Slashdot Mirror


User: gclef

gclef's activity in the archive.

Stories
0
Comments
899
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 899

  1. Re:Current Internet not *that* decentralized on Universities Tapped To Build Secure Net · · Score: 3, Informative

    13 actually. And the replication doesn't quite work the way you claim: the 13 are all actually secondaries to a "hidden" primary.

    The main problem with that system, though, is that one mistake on the hidden primary (which has happened) screws up the entire system. And, yes, many many zones were hosed for a while as Network Solutions tried to figure out what the hell they did. And, of course, there's only 13 machines to DoS before all DNS becomes totally useless.

  2. Re:Will it have DRM built-in? on Apple and IBM Working Together on 64-bit CPUs · · Score: 5, Interesting

    I was at a talk recently given by one of the security guys from Apple. He was asked about the whole TCPA thing, and his response was that Apple wasn't participating in it at present, and didn't really see what they could offer to it. Unless some sort of TCPA-like thing became law, or unless someone came up with some way for Apple to contribute, they were going to stay out of it.

    So, at least for now, they're staying out of the DRM wars. Of course, this is all subject to management whims, but that's the state as of now.

  3. Re:20 Minutes Into the Future on Federal Cyberspace Policy Draft Released · · Score: 2
    Does this hurt or improve our chances of living in a technological anarchy manipulated by television stations?

    No more Max Headroom re-runs for this man.

  4. GAH on Speed Of Light Broken With Off Shelf Components · · Score: 4, Interesting

    Ye gods, I hate these types of stories. The real physics is always more subtle and interesting than the press makes them out to be.

    The vast majority of the experiments I've seen like this (I've really only looked at photon tunneling, but this sounds *very* similar from the write-up) are explained by wave-shaping, and the side-effects of that, and are not actually FTL at all. But of course, that's hard to explain to people, so the New Scientist, et al, just go for the "Speed of light broken!" headline, which mis-leads everyone.

    Grrr.

  5. Re:'the' or 'you' on Cryptogram: AES Broken? · · Score: 2

    I think you're arguing two different points. You're worrying about how the pad actually works, and he's worried about maximizing the use you get out of the pad (by dropping unnecessary words out of the message to be encrypted). These two worries are clearly related, but not identical.

    I would say that he is correct: in practice, you would want to drop unnecessary or redundant info out of the message. Since OTPs rely so heavily on securely sharing the pad, you want to maximize the use you can get out of the pad you have without re-use. This means dropping redundant words. In common computer practice, we'd just zip the damn thing before sending it, hopefully greatly increasing the entropy (and decreasing the length) of the message before even bothering to encrypt it, but that's a whole other topic for discussion.

  6. Re:Strictly Speaking on Cryptogram: AES Broken? · · Score: 2

    While this is true, there's a reason that no one uses one-time-pads : they're a pain in the ass. In terms of practical usefulness, really only governments are willing to go to the trouble.

    The big problem is that once you've encrypted something with an OTP, the security (and secrecy) of the OTP is *everything*. If anyone gets the OTP, your encryption is done for.

    So, managing the OTPs becomes the biggest challenge in using them. First, you have to have an OTP about the same size as the file you're encrypting, to ensure that no statistical games can be played to re-build the key, and you have to have a seperate OTP for every message you encrypt. Also, getting an OTP to someone else you want to encrypt a message to is not an easy matter. You have to be sure that no one else can see the transaction that shares the OTP, since that would immediately destroy the security of the system.

    Compare this to any symmetric-key system: Yeah, you've also got a key that's central to the cipher. But, the key does not need to be approximately the same size as the file encrypted (as is the case with OTPs), which, for big files, is a huge deal.

    Basically, there's a reason we like symmetric-key algorithms, and it's mostly to do with usability. If an encryption system is such a pain in the ass that no one uses it, then its impact in the real world will be zero.

  7. Re:Too late. The cat is out of the bag. on "Squishy" DRM? · · Score: 2

    I'll respond to this with another question:

    Would you rather have music only made by one or two obsessed people who can't help but create music? Or would you rather have a legion of people who create music? The fact is, allowing folks to make a living of some sort by making music, even if they do get screwed by the recording labels, means that a lot more people are creating music. That means there's more music around.

    Yes, there would still be music without copyright, but there would be much less. Whether this situation would be better or not is debatable.

  8. Re:Too late. The cat is out of the bag. on "Squishy" DRM? · · Score: 2

    Or just...debated:

    http://www.wamozartfan.com/bio.html

    (cue duelling banjos theme)

    It's clear that finances were a problem through all his life, though, so the central point remains.

  9. Re:Too late. The cat is out of the bag. on "Squishy" DRM? · · Score: 2
    Mozart did it, look how much it helped him with fame.

    Mozart died nearly penniless, without even the money for a private grave. (He was buried in a mass grave, so we don't know exactly where to go to pay respects.) Yeah, that's a great incentive.

  10. Plugins... on Ask Eric Blossom about Software-Defined Radio · · Score: 2

    So, will there be a way/API for writing our own plugins/working with other plugins? Or, better yet, a way to get the output from this out to other apps (sockets, etc)?

    The reason I ask is that I'd love to take the planned GPS code (mentioned in the "future directions" section of the project) and use it to make a GPS-based stratum-1 NTP source. Real stratum-1 time servers are expensive...doing this all w/software would be cool.

    (Yes, I know, it wouldn't be easy to get microsecond accuracy, but it'd be a hell of a lot better than nothing.)

