US Homeland Security Employees Locked Out of Computer Networks (reuters.com)
Dustin Volz, reporting for Reuters: Some U.S. Department of Homeland Security employees in the Washington area and Philadelphia were unable to access some agency computer networks on Tuesday, according to three sources familiar with the matter. It was not clear how widespread the issue was or how significantly it affected daily functions at DHS, a large government agency whose responsibilities include immigration services, border security and cyber defense. In a statement, a DHS official confirmed a network outage that temporarily affected four U.S. Citizenship and Immigration Services (USCIS) facilities in the Washington area due to an "expired DHS certificate." Reuters first reported the incident earlier Tuesday, which a source familiar with the matter said also affected a USCIS facility in Philadelphia. Employees began experiencing problems logging into networks Tuesday morning due to a problem related to domain controllers, or servers that process authentication requests, which could not validate personal identity verification (PIV) cards used by federal workers and contractors to access certain information systems, according to the source.
DHS is the primary government agency responsible for protecting the country's civilian infrastructure, including the internet and computer networks. I feel so much better knowing that they're so good at keeping their own systems secure, that even their own workers can't access them.
I think I'd like to take this opportunity to point out that this is what happens as we do more and more with IT on less and less staff. While I understand sometimes we think of IT as a cost-center and not a revenue generator, it probably needs to be thought of as more like a utility; because without the lights, water, phones...and internet, you can't do business very effectively these days.
That being said, this happens more and more. Someone is responsible for renewing certificates, but as we renew them for longer and longer periods, that means we simply start to forget about them. Then with the certificate issuer sends out an notification to that IT staffer who used to do that, but was 'right sized' a year and a half ago...no one gets the email. So, the certificate expires and this happens. Same song, different, louder verse, apparently when it happens to DHS, and likely more embarrassing.
Bottom line: Doing more with less, isn't always in everyone's best interest.
Awk! Pieces of eight. Pieces of eight. Pieces of seven... ERROR: General Protection Fault. [Paroty Error.]
No big worry if it is merely an expired certificate. Merely incompetence. An ordinary thing that is to be expected.
It would have been a bigger concern if, for security reasons, the president had ordered all passwords changed to the same code used on the president's luggage.
I'll see your senator, and I'll raise you two judges.
It's Wednesday. The issue happened on Tuesday.
So, how did it come out 'TWO DAYS AGO'?
There are two types of people in the world: Those who crave closure
That's how expired certificates are supposed to work!
Anons need not reply. Questions end with a question mark.
Journalists need a minimum of two anonymous sources to report something as factual to the public. Three anonymous sources is probably CYA from a #FakeNews accusation.
The new version of PHP should fix that problem.
https://developers.slashdot.org/story/17/02/21/2039256/php-becomes-first-programming-language-to-add-modern-cryptography-library-in-its-core
The interesting part of the article isn't about who is affected, but the "certificate expiration" aspect. I've recently started doing the legwork necessary to learn about public key infrastructure (for our company's internal consumption) and have found that there are 3 prevalent camps out there:
- Developers who just say "here's my credit card, VeriSign, make my customers' browser address bars turn green."
- Admins who get just enough of a PKI background to make the certificate errors go away, then run away screaming -- or worse yet, had it implemented a decade ago by a consultant and have NO CLUE how it works or how to fix it
- Auditors who just say "lock icon, green browser windows, check. Congrats, you're PCI compliant."
For something so critical like certificates, there really is a dearth of resources out there that isn't aimed at hardcore security programmers or one of these three groups. Cert expirations have figured prominently in many outages -- Azure had a partial outage a few years ago because of that very reason. I'm seriously considering writing a "PKI for non-dummies" series of blog posts or something because the amount of misinformation out there is scary!
Just call Sandeep in the IT department and have him fix .......
Uh, oh.
Have gnu, will travel.
If I'm one anonymous source... I'm a thousand.
Journalists need a minimum of two anonymous sources to report something as factual to the public. Three anonymous sources is probably CYA from a #FakeNews accusation.
On the other hand, what's the standard for getting #RealNews from our new administration? Seems the more sources they provide, the less "real" their news and facts are. Hmm... Let me do some math... Maybe zero administration sources are needed.
It must have been something you assimilated. . . .
No way! The Shuttle DISINTEGRATED?
Ezekiel 23:20
Space Shuttle Challenger DISINTEGRATES in the upper atmosphere. Several ASTRONAUTS without parachutes are DEAD.
Did you write UNIX fortune entries back in the day? This is formatted just like a lot of them...
Do not look into laser with remaining eye.
Some apps need to have the certs installed into them even with LDAP stuff each app may need the LDAP keys installed to it's own key store for it to be able to ldap login's.
I would be very funny to check Trumps laptop to see something like "Your files have been encryped. Send 2 million bitcoins if you ever want to see them again" It's always the boss that does this.
