Slashdot Mirror


User: harryjohnston

harryjohnston's activity in the archive.

Stories
0
Comments
621
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 621

  1. Re:first post on What Kind of Alternate Business Models Could ISPs Use? · · Score: 1

    It isn't a false limitation at all. At any point in time, only so much hardware exists, which can only provide so much bandwidth. Of course new hardware can be added, but it has to be paid for, and as bandwidth usage goes up so do costs. If you actually need to install new cable, that gets very expensive indeed.

    The old flat-rate prices were based on the assumption that only a very few people would be heavy users. As the average usage goes up, ISPs have to pay more, leaving them with the choice of either (a) increasing prices; (b) changing the terms of service, such as by adding usage caps; or (c) going broke.

    (Of course this assumes that the ISPs in question weren't horrendously overcharging to begin with. This is probably a safe assumption where real competition exists, but might not be true in all areas.)

  2. Does Joe DiMaggio's Streak Deserve an Asterisk? on Alternate Baseball Universes · · Score: 5, Informative

    This seems relevant:

    http://abcnews.go.com/Technology/WhosCounting/story?id=3694104&page=1

    Disclaimer: I'm not an American, so I know next to nothing about baseball - and care less!

  3. Re:Look at it my way on Microsoft or Apple - Who Is the Faster Patcher? · · Score: 1

    I guess that another factor is that Mac OS X shares a lot of code with other products/projects. Many (perhaps most) of those projects are probably unwilling to postpone releasing security updates until Apple are ready. Microsoft don't have that problem, or at least not to the same extent.

  4. Re:When will it stop? on Microsoft or Apple - Who Is the Faster Patcher? · · Score: 1

    The underlying design of Windows is bad from a security standpoint, but that of Unix isn't really any better, IMO.

    It's slightly easier for exploit code to elevate itself to kernel privilege on Windows, but I'm not convinced the distinction is significant; I don't think a cleverly written Mac exploit would have too much trouble getting the admin password out of the user sooner or later.

    (A well-designed OS would authorize the activities of a process based on what role said process is playing, not on what account it is attached to. So, for example, a word processor would only be allowed to write to the document the user opened, not to any other file.)

  5. Re:Why not just close the server? on Long-Dead ORDB Begins Returning False Positives · · Score: 1

    I'd have thought if the domain was deregistered the DNS queries would be stopped at the root servers for .com or .org (whichever) and would be no big deal.

    However, concern that the domain name might then be acquired by black hats seems valid, and is something I hadn't thought of. It's a shame there isn't a way to blacklist a domain name so it can't be acquired by anyone else - but doubtless there would be political problems in even proposing a mechanism for doing this!

    I think the take-away lesson here is that when designing a service intended to be used on this scale, you have to consider your exit strategy.

  6. Re:Why not just close the server? on Long-Dead ORDB Begins Returning False Positives · · Score: 1

    Or, better still, remove the address from DNS?

  7. Re:Black holes should radiate anyway on First "Observation" of Hawking Radiation · · Score: 2, Interesting

    Not quite my understanding. Positron-electron pairs don't get created spontaneously as this would violate the conservation of energy. However, a pair of what are called "virtual" particles can appear spontaneously if one of them has a negative mass.

    Now, a negative mass particle can't normally exist for very long, so it has to recombine in short order with the original particle and they cancel each other out.

    However if the negative mass particle is trapped by the event horizon, "not very long" gets stretched out indefinitely by the time dilation, and the positive mass particle can escape. The total mass of the black hole goes down because the particle entering it has a negative mass.

    Of course, this is all just a way of visualizing what goes on so that it seems to make sense. It doesn't necessarily correspond in any meaningful way to reality.

  8. Re:So let me get this straight on Aging Security Vulnerability Still Allows PC Takeover · · Score: 1

    Oh, and of course, once this is working on Vista (perhaps it already does?) it will bypass BitLocker and any other drive encryption software.

  9. Re:So let me get this straight on Aging Security Vulnerability Still Allows PC Takeover · · Score: 2

    Perhaps because this works even if the BIOS password is set? Even if the case is alarmed or otherwise secured?

    If the attacking computer is small enough to be mistaken for a disk drive, you could even conduct this attack while being supervised.

    There seems to be some debate over whether this can be fixed in software or not. If it can, Microsoft should do so. If it can't, the affected computers should be recalled. Bottom line: the situation is unacceptable.

  10. Re:$10,000 for periodic updates on Security Research and Blackmail · · Score: 1

    Well, since most vulnerabilities are disclosed to the vendor when discovered, you can cover a "reasonable number" without paying a thing.

