posted image

2014-04-23 00:45:42 (4 comments, 6 reshares, 23 +1s)

We're making the eBook version of the new OpenShift O'Reilly book available to everyone.  Come on over and get it. https://www.openshift.com/promotions/ebook #openshift  

posted image

2014-04-22 13:02:10 (84 comments, 44 reshares, 68 +1s)

Samstag. In der FAZ. Ganzseitenanzeige. Open Source Entwickler sind verantwortungslose 17-jährige. FAZialpalmieren.

"Internet-Sicherheit und Heartbleed

Mein Name ist Klaus Brandstätter. Ich bin Diplonm-Ingenieur und werde dieses Jahr 60. Ich habe vor über 40 Jahren im Gymnasium Programmieren gelernt und seitdem mehr als eine Million lines-of-code selbst entwickelt. Ich bin auch CEO der Firma HOB GmbH & Co. KG.

Ich habe mir den problematischen Sourcecode von Heartbleed angesehen und verstanden. Ein Angreifer kann bis zu 64 Kilobyte zufälligen Speicher auslesen, was immer zufällig in diesem Speicher steht, Passworte, Zertifikate, geheime Schlüssel, die unverschglüsselte Nachricht. Bei Angriffen kann auch zufällig der Webserver abstürzen, man könnte also auch eine Denial-of-Service Attacke über Heartbleed durchführen.

Es gilt der Grundsatz: alleswas der Ben... more »

2014-04-22 09:29:40 (14 comments, 1 reshares, 19 +1s)

For a very long time developers and software architects have ignored the Certificate Revocation checks. Because they didn't really bother. The standards for CRL and OCSP thus have been bitrotting. And now, after #Heartbleed , those same ignorants claim that OCSP and CRL is fundamentally broken and we shouldn't really care too much.

This is the typical but fundamentally wrong approach. Security is hard work. And just by being too lazy to care about that 10% that is needed you are doing it wrong, wrong, wrong. And blaming others for your own failure of not caring about this fundamental part of the SSL/TLS certificate system is unacceptable. Browser developers, security "experts" - you have failed. Now admit it and fix it ASAP.


2014-04-22 06:38:59 (7 comments, 7 reshares, 14 +1s)

"Microsoft OneDrive for Business modifies files as it syncs" http://www.myce.com/news/microsoft-onedrive-for-business-modifies-files-as-it-syncs-71168/

posted image

2014-04-21 10:05:48 (4 comments, 9 reshares, 63 +1s)

Ooh that's good. 

posted image

2014-04-20 06:48:26 (11 comments, 34 reshares, 88 +1s)

Everybody remember the port 32764 backdoor in various routers? And how it supposedly was fixed? Well. Fixed. As in "oops, we did it again". The backdoor is still there. Just a bit tougher to find and use. How stupid are these people?


Cc +Fabian Scherschel

2014-04-19 17:27:51 (1 comments, 0 reshares, 3 +1s)

Sounds cool! Printed Arduinos. And more. https://www.kickstarter.com/projects/1030661323/printoo-paper-thin-flexible-arduinotm-compatible-m

2014-04-19 15:42:59 (8 comments, 0 reshares, 18 +1s)

I expect, no, I demand that after #heartbleed all browsers change the default of OFF for CRL and OCSP to "always check". And I expect all CAs to get their infrastructure for this up to speed. No excuses accepted. 

posted image

2014-04-19 13:55:44 (2 comments, 9 reshares, 29 +1s)

MegaAwesome Alert! The entire British Pathe archive is now available on YouTube!

#history #film 

posted image

2014-04-19 10:06:38 (9 comments, 1 reshares, 8 +1s)

For one month, I became the “micro-entrepreneur” touted by companies like TaskRabbit, Postmates, and Airbnb. Instead of the labor revolution I had been promised, all I found was hard work, low pay, and a system that puts workers at a disadvantage.
Excerpted from a must-read article by Sarah Kessler:

“The prospects of finding a living wage in America do not seem any brighter than they did back in 2008 when Busque founded TaskRabbit. Unemployment has drifted down from its high of 10% in October 2009 to 6.6% in the January 2014 report, but income inequality is, according to research based on tax-return data from the IRS, the worst it has been since 1923.

