Slashdot Mirror


User: TheCabal

TheCabal's activity in the archive.

Stories
0
Comments
441
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 441

  1. Seriously on Building Secure Computers? · · Score: 3, Informative

    If you're working for the DoD, you'll need a system that has been certified to handle classified material. The certification process means that it has undergone DITSCAP and meets certain criteria such as EMSEC. You really don't want to be homebrewing a machine that is going to be processing classified material, especially if it's not certified.

  2. Re:Aren'te they more worried about employees... on The Tech Used to Catch Vegas Cheats · · Score: 4, Informative

    Dealers are watched as much as the patrons are, sometimes more. Dealers stay clean by sticking to procedure- ever wonder why you HAVE to lay money down on the table and spread it instead of handing it directly to a dealer? Wonder why a dealer waves his/hers hands top and bottom when they get tapped out and go off shift?

    You probably haven't been "back of house" in a casino, but there are craploads of security and surveillance where only the employees go.

  3. Re:Who's the cheat? on The Tech Used to Catch Vegas Cheats · · Score: 3, Informative

    Uh, no you can't do that. Gaming regs here prevent casinos from doing that. If you advertise a 99% payout on a bank of slots, those slots HAVE to have a 99% payout (mind you, it's over the lifetime of the machine).

    Payout schemes are locked in each machine in the presence of a gaming control agent. They have ways to tell if a machine has been tampered with. Gaming in Vegas is quite on the level- people just forget that a casino won't engage in a game of chance unless it is favored to win.

    And there's plenty of homeless people on the streets here in Vegas, so come on down with your roll of cash...

  4. Re:'cheat' is realative on The Tech Used to Catch Vegas Cheats · · Score: 2, Insightful

    A property can toss anyone out and tell them that they are no longer welcome at the property from now on. A casino's purpose is to part players from their money and anything that shifts the odds even in the slightest towards the player is going to cause a reaction. It's in your right to count cards so as long as you are not using anything other than your brain, but it's also the casino's right to toss you for looking at the pit boss crosseyed.

    People are fortunate today- back in the bad old days here when the Mob still ran things, you wouldn't just get escorted out the front door and told not to come back.

  5. Re:'cheat' is realative on The Tech Used to Catch Vegas Cheats · · Score: 1

    You're at a private property, if you don't like the amount of surveillance being pointed at you, go somewhere else. If it were just card counting or varying bets (a telltale signal that surveillance uses), then such extensive measures wouldn't be required. It's the people who use computers, mirrors, pass posting, ink tags, counterfeit money and chips and other tricks that require such security

  6. Re:Fucking terrorist blackjack card counters! on The Tech Used to Catch Vegas Cheats · · Score: 3, Informative

    Actually, card counting is legal. Casinos don't like you doing it, but they can only ban you from the property.

  7. DefCon on Hackers Gather in Finland, Netherlands, and Vegas · · Score: 1

    I guess I'm fortunate enough to live in Vegas, so I can get to all three days without having to shell out for hotel and airfare...

    I think it's been better than the last one I went to (DC 11, I think). The lockpicking contest was a bit of a wash as they had some hardassed Weiser locks for the first round and very few (less than 5) actually got them. About halfway through they decided to give people a second chance later that evening and try a different lock- I heard that few people showed up for that. Lockpicking seems to be the latest fad in the hacking crowd . The Irvine Underground table was pretty crowded all the time, especially around the demo tables.

    The usual stuff is all there, including the Wall of Sheep. You can tell its Day 2... there's slightly less people in the morning and those who do show up don't have that bright and cheery look.

  8. This is ridiculous on Free Beer That's Free as in Speech · · Score: 1

    It seems like people are slapping the term "Open Source" on anything in order to sound profound or at least fashionable. I remember when inventor of the Internet Al Gore (who later rode the sand worm) said that his website was open source...

    A beer recipe is open source? For $DEITY sake, people have been swapping recipes since we discovered fire.

