31 Aug 2020 |
Maranda | Joshua Moore: unfortunately with matrix.org it's a bit of a mess to delete/rename/move things around since identity entities are permanent by the current design | 09:49:14 |
Maranda | * Joshua Moore: unfortunately with Matrix it's a bit of a mess to delete/rename/move things around since identity entities are permanent by the current design | 09:49:29 |
Joshua Moore | So can I just set up a second instance, and federate the two? | 09:49:47 |
Maranda | You could | 09:49:58 |
Joshua Moore | One correctly, the other one incorrectly? That's more hypothetical, because there's only me so far, but if there were users and I had to change it. | 09:50:19 |
Maranda | but then you'd have to have a new subdomain for the new instance that your site (leudla.net) points to. | 09:51:41 |
Joshua Moore | That's not an issue, fortunately. Subdomains are free. | 09:52:20 |
Maranda | But running 2 synapse instances is not in term of resources. | 09:53:35 |
Maranda | so if it's just you on the server you're better off just deactivating your current user, sending GDPR erase if you want, decommissioning the instance | 09:54:18 |
Maranda | and start anew | 09:54:22 |
Maranda | * so if it's just you on the server you're better off just deactivating your current user, sending GDPR erase if you want, decommission the instance | 09:54:43 |
Joshua Moore | Could you help me understand why matrix.leudla.net is wrong, and leudla.net is correct? | 09:57:11 |
tulir | the same reason user@email.leudla.net is wrong and user@leudla.net is correct | 09:57:58 |
Joshua Moore | Makes sense. | 09:58:38 |
Joshua Moore | I'll redo it tomorrow. | 09:59:50 |
Maranda | Joshua Moore: it's more a "cosmetical" reason. | 10:01:10 |
Joshua Moore | I figured. Subdomains in emails aren't wrong, they're just not nice unless you wanna make it really clear it's just an email server. | 10:01:49 |
Joshua Moore | Sometimes a subdomain is all one's got. | 10:02:28 |
Joshua Moore | The reason I specifically want a subdomain is that I don't know what the program does, not really, so I figured best to isolate it from the rest of the domain, which I intend to use for other things. That way the spam filters won't confuse one project with another, and if there's a new thing, I can just make a subdomain for that, hook it up to a new virtual machine, and have that thing be in charge of that. No need to mix it all under one hood. Doing it this way helps me reason about my stuff. | 10:48:10 |
Joshua Moore | Dammit, now I have to think of another word for "trumping", but what I'm trying to say is, this way everyone knows "that's the matrix server and nothing else". That way I know not to put anything non matrix related on there. Especially if you're a security minded user, that assurance might mean something to you. | 10:51:39 |
Maranda | In reply to @thwee:matrix.leudla.net The reason I specifically want a subdomain is that I don't know what the program does, not really, so I figured best to isolate it from the rest of the domain, which I intend to use for other things. That way the spam filters won't confuse one project with another, and if there's a new thing, I can just make a subdomain for that, hook it up to a new virtual machine, and have that thing be in charge of that. No need to mix it all under one hood. Doing it this way helps me reason about my stuff. Erm using the same name will not change anything in regard of isolation, requests will be made to the subdomain you specified in the delegation. | 11:01:02 |
Joshua Moore | Is the server code domain level agnostic? | 11:02:04 |
Maranda | And you should worry about cross-site forgery in the case you run the web client directly on the matrix subdomain more likely. | 11:02:50 |
Joshua Moore | I'm just getting started with all this. I don't plan on hosting them on the same machines. | 11:03:36 |
Joshua Moore | In fact, I was wondering whether I could simply point to app.element.io for the web client. | 11:04:15 |
Joshua Moore | ?? | 11:04:18 |
Maranda | not a question of machines more of address names here for XSS. | 11:04:21 |
Joshua Moore | I'd just whitelist the domains for each other, right? | 11:05:08 |
Maranda | Joshua Moore: .well-known/matrix/client has nothing to do with Element, it will just point the client to your server client API. | 11:05:21 |
Maranda | so you can't do that. | 11:05:34 |