    Of course, covering a "reasonable number" of known vulnerabilities doesn't actually help, since the bad guys are going to use the other ones. Ultimately, the only "reasonable number" of known vulnerabilities to fix is "all of them".

  11. Re:$10,000 for periodic updates on Security Research and Blackmail · · Score: 1

    How is subscribing to ten "good reliable" companies going to help if the next vulnerability is discovered by a not-so-good, not-particularly-reliable company?

  12. Re:How else are they... on Security Research and Blackmail · · Score: 1

    They've already been paid. They have a customer base, or so they claim; and it is certainly in the interests of their customers, or their customers' customers, that the information also be provided to the vendor - unless, of course, their customers are planning to use the information maliciously.

  13. Re:$10,000 for periodic updates on Security Research and Blackmail · · Score: 1

    And the next "security research" company? And the next one? And the one after that? And ... well, you get the picture.

    Alun Jones expressed it best: http://msmvps.com/blogs/alunj/archive/2008/02/07/1501848.aspx

  14. Re:Fails? on LIGO Fails To Detect Gravity Waves · · Score: 1

    I think that at some point it would be accepted that the device was probably working - which isn't quite the same thing!

    For my part, I wouldn't want to draw any really significant conclusions without independent confirmation, i.e., at least one other apparatus of different design producing the same results.

  15. Re:Fails? on LIGO Fails To Detect Gravity Waves · · Score: 1

    ... unless they made a mistake in the design or construction. We can't really be certain about that until/unless they detect something.

  16. Re:I get what I pay for... on Time Warner Cable to Test Tiered Bandwidth Caps · · Score: 1

    The problem is that the actual cost of providing unlimited X Mbps access is significantly more than you're likely to want to pay. Traditionally (American) ISPs have taken advantage of the fact that only a certain percentage of users are downloading/uploading at a time to provide faster speeds at lower costs. This is (presumably) becoming infeasible without data caps due to the way the traffic is changing.

    Here in New Zealand broadband access has always had data caps. However, paying extra for excess data was understandably unpopular, so nowadays ISPs typically offer schemes in which you pay no extra but your bandwidth gets cut to modem speed once you hit the data cap.

    For example, look here: http://www.ihug.co.nz/products/broadband/bband1_detail.html

    For a while some ISPs were offering unlimited data with a "fair use" policy but this seems to have disappeared. I suspect it proved unworkable. (IHUG still have a scheme which uses the words "fair use" but this now has explicit data caps so isn't really the same thing.)

  17. rinkworks.com on What Are The Best Free Games Online? · · Score: 1

    My favorite free games are on rinkworks.com; but be warned that these are adventure and RPG style games, not shoot-em-ups.

  18. Re:I call bullshit. on Canadian Bureaucrats Don't "Think Different" · · Score: 1, Insightful

    > If anybody is failing to "think different," it's Apple themselves, [...] Something different would be to find
    > a way to encourage all those hipster Apple fans to come to their store by, say, public transportation

    I think you've missed the point. Apple didn't want to get rid of the traffic meters so that customers wouldn't need to pay; they wanted to get rid of them because (they think) they look ugly.

  19. Re:Hmmm on Theo de Raadt Responds to Linux Licensing Issues · · Score: 0

    Actually, I think you've missed the point. There is no law (that I am aware of) requiring the copyright notice from an original work to be included in a derivative work. Of course, you have to comply with the terms of the license you use to create the derivative work. In this case, that is the GPL. The GPL does not require that copyright notices from the original work be included. The BSD license isn't a law; as with any other license, it only applies to you if you accept it. If source code is exclusively BSD licensed then you have to accept it in order to legally make copies or derivative works. If you fail to follow the terms of the license, your copies or derivative works violate copyright law. In this case, the copyright on the original work explicitly permits you to make copies or derivative works under the terms of GPL instead of the BSD license. If you choose to do so, the terms of the BSD license don't apply to you.

  20. So who writes the email, trained monkeys? on Netflix Makes It Easy To Reach a Human · · Score: 0

    So NetFlix makes it "easy to reach a human" ... as opposed to using email, which I suppose is written by trained monkeys, or outsourcing ... well, we all know them thar durn furriners ain't really human, don't we?

    Sheesh.

    Not that I don't think this is a good thing for customers, so long as electronic communications are also available; but honestly, don't you think the article could have been expressed slightly better?

  21. Won't GPL3 kill embedding? on Embedded Linux Primer · · Score: 0, Flamebait

    Won't GPL3 pretty much kill embedded Linux? Richard Stallman has said one of the design criteria of GPL3 was to prevent "Tivoisation", i.e., embedding.

    (Granted I gather there are no plans to GPL3 the Linux kernel, so as long as you aren't using any of the GNU components I guess you'd still be OK.)