  9. Re:The Real Reason on FCC Proposes Abolishing Morse Code Requirement · · Score: 1

    Does this mean that "Da-doo-doo-doo-dah-dah-dah-dah" by the Police is going to be outlawed?

  10. No Morse? on FCC Proposes Abolishing Morse Code Requirement · · Score: 4, Funny

    So how are we going to tell all the other countries how to bring down the alien flying saucers?

  11. Re:Am I the only one? on New International Serenity Trailer Released · · Score: 1

    How long until I'm modded "Troll" for disagreeing?

    Shouldn't be long, look at my original post. I just received the summary of mods for that post and let's just say it's an interesting battle, but GroupThink(tm) is in full force.

  12. Re:Am I the only one? on New International Serenity Trailer Released · · Score: 1

    Dark Angel was mediocre. Jessica Alba's easy on the eyes, but the show itself wasn't very good. Intreresting premise, but I never bothered to watch more and a couple of episodes.

  13. Re:Am I the only one? on New International Serenity Trailer Released · · Score: 1

    I watched whatever Fox showed first. Apparently there is the first episode (shown second), the second episode (which was shown first), some premier that isn't a premier(which as never shown and the second episode was the premier)... I need a scorecard to keep up here. Obviously this show requires a level of involvement that I'm not willing to put in for.

    Hoping for more action? Not really, although that might have saved it. The story is enough for me, and the "premiere that wasn't a premiere but really the second episode" just really lacked.

    That my original post has been labelled a troll is amusing though. I'm obviously out of sync with the /. groupthing yet again.

  14. Re:Am I the only one? on New International Serenity Trailer Released · · Score: 1

    But that's just it - you didn't see the "premier", you saw the episode Fox showed first - big difference. It's like starting LotR with the Two Towers and blaming Tolkien because the story doesn't make sense.

    Oh, so there are differing definitions of "premiere". Silly me to think that "premiere" would be the first showing of something.

    Look at it this way; by watching Firefly (as mentioned above, showing on Sci-Fi (didn't know that, thanks)) what you'll really be doing is thumbing your noses at the marketing idiots at Fox who were sure they knew how best to "position" the show, against the wishes of the creative folks.

    I do that by watching Family Guy on Adult Swim instead of on Fox.

  15. Re:Am I the only one? on New International Serenity Trailer Released · · Score: 2, Interesting

    Yes, I saw the premiere on Fox, and predicted the show was going to get the axe. Shame on Fox for screwing it up like they did, but the premiere left me with no desire to see what the rest of the season was like. I don't think I'd even waste a selection getting it from Netflix at this point.

    Apart from BSG, the current state of sci-fi shows sucks. Fox killed off my other fav sci-fi show before its time... it seems they have a knack for doing that. At least with Firefly it wasn't upsetting.

  16. Am I the only one? on New International Serenity Trailer Released · · Score: 0, Troll

    Am I the only one who found Firefly to be dull and boring? I couldn't even make it through the first episode, and didn't miss it when it got axed. Why is everyone gushing orgasmic over a show that couldn't even make it through one season?

  17. Re:commercial products on Network Intrusion Detection and Prevention? · · Score: 1

    I'll second this... I love the interface for Juniper's IDP. It's Java based, but its *extremely* easy to manage buttloads of sensors. The sensors themselves are a snap to set up and get running- I deployed half a dozen in about an hour. We were looking at the ISG blades but the price quoted for us was staggering, even for this place.

    ISS' stuff... eek. Maybe in a few months after they've gone through another development cycle. I just finished an eval of their stuff and their pre-sales team walked away with a laundry list of things to fix. I was disappointed, given ISS' reputation in the security business.

  18. Re:ISS: Industry Leader in IDS and IPS on Network Intrusion Detection and Prevention? · · Score: 1

    I just finished an eval of their SiteProtector with Proventia Desktop, and I've worked with their Proventia G's before. I think they're a couple of months for having a real solid product, at least on the desktop side. I think they've improved with their appliances, but even some of their own people I talked to thought their first generation stuff wasn't very good.

