<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Free as in speech</title>
	<atom:link href="http://blog.technologeek.org/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.technologeek.org</link>
	<description>Free Software. Free Speech. That's the way it works.</description>
	<pubDate>Wed, 14 May 2008 15:08:19 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
	<language>en</language>
			<item>
		<title>Of course it&#8217;s far worse. Did I tell otherwise?</title>
		<link>http://blog.technologeek.org/2008/05/14/108</link>
		<comments>http://blog.technologeek.org/2008/05/14/108#comments</comments>
		<pubDate>Wed, 14 May 2008 14:55:28 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=108</guid>
		<description><![CDATA[Dear Daniel,
It looks like you are referring to my post, though you got my name wrong so that wasn&#8217;t immediately obvious.
Of course this is far worse than the 2003 compromise in terms of the direct, known and quantifiable impact it has on our users. I don&#8217;t think I stated otherwise, so I hardly see why [...]]]></description>
			<content:encoded><![CDATA[<p>Dear <a title="Daniel's post regarding the OpenSSL debacle" href="http://algebraicthunk.net/~dburrows/blog/entry/worst-ever/">Daniel</a>,</p>
<p>It looks like you are referring to my post, though you got my name wrong so that wasn&#8217;t immediately obvious.</p>
<p>Of course this is far worse than the 2003 compromise in terms of the direct, known and quantifiable impact it has on our users. I don&#8217;t think I stated otherwise, so I hardly see why your post starts with &#8220;I disagree&#8221;.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/05/14/108/feed</wfw:commentRss>
		</item>
		<item>
		<title>Making code valgrind-clean &#8230;</title>
		<link>http://blog.technologeek.org/2008/05/13/107</link>
		<comments>http://blog.technologeek.org/2008/05/13/107#comments</comments>
		<pubDate>Tue, 13 May 2008 15:11:13 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=107</guid>
		<description><![CDATA[NOT.
Also see #363516.
Genius.
Now regenerating every single SSH key, SSL certificate and whatever else I can identify that&#8217;s been produced by one of the Valgrind-clean openssl. Also expiring and changing every single password I&#8217;ve ever typed in a vulnerable SSH session (be it at login or in the session).
Updating the packages on the machines was fun [...]]]></description>
			<content:encoded><![CDATA[<p><a title="DSA 1571: openssl -- predictable random number generator" href="http://www.debian.org/security/2008/dsa-1571">NOT</a>.</p>
<p>Also see #363516.</p>
<p>Genius.</p>
<p>Now regenerating every single SSH key, SSL certificate and whatever else I can identify that&#8217;s been produced by one of the Valgrind-clean openssl. Also expiring and changing every single password I&#8217;ve ever typed in a vulnerable SSH session (be it at login or in the session).</p>
<p>Updating the packages on the machines was fun already.</p>
<p>Worst Debian day ever since the 2003 compromise. And that was a BAD one.</p>
<p>I guess we need a new openssl maintainer, we obviously cannot trust the current one(s).</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/05/13/107/feed</wfw:commentRss>
		</item>
		<item>
		<title>SANE in Lenny</title>
		<link>http://blog.technologeek.org/2008/05/07/106</link>
		<comments>http://blog.technologeek.org/2008/05/07/106#comments</comments>
		<pubDate>Wed, 07 May 2008 17:08:00 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=106</guid>
		<description><![CDATA[The SANE project is working on improving SANE, extending the API and ABI in a backward-compatible manner and bumping the version from 1.0.x to 1.1.x to celebrate that.
The timetable has been posted, and calls for a release of SANE 1.1.0 on July, 30th.
