jetter•15m ago•0 comments

One Page of Async Rust

https://dotat.at/@/2026-02-16-async.html
3•fanf2•16m ago•0 comments

Meta to retire messenger desktop app and messenger.com in April 2026

https://dzrh.com.ph/post/meta-to-retire-messenger-desktop-app-and-messengercom-in-april-2026-user...
3•SoKamil•17m ago•0 comments

First Cybercab Produced in Texas

https://twitter.com/sawyermerritt/status/2023825550012485907
3•the_sleaze_•18m ago•1 comments

Britain lost 14,000 pubs, a quarter, in 13 years

https://laurenleek.substack.com/p/britain-lost-14000-third-places-they
1•jmsflknr•19m ago•0 comments

Domain Knowledge Is Worth More Than Your Tech Stack

https://medium.com/@a.mandyev/your-domain-knowledge-is-worth-more-than-your-tech-stack-9bb95eb53f4b
2•andrey_m•20m ago•0 comments

In Arson Case, a Judge Wrestles with A.I.-Assisted Apology Letters

https://www.nytimes.com/2026/02/17/world/asia/new-zealand-court-ai-apology.html
4•docdeek•20m ago•1 comments

An AI Agent Published a Hit Piece on Me – Forensics and More Fallout

https://theshamblog.com/an-ai-agent-published-a-hit-piece-on-me-part-3/
4•scottshambaugh•21m ago•0 comments

Your Company is a Filesystem

https://twitter.com/mernit/status/2021324284875153544
2•Mernit•22m ago•0 comments

Firecracker "job receipts" for metering and auditing LLM agent runs

2•joshfischer1108•23m ago•0 comments
Open in hackernews

SSH Access Without Sharing Private Keys

2•brintha•1h ago
Many teams end up sharing SSH private keys when onboarding new members. It’s often done for convenience — and sometimes urgency.

The issue is that shared keys make revocation and auditing messy. Multiple people effectively share the same identity, and rotating keys across many servers becomes painful.

Modern access models handle this differently by brokering SSH sessions based on individual identity rather than distributing private keys. Each session is scoped to a specific user and server, and access can be revoked centrally.

I wrote a breakdown focusing on the operational trade-offs rather than a product pitch:

https://www.lynxtrac.com/ssh-access-without-sharing-private-keys

Curious how others here manage SSH access in growing teams.

Comments

Bender•1h ago
LDAP ad AD are the ways I have seen SSH key management done. [1] LDAP clients should be configured to cache creds in SSSD.

Servers and workstations (clients of the LDAP server) should be configured to only use authorized keys from LDAP and not locally as they can contain multiple public keys which quickly gets harder to audit and harder to catch someone slipping a public key into the local authorized_keys.

[1] - https://serverfault.com/questions/653792/ssh-key-authenticat...