    Their sales guy was pushing the Proventia M at me, but it doesn't fit in our infrastructure well, and tops out at 1Gbps. That's a fraction of the speed I need these things to work at.

    I figure by the end of the year, they may have something. It may be worthwile to buy in now if you like what they currently have.

  19. Re:a house? on Network Intrusion Detection and Prevention? · · Score: 1

    An ISG2000 with the IDS blades will set you back quite a bit. IIRC, a new setup can cost up to 150k

  20. I've seen a bunch on Network Intrusion Detection and Prevention? · · Score: 2, Informative

    I'm a big fan of Snort, but it's really not good for the enterprise, especially at the core. It's a decent backup or sensor on the cheap near the edge. Multple sensor management and speed really limits Snort's usefulness.

    I've seen plenty of appliances out there. Some of your options depends on what kind of equipment you're already running. As far as "best choice", you really should factor in what you already have- if you have Cisco modular equipment at your core or distribution layer, maybe going with the Cisco IDS blade will make more sense than getting a Proventia. Do you have Juniper firewalls? They make an IDS blade that fits in their ISG series.

    That being said, I've worked with Cisco IDS and SecureAgent. SA's a real beast- you can expect to spend a long time getting up to speed with it. I've had problems managing the blades themselves- they're basically little RedHat boxes on a blad that plugs into the backplane. CiscoWorks makes it relatively easy to manage but I had a *lot* of problems pushing updates and management info to them, and configuring your modular chassis with the right VLAN stuff can be a bitch unless you're good with Cisco equipment. One issue I hope they fixed was that their email notification sucked and they had to provide a PERL script to generate a useful email alert.

    I like Juniper's IDP stuff. Their appliances come with cobber and fibre cards and are a snap to set up. You can set them in in pass-through mode and place them inline between your routers and switches, or just mirror/tap the trunk port. In inline mode you get the ablity to send hard RSTs to both endpoints of an attack. The management software is pretty intuitive and the dashboard give you a very good "at a glance" view. They top out at about 500Mbps/sec so if you're pushing great gobs of data, they might not be sufficient.

    I've played around a bit with ISS' Proventia stuff- their appliances are OK, and I think their desktop stuff needs one more development cycle to be good. SiteProtector is decent, but it too needs a little more development in the UI area. The desktop agents are a lot easier to manage than Cisco's SecureAgent.

  21. Re:Number of problems on IP Telephony Drives in Power over Ethernet · · Score: 1

    May work for you, but we need inline power management (remote reboot of devices) and we have enough problems with users plugging PCs into the phone connections. Power injectors are just stupid and will happily fry a NIC.

  22. Number of problems on IP Telephony Drives in Power over Ethernet · · Score: 1

    We have an extremely large VoIP installation with all of our phones PoE... one thing we found out early on is that just about every PoE capable switch we looked at could not provide enough power to run all ports supporting Class III devices. A 48 port switch realistically could only support 30 or so devices, and that was with some super new higher wattage power supplies. That made our finance people see red as we kept asking for more and more PoE switches, and having to tell them that 18 ports per switch are unusable...

  23. CustomInk on Google Investors Find New Project · · Score: 1

    Haven't tried Zazzle, but have tried CustomInk.com... they have a neato little "lab" where you can design your shirts. It allows you to upload whatever graphics you want, add text, change fonts, positioning, size, color. Seemed pretty complete. We drew up a nice shirt design with our band's logo, did some text and ordered up a few dozen shirts in various sizes so we had something to sell at shows. I really liked the flexibility of the design lab, and I think they were working on the ability to have something printed on the sleeves of longsleeved shirts.

  24. Re:Epic Poem on Microsoft's 10-year-old Certified Professional · · Score: 1

    You might not want to let his wife and three kids know that.

  25. Re:Well, about time.... on Linux and Windows Security Neck and Neck · · Score: 1

    Sounds like someone wants all the reward and none of the work.