This will be too late for the Lenny freeze by a few weeks, [...]]]></description>
			<content:encoded><![CDATA[<p>The SANE project is working on improving SANE, extending the API and ABI in a backward-compatible manner and bumping the version from 1.0.x to 1.1.x to celebrate that.</p>
<p>The timetable has been posted, and calls for a release of SANE 1.1.0 on July, 30th.</p>
<p>This will be too late for the Lenny freeze by a few weeks, which means Lenny is set to be released with SANE 1.0.19.</p>
<p>SANE 1.0.19 is a good, solid release, which is good news. I&#8217;m not sure 1.1.0 will be as solid as 1.0.19 is, so I won&#8217;t try to rush 1.1.0 into Lenny at the last minute.</p>
<p>Until the Lenny freeze, I&#8217;m going to augment the current SANE 1.0.19 with code from the SANE CVS, concentrating mostly on bugfixes and self-contained new hardware support and features.</p>
<p>Hence, if there is something in the SANE CVS that you would like to see in Lenny: test it, then tell me about it. You have until the end of June to do so.</p>
<p>Currently on my TODO list:</p>
<ul>
<li>pixma backend update</li>
</ul>
<p>Currently in experimental, sane-backends 1.0.19-7:</p>
<ul>
<li>saned &amp; net backend with mDNS/DNS-SD support</li>
<li>debconf support for enabling saned</li>
</ul>
<p>Comments and feedback welcome.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/05/07/106/feed</wfw:commentRss>
		</item>
		<item>
		<title>Etch 1/2 considered harmful for kittens</title>
		<link>http://blog.technologeek.org/2008/05/06/105</link>
		<comments>http://blog.technologeek.org/2008/05/06/105#comments</comments>
		<pubDate>Tue, 06 May 2008 08:26:42 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=105</guid>
		<description><![CDATA[Trying to upgrade a craptastic server that&#8217;s proving problematic under 2.6.18 to the Etch 1/2 kernel, not only is the machine extremely sloooooow to boot, but it turns out that it&#8217;s partly due to bnx2 now requesting a firmware file, whereas the firmware is built-in in the 2.6.18 Etch kernel.
Of course, the machine has no [...]]]></description>
			<content:encoded><![CDATA[<p>Trying to upgrade a craptastic server that&#8217;s proving problematic under 2.6.18 to the Etch 1/2 kernel, not only is the machine extremely sloooooow to boot, but it turns out that it&#8217;s partly due to bnx2 now requesting a firmware file, whereas the firmware is built-in in the 2.6.18 Etch kernel.</p>
<p>Of course, the machine has no working network access due to this, and, to make things even worse, the firmware file is nowhere to be found. No firmware-nonfree in etch-proposed-updates and it&#8217;s not in the firmware-nonfree package in unstable.</p>
<p>You&#8217;d better hide your kittens, for Etch 1/2 makes me want to kill a large number of kittens.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/05/06/105/feed</wfw:commentRss>
		</item>
		<item>
		<title>Wow.</title>
		<link>http://blog.technologeek.org/2008/04/30/104</link>
		<comments>http://blog.technologeek.org/2008/04/30/104#comments</comments>
		<pubDate>Wed, 30 Apr 2008 06:47:41 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Tech]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=104</guid>
		<description><![CDATA[Put down the crack pipe. Really. Wow.
]]></description>
			<content:encoded><![CDATA[<p>Put down the <a title="ZDNet smoking some serious crack then talking about FS in Linux" href="http://blogs.zdnet.com/BTL/?p=8647">crack pipe</a>. Really. Wow.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/30/104/feed</wfw:commentRss>
		</item>
		<item>
		<title>Dear Jaldhar, Debian is alive and kicking asses.</title>
		<link>http://blog.technologeek.org/2008/04/18/103</link>
		<comments>http://blog.technologeek.org/2008/04/18/103#comments</comments>
		<pubDate>Fri, 18 Apr 2008 16:09:43 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=103</guid>
		<description><![CDATA[Dear Jaldhar,
I wrote the post you&#8217;re referring to knowing that only one person had been stupid enough to title his post &#8220;Is Debian dying?&#8221;, so before you go on writing I&#8217;m insulting a group of people (at least I&#8217;m reading your post this way), please do your research.