And the anecdotal evidence is appalling. 

2014-04-19 07:36:00 (13 comments, 0 reshares, 6 +1s)

Things that totally didn't deliver on the hype IMHO:


Wireless charging

Google Glass

Smart Metering


2014-04-19 06:59:38 (4 comments, 2 reshares, 12 +1s)

Patent wars. Read this.

Greed and the Wright brothers

“That is, of course, the irony of the patent system. Without patent protection, a competitor can simply replicate an invention and undercut the inventor’s price — which necessarily includes all the time and expense of research and development — so the incentive to experiment and create is severely inhibited. But if innovators such as Glenn Curtiss cannot build on the progress of others without paying exorbitantly for the privilege, the incentive to continue to experiment and create is similarly inhibited.”


posted image

2014-04-18 20:24:03 (0 comments, 4 reshares, 8 +1s)

NOW AVAILABLE: The #Dell Red Hat Cloud Solution, powered by #RHEL #OpenStack Platform! http://buff.ly/QeFGdG #redhat #RHSUMMIT

2014-04-18 14:17:42 (0 comments, 1 reshares, 7 +1s)

Red Hat understands packaging open source code, umm,  probably better than anyone. It's adopted the Docker approach to Linux containers and will make containers a feature of its OpenShift developer platform as a service. Is that smart? I think it is. It'll provide an alternative way to move workloads to the cloud.

2014-04-18 14:16:32 (1 comments, 0 reshares, 0 +1s)

intrigued am i.

"Meshlocals are community projects that create a publicly-accessible geographically-local network of decentralized mesh hardware, owned by individuals, but working together for everyone's benefit."

posted image

2014-04-18 11:54:14 (1 comments, 4 reshares, 15 +1s)

Built For It™ Trials - Stack: Largest Board Game Played with Cat® Excavators

2014-04-18 11:36:08 (6 comments, 0 reshares, 4 +1s)

Upgraded my Smart Roadster with a Bluetooth A2DP receiver connected to the CD changer port of the original radio. All parts hidden in the console, so nothing to see. Now to add some USB ports for charging stuff. 

2014-04-18 10:21:19 (0 comments, 0 reshares, 8 +1s)

ownCloud File Sync and Share and Red Hat Storage Enable Enterprise Clouds to Scale Like Public Clouds

25,000-User Benchmark Results Confirm Linear Scalability of Red Hat Storage and ownCloud running on x86 servers!

posted image

2014-04-18 08:19:20 (16 comments, 3 reshares, 14 +1s)

OpenStack Icehouse. Top contributor (again): Red Hat (2877 commits). Followed by IBM, HP, Rackspace. (Canonical is at position 16 with 131 commits, BTW)


2014-04-17 16:55:56 (3 comments, 2 reshares, 14 +1s)

Ouch, #openssl.

"Log message:
Do not feed RSA private key information to the random subsystem as entropy. It might be fed to a pluggable random subsystem....

What were they thinking?!"


2014-04-17 08:01:22 (18 comments, 0 reshares, 16 +1s)

Please continue to flood my timeline with pictures you took with the new google camera app for Android. Especially those with the fake bukeh bokeh of stuff on your desk. I am so impressed. ;-) #sarcasm

posted image

2014-04-16 20:32:53 (1 comments, 2 reshares, 14 +1s)

When you're firing particles at high rates of speed in an attempt to recreate the moment of birth for our entire universe, you need a high-quality operating system to handle everything.  That's why CERN has tapped Red Hat and their Enterprise Linux operating system to power the servers that run the Large Hadron Collider.

Utilizing the #RHEL  infrastructure, the fine folks at CERN have a reliable and high-availability system that can handle massive amounts of operations and data at a single time, giving them free reign to smash particles together.  It's a match made in heaven.

Some operating systems get to have all the fun...