  11. GNUNet on Can Poisoning Peer to Peer Networks Work? · · Score: 1
    GNUNet is way ahead of you.

    To quote their summary: "GNUnet is an anonymous, distributed, reputation-based network." It's the reputation part that should cover poisoning pretty well (the anonymous part is pretty cool, too).

    Yeah, the code is pretty much still at the Alpha stage, but if you want to help....it's gnu code after all.....

  12. Move along. Nothing to see here. on Mr Anti-Google · · Score: 2

    I have one response to this whiny dork: Operation Clambake. Operation Clambake is a criticism of Scientology. It is also ranked very highly by Google in searches for Scientology. Why? Because lots of other sites consider it important and related to Scientology. His pages are not ranked highly in relation to the political figures he tracks. Why? Because no one gives a damn about what he's doing.

    Google is doing exactly what it should. The criticism sites that are respected get ranked highly, the cranks get modded down. The only problem here is that we have a whiny crank who conned a Salon writer into writing a story for him.

  13. Re:User tracking is more than an annoyance for ISP on Canadian ISPs Could Take On Big Brother Role · · Score: 2

    You back up that server regularly, right? As long as you include the logs in those backups, you're fine. You can just restore the backup somewhere else, and let the authorities look at them there. This is probably a better idea than letting them log onto your mail server (w/the rights to mess w/the logs) anyway.

  14. Re:bad news for Linux? on Changing Face of Linux? · · Score: 2

    That's not a bear. That's RMS.

    But, you need to treat RMS just like you would any other wild animal. If you don't feel that you're up to the task of care and feeding of RMS, you should call animal control. They'd be happy to relocate him back to his natural habitat.

  15. Re:Patents... on The Linux Kernel and Software Patents · · Score: 2
    I thought that you could only violate a patent if you sold the resulting product for a profit.

    You mean, like RedHat?

  16. Lying during arbitration on Answers From Community ISP Leader · · Score: 5, Interesting

    Okay, so that bit got me curious: are there any legal consequences to Qwest, or any RBOC, lying during these sorts of arbitration hearings? If it works (and it apparently did in this case), and there aren't any consequences (which there apparently weren't in this case), why would they not do this all the time? If there is some sort of penalty, you apparently have lawyers to spare, why not go after their butts?

  17. Re:I see... on Mac OS X 10.2 "Jaguar" Reviews Pour In · · Score: 2, Offtopic

    Awww...c'mon...you don't have fun w/the registrations?

    To the Post, I'm a 101-year-old woman, living in the 20001 zip code who reads lots of tech articles and the Boondocks. Who knew that demographic liked the Boondocks?

  18. what about Wireless? on Broadband To Hit The South Pole · · Score: 2

    Hands up: who thinks wireless (microwave, 802.11, whatever) would be a much better idea here?

  19. Re:Money Hungry on The Sex.Com Story Continues · · Score: 2

    Ah, but amending their policies indicates an admission that Verisigns (ok, NetSols) policies were inadequate. If he can show that Verisign/NetSol knew (or reasonably should have known) that their policies were inadequate, then they've been irresponsible, and can be sued for damages.

    So, yeah...that's a case. A reasonable one, too.

  20. slashdotted... on PGP Acquired From NAI · · Score: -1, Offtopic

    Warning: Too many connections in /var/www/html/pgp/conn.php on line 7

    Warning: MySQL Connection Failed: Too many connections in /var/www/html/pgp/conn.php on line 7
    Error: Could not connect to MySql

    mmmm....I love the smell of a slashdotting in the morning. It smells like...victory.

  21. Re:Glazed over facts on MIT vs. Las Vegas · · Score: 2

    And, to make things more complicated, some of the casinos in Las Vegas are now using shuffling machines. It's not clear how these machines work, but I'm sure the casinos are paying attention to the math research that shows that some shuffling techniques do not actually maximize randomness.

  22. Answering my own question on Doctorow on the Demise of the Digital Hub · · Score: 5, Informative

    Okay, the FCC filing (here: http://hraunfoss.fcc.gov/edocs_public/attachmatch/ FCC-02-231A1.pdf ) isn't a preperation to enact the rules. It's a request for comment from the public on whether or not they should implement the rules.

    So, what we have here is yet another person to flood with negative responses to industry insanity.

    To quote the pdf file:
    To get filing instructions for e-mail comments,
    commenters should send an e-mail to ecfs@fcc.gov, and should include the following words in the body
    of the message, "get form <your e-mail address>."

  23. FCC?! on Doctorow on the Demise of the Digital Hub · · Score: 2

    If you read the article, he mentions that the FCC is apparently preparing to mandate the BPDG recommendations. This removes the pesky Congress from the picture entirely. I have a couple questions about this: 1) Can they do this constitutinally? 2) who do I bitch-slap at the FCC for this insanity?

    anyone know?

  24. Re:Potashner not a saint on Shake-up At SonicBlue · · Score: 2
    I suspect this row was caused by the new law that makes him (and other executives) criminally liable for fraud and errors on financials. Without that he wouldn't have cared.


    Good. Then the law is doing what it was supposed to. I don't give a damn whether or not he's an angel. If he's too scared of the law to play along with accounting games, then we've taken a step in the right direction.

  25. No hope for broadcast flags on More on the Effect of Digital TV · · Score: 2

    One of the neater talks from DefCon (I just got back) was the GNU folks talking about doing RF decoding entirely in software.

    Now, on its face, this sounds boring, until you realize that they can make a TV, HDTV, Cell Phone, radio, HAM, and CB transciever entirely in software. Once decoding is in software, we can choose whether to obey the broadcast flags or not. I suspect that this whole broadcast flag thing won't last that long if the GNU folks get that project really working well.