Maybe zero administration sources are needed.
The current administration is leaking like the Titanic while everyone is too busy rearranging the deck chairs in the Oval Office.
Giuliani was just converting all the servers to a five-year-old version of Joomla.
#DeleteChrome
All News is fake depending on who is reporting and who is the reader/viewer.
Kind of like "Planned Parenthood doesn't use public funding for abortion services". Technically "accurate", but really not even close to being accurate.
A woman comes in for an abortion, but gets six other "tests" and diagnostics done. Pregancy test, Pap smear .... etc. All those other "tests" are paid for by government money, none of which are part of the actual "abortion" procedure. Since that Planned Parenthood clinic provides mostly abortion related services, they are "government funded" and would fold if they didn't get any other funding. They subsidize the Abortion with federal monies, using loopholes.
Technically it is "true" that PP doesn't use federal dollars for "abortion". Realistically it is fully subsidized procedure using loopholes. Both sides are considered "alternative facts" by the other side. And the reason we can't have civil discourse about anything any more.
And watch this get modded "Troll" since I used the inflammatory "Planned Parenthood / Abortion" example by people who can't actually debate the actual topic.
Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
If I'm one anonymous source... I'm a thousand.
That may work for Fox News. Real journalists care about their reputation. If they ever get into court and have to reveal their sources, it would be awfully embarrassing that a thousand anonymous sources turned out to be one person.
For me, at least, there's a difference between "anonymous" and "name not released" or "redacted." Like if I make an anonymous tip, it's different than if I make a tip on the condition of anonymity. It's generally reported on differently too when they list the source. Maybe I'm just trusting the summary writer in their use of terms too much though; this is slashdot after all.. you wouldn't actually expect me to verify the summary with TFA would you??
And watch this get modded "Troll" since I used the inflammatory "Planned Parenthood / Abortion" example by people who can't actually debate the actual topic.
I don't know enough to discuss the example you provided, but can offer that the funding/expense for Planned Parenthood is probably more complicated than what you proposed and certainly open to skewed interpretation (especially by those opposed to their services -- specifically and, apparently, as a whole) as described by this article from Fact Check: http://www.factcheck.org/2015/...
It must have been something you assimilated. . . .
Maybe I'm just trusting the summary writer in their use of terms too much though; this is slashdot after all.. you wouldn't actually expect me to verify the summary with TFA would you??
One time I submitted an manuscript to a magazine. When the magazine was published, I've noticed many errors in every piece. When I asked the editor about all the errors, his response killed me: "An editor doesn't edit."
I never did find out what an editor does if he doesn't edit.
Always install a backdoor.
For times like this.... ...and for "other" times, as needed.
So rise up, all ye lost ones, as one, we'll claw the clouds.
Given that a) the 00:00 wasn't part of the story, and b) 23:59 hasn't happened yet in the affected area, c) what the fuck are you on about?
There are two types of people in the world: Those who crave closure
That's right, PP has not performed a SINGLE breast cancer screening, despite it being the first thing they list every time funding is threatened from them.
Planned Parenthood does clinical breast exams and make referrals for mammograms if warranted. Interestingly enough, its the group's supporters who talk about mammograms all the time.
https://www.washingtonpost.com/news/fact-checker/wp/2015/10/02/the-repeated-misleading-claim-that-planned-parenthood-provides-mammograms/
There was a riot in Sweden yesterday, setting a city on fire, started by refugees, in an area designated by the local police as a "no-go area".
That took place after Trump's "last night in Sweden" speech. What Trump may have been referring to was something he saw on Fox News. If it was on Fox News, it must obviously be true. Unfortunately, Fox News is not an accurate news source.
First, you shouldn't be surprised if you get modded Troll for deliberately using a flamebait/trolling example that is wholly unrelated to the topic.
Second, you're deliberately confusing the issue. If I operate a business, and I sell pork products, and you buy a steak from me, you're not paying for pork, no matter how much you scream about marginal costs and fungible funds.
Third, you're creating a strawman argument, because Planned Parenthood does not primarily provide abortion services, attempts to play cute with the numbers aside. At most the number of PP patients who received an abortion was 12% of the total, and that's assuming none had more than 1.
Reference: http://www.factcheck.org/2015/...
timecube guy.
4 simultaneous days.
something along those line. details are unimportant.
--
"It is now safe to switch off your computer."
You would be better served just shutting up at this point.
I'm going to exercise my 1st and 2nd Amendment rights. Don't like it? Fuck off.
Do people on the left ever think for themselves?
I'm a moderate conservative. I DON'T SUPPORT TRUMP!
Next time listen
-- Tigger warning: This post may contain tiggers! --
Sure, thats why you lie to support Planned Parenthood, lie to smear Trump, and then threaten to shoot people.
Where in my comment did I threaten to shoot people?
Moderate indeed. Lie #3 from you just today.
Calling me a liar doesn't change the fact that you're wrong.