Lucas&#8217; post is about the worst PR we [...]]]></description>
			<content:encoded><![CDATA[<p>Dear <a title="Jaldhar's post" href="http://www.braincells.com/debian/index.cgi/search/item=187">Jaldhar</a>,</p>
<p>I wrote the post you&#8217;re referring to knowing that only one person had been stupid enough to title his post &#8220;Is Debian dying?&#8221;, so before you go on writing I&#8217;m insulting a group of people (at least I&#8217;m reading your post this way), please do your research.</p>
<p>Lucas&#8217; post is about the worst PR we can imagine. There&#8217;s nothing more stupid to do than what he did. That&#8217;s the PR equivalent of committing suicide, mostly. It&#8217;s seriously hindering the work some of us are doing, publicizing Debian, going to trade shows, etc. It&#8217;s not only stupid, it&#8217;s hurting people who do this work.</p>
<p>What&#8217;s worse, the post comes with comments from random nobodies, who have nothing to do with Debian, don&#8217;t have the first clue about how the Project works internally, yet they can tell that Debian is dying and grinding to a halt. Not to mention it&#8217;s been publicized yet again by some &#8220;journalist&#8221;.</p>
<p>I&#8217;ve known Lucas for a long time now. I know where I stand. And I maintain my previous post in full, like it or not.</p>
<p>Kthxbye.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/18/103/feed</wfw:commentRss>
		</item>
		<item>
		<title>Analysis of NagVis 1.2.x</title>
		<link>http://blog.technologeek.org/2008/04/18/102</link>
		<comments>http://blog.technologeek.org/2008/04/18/102#comments</comments>
		<pubDate>Fri, 18 Apr 2008 09:41:42 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Hacks]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=102</guid>
		<description><![CDATA[NagVis is a visualization add-on for Nagios, offering a somewhat better summary view compared to Nagios.
As we are faced with abysmal performance on a &#8220;large&#8221; setup here, I conducted a quick analysis.
Given what I found pretty early on during this analysis, I&#8217;ve given up trying to salvage NagVis. We&#8217;re looking at alternatives and considering writing [...]]]></description>
			<content:encoded><![CDATA[<p>NagVis is a visualization add-on for Nagios, offering a somewhat better summary view compared to Nagios.</p>
<p>As we are faced with abysmal performance on a &#8220;large&#8221; setup here, I conducted a <a title="Analysis of NagVis 1.2.x performance on a large number of maps" href="http://blog.technologeek.org/an-analysis-of-nagvis-12x-performance-with-a-large-number-of-maps">quick analysis</a>.</p>
<p>Given what I found pretty early on during this analysis, I&#8217;ve given up trying to salvage NagVis. We&#8217;re looking at alternatives and considering writing our own tool to cover our needs.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/18/102/feed</wfw:commentRss>
		</item>
		<item>
		<title>zomgwtfbbq!!11!!1111!!1! New DDs !!</title>
		<link>http://blog.technologeek.org/2008/04/18/99</link>
		<comments>http://blog.technologeek.org/2008/04/18/99#comments</comments>
		<pubDate>Fri, 18 Apr 2008 06:48:02 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Debian]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=99</guid>
		<description><![CDATA[New developer accounts have been created moments ago, &#8220;finally&#8221;.
Congratulations to all new DDs, with a special note for Aurélien GÉRÔME (ag) and Cyril BRULEBOIS (KiBi).
All of this made possible by Sam, our best DPL to date.
Also, don&#8217;t listen to the fucktards going around telling &#8220;OMG DEBIAN IS DYING!!11!1!&#8221;. They&#8217;re just that, fucktards.
]]></description>
			<content:encoded><![CDATA[<p>New developer accounts have been created moments ago, &#8220;finally&#8221;.</p>
<p>Congratulations to all new DDs, with a special note for Aurélien GÉRÔME (ag) and Cyril BRULEBOIS (KiBi).</p>
<p>All of this made possible by Sam, our best DPL to date.</p>
<p>Also, don&#8217;t listen to the fucktards going around telling &#8220;OMG DEBIAN IS DYING!!11!1!&#8221;. They&#8217;re just that, fucktards.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/18/99/feed</wfw:commentRss>
		</item>
		<item>
		<title>pommed v1.17: update for Linux 2.6.25</title>
		<link>http://blog.technologeek.org/2008/04/17/97</link>
		<comments>http://blog.technologeek.org/2008/04/17/97#comments</comments>
		<pubDate>Thu, 17 Apr 2008 17:32:22 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Hacks]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=97</guid>
		<description><![CDATA[I&#8217;ve just released pommed v1.17, which is a pure maintenance release to accomodate changes in Linux 2.6.25.
The path for the led interface exposed by applesmc for the keyboard backlight has changed, so if you lost the keyboard backlight when switching to 2.6.25 or a pre-release, now you know why ;)
No new features this time around [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve just released pommed v1.17, which is a pure maintenance release to accomodate changes in Linux 2.6.25.</p>
<p>The path for the led interface exposed by applesmc for the keyboard backlight has changed, so if you lost the keyboard backlight when switching to 2.6.25 or a pre-release, now you know why ;)</p>
<p>No new features this time around :-)</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/17/97/feed</wfw:commentRss>
		</item>
		<item>
		<title>Getting things done on SANE again</title>
		<link>http://blog.technologeek.org/2008/04/13/96</link>
		<comments>http://blog.technologeek.org/2008/04/13/96#comments</comments>
		<pubDate>Sun, 13 Apr 2008 15:35:16 +0000</pubDate>
		<dc:creator>jblache</dc:creator>
		
		<category><![CDATA[Hacks]]></category>

		<guid isPermaLink="false">http://blog.technologeek.org/?p=96</guid>
		<description><![CDATA[There have been a number of discussions on sane-devel in the past months revolving around the SANE2 standard (still in development) and/or extensions to the current SANE1 standard. SANE2 is an effort that has been &#8220;ongoing&#8221; (on and off, mostly off, unfortunately) for a number of years already.
This led to a number of questions being [...]]]></description>
			<content:encoded><![CDATA[<p>There have been a number of discussions on sane-devel in the past months revolving around the SANE2 standard (still in development) and/or extensions to the current SANE1 standard. SANE2 is an effort that has been &#8220;ongoing&#8221; (on and off, mostly off, unfortunately) for a number of years already.</p>
<p>This led to a number of questions being raised, most notably this one: do we need SANE2, or can we get away only with extensions to SANE1? Or should we just redesign the whole stack from the ground up?<br />
This matter is undecided as of yet, but extensions to SANE1 are planned, being discussed or in the making for some of them.</p>
<p>During the discussions, a fork of SANE has been announced, dubbed &#8220;SANE Evolution&#8221;. No idea where that is going, but it&#8217;ll probably end up being merged back into SANE in the end.</p>
<p>So, in a nutshell, things are moving again (albeit slowly), which is good news considering the project was mostly asleep in recent times.</p>
<p>To celebrate that (and because I now have total control over my free time again), I&#8217;ve been working on the network side of SANE again. In 2 weeks (3 week-ends, roughly):</p>
<ul>
<li>saned has been turned into a regular, full-fledged daemon</li>
<li>mDNS/DNS-SD service announcement &amp; discovery has been added to saned and the net backend (using Avahi)</li>
<li>I have 20% of a WireShark dissector for the SANE protocol written, and already spotted (and plugged) an information leak bug in the net backend thanks to it</li>
</ul>
<p>Turning saned into a regular daemon made it possible to clean up a good chunk of the code duplication that was introduced by my previous AF-indep/IPv6 work; the startup code is readable again.</p>
<p>The Avahi support is (I hope) a very nice thing as, when enabled, configuration of the net backend on the client side is no longer needed. This is an experimental feature still and as such it&#8217;s disabled by default at build time. I have a couple of ideas to improve that feature, but this means saned will have to evolve even more so it&#8217;ll take some time.</p>
<p>The WireShark dissector is a tool for working on enhancing the network protocol. It proved useful already with the information leak I spotted with it (though it&#8217;s minor). It&#8217;ll be a long work to extend the network protocol and implement that into saned and the net backend in a backward-compatible manner.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.technologeek.org/2008/04/13/96/feed</wfw:commentRss>
		</item>
	</channel>
</rss>