1) Yeah, which is why I did it. Inflamatory subject using rational thought. Imagine that.
2) If you ran a Hamburger Restaurant and said that you're not a "Hamburger" place because only 33% of your business was "Hamburgers", would you be telling the truth, or telling a lie?
You sell Hamburger, fries, and a soda, and count that as 1/3, 1/3, 1/3 you'd technically be correct. But everyone in the world would understand that you're in the "hamburger" business. Right?
3) So, yeah, Abortion procedure itself is only 12%. Technically correct using the metric as applied by PP, which is VERY similar to how I explained above. How about you ask the question differently. How many people visiting PP are there to get an abortion vs "other" services they offer. BTW, those "other" services are fairly limited to .... being an abortion provider.
They claim to be "women's health" but they do not offer Prenatal anything ... except abortion. They don't offer Mammograms like they continue to claim (as in NONE). They don't do .... a whole lot of things related to "women's health". (Fact Check article is technically correct: Lies, Damn Lies and Statistics)
BUT I have an idea, I've suggested a number of times. Planned Parenthood can keep all the funding it gets now, if they stop providing abortion or referrals for abortion. Lets see how much of their Business is Abortion. I'll bet it is like a Hamburger shop not being able to actually sell burgers. Just fries, cokes .... And yes, this would settle the case, once and for all. Their primary business is abortion. They can't exist without it.
Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
Real journalists care about their reputation.
Nice one! Of course, actual journalists threw all that overboard in a desperate attempt to get the Right Person elected. Lost both credibility and the election.
Journalism has been "fiction inspired by true events" for decades, maybe forever. Journalists believe their job is telling the peasants what to think. The truth is one of many tools for that job.
Socialism: a lie told by totalitarians and believed by fools.
The contract to support the network is sent out for rebid and the winning contractor sees the position responsible for managing certificates as a cost-savings "opportunity" and eliminates the position or combines it with another task and now no one is responsible for the task or the guy that knew how/when the certificates needed to be renewed got too expensive so the position was filled with a newbie with no experience.
Yep. That happens all too often in accountant managed companies.
Half of the real reason that tech outfit like to hire young RCGs and recent immigrants is that they cost much less than anyone with even 5 years of experience, much less 25 years. This is why most software sucks.
use Sig::Witty;
Of course, actual journalists threw all that overboard in a desperate attempt to get the Right Person elected.
The media got the person that they wanted for POTUS: Donald J. Trump. His administration will make Nixon and Reagan look like amateurs in terms of scandals, indictments and prison sentences.
Journalism has been "fiction inspired by true events" for decades, maybe forever.
Creative non-fiction. People don't want facts, they want a story (or, in today's political discourse, a narrative).
Link or it is just more right wing fake news
use Sig::Witty;
There's no point trying to find out a reason for one of Trumps lies. By the time you've done it there's a new one, so it's best to judge the "biggest electoral college winner" on what he does instead of what he says. That's kind of hard to do since he's been all talk and no action for most of his life, but it's all we can do.
This Comment that you posted just a little while ago, so I'm not sure how you forgot that you threatened to shoot me.
Let's look at that comment: "I'm going to exercise my 1st and 2nd Amendment rights. Don't like it? Fuck off."
Where exactly in THIS COMMENT did I threaten to shoot you? Note that the word "shoot" doesn't appear in the comment.
You have deep psychological problems.
I'm not the one that needs help.
I think it's that new quantum time all those research dollars went into finally being put to work.
~ People that think they are better than anyone else for any reason are the cause of all the strife in the world.
There's no point trying to find out a reason for one of Trumps lies.
I find it more fun to push the buttons of trump supporters, watch them go from aggressor ("You lie!") to victim ("You threaten to shoot me!").
I'll give you one example of how "marketing" doesn't equal "services". Your linked page, regarding Prenatal care, can you show me where they announce they actually provide prenatal services? The page is nothing more than a wikipedia type page on Prenatal care. I could put the same page up on a personal blog, in its entirety, and would that mean I am actually providing prenatal care? NOPE.
Thanks for trying, but you're believing the hype and not the reality.
Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
Considering how incredibly politically naive most of them are (they are certainly in for a few shocks and a feeling of betrayal) that's going to get as old as picking on Nixon apologists was.
Yes, they do provide birth control. I never said they didn't. You can even get condoms there, does that mean they can claim they are a male health care provider like they claim they are a "women's healthcare provider" because they perform abortions and give out birth control?
To me, a woman's health center would be more concerned about actual health of women. Abortion is very hard on a woman's body, and there is plenty of documented studies that show this. Not that PP would ever tell you the long term risks of abortion on women.
Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
And watch this get modded "Troll" since blah blah blah I'm so fucking daring.
Sigh. The "call me a troll" prolepsis was a tired, trite cliche on Usenet in 1990.
Eternal September remains eternal.