#CERN   #RedHat  

posted image

2014-04-16 17:16:43 (1 comments, 4 reshares, 19 +1s)

Love all, trust a few, do wrong to none. ~ William Shakespeare

2014-04-15 18:38:42 (8 comments, 4 reshares, 13 +1s)

Because many people struggle with the reality that most of our money is created out of thin air by commercial banks through debt. Here's the Bank of England explaining it in all it's gory err glory. http://www.bankofengland.co.uk/publications/Documents/quarterlybulletin/2014/qb14q102.pdf cc +Georg Zoche

2014-04-15 16:43:50 (0 comments, 1 reshares, 7 +1s)

I like his way of thinking. #heartbleed https://blog.indutny.com/9.heartbleed

2014-04-15 08:27:35 (18 comments, 7 reshares, 29 +1s)

OpenBSD has started a massive strip-down and cleanup of OpenSSL

Changes so far to OpenSSL 1.0.1g since the 11th include:
+ Splitting up libcrypto and libssl build directories
+ Fixing a use-after-free bug
+ Removal of ancient MacOS, Netware, OS/2, VMS and Windows build junk
+ Removal of “bugs” directory, benchmarks, INSTALL files, and shared library goo for lame platforms
+ Removal of most (all?) backend engines, some of which didn’t even have appropriate licensing
+ Ripping out some windows-specific cruft
+ Removal of various wrappers for things like sockets, snprintf, opendir, etc. to actually expose real return values
+ KNF of most C files
+ Removal of weak entropy additions
+ Removal of all heartbeat functionality which resulted in Heartbleed
Commits are happening pretty fast, but the API is not being changed.

2014-04-14 23:57:50 (10 comments, 4 reshares, 9 +1s)

#insightful reconstruction of the timeline of #heartbleed. http://m.smh.com.au/it-pro/security-it/heartbleed-disclosure-timeline-who-knew-what-and-when-20140414-zqurk.html cc +Simon Phipps +Fabian Scherschel l

posted image

2014-04-14 21:59:37 (19 comments, 0 reshares, 23 +1s)

Roadster and my Gazelle. What a nice combination :-)

posted image

2014-04-14 20:29:11 (8 comments, 15 reshares, 67 +1s)

#kintsukuroi   #art  

posted image

2014-04-14 13:52:08 (2 comments, 0 reshares, 5 +1s)

Not sure why. But I like this weird mix. Scooter vs Status Quo - Jump That Rock (Whatever You Want)

posted image

2014-04-14 13:36:21 (12 comments, 1 reshares, 3 +1s)

Aawww... - hrhr

posted image

2014-04-14 10:31:18 (1 comments, 0 reshares, 4 +1s)

Neulich, im Milla Club in München. +Mario Sixtus +NOFAC.ES

posted image

2014-04-13 14:26:59 (27 comments, 3 reshares, 8 +1s)

posted image

2014-04-12 16:42:12 (5 comments, 0 reshares, 22 +1s)

Taking the Roadster to the Mountains. 13 km walking through wonderful Bavaria!

2014-04-12 07:51:12 (0 comments, 0 reshares, 10 +1s)

Ehrendoktor der Uni Lübeck für Annette Schavan. Es wird Zeit, dass Uli Hoeneß für seine Verdienste zur Förderung der Steuerehrlichkeit gewürdigt wird.

posted image

2014-04-11 10:45:51 (8 comments, 10 reshares, 49 +1s)


2014-04-11 08:10:13 (5 comments, 9 reshares, 33 +1s)

Someone from my journalist followers should ask a bunch of providers all across europe on their take! Hint! Hint!

"Swedish ISP [bahnhof] deletes all retained customer data in wake of EU court ruling"


posted image

2014-04-11 00:52:44 (9 comments, 9 reshares, 21 +1s)

Are you a Red Hat customer? If so, go to this website, plug in your favorite "SSL protected" website hostname and see if it is vulnerable.


That tool is linked from the CVE page for the OpenSSL fix that Red Hat delivered to their customers: https://access.redhat.com/site/solutions/781793

And if you have a #RedHat #Satellite managing your systems, I betcha you fixed this already with a simple update of all those systems and a service restart or remote reboot. 1000s of disparate systems in no time at all! Piece o'cake! :)

Go #RedHat Go #Satellite  

posted image

2014-04-10 20:55:39 (25 comments, 1 reshares, 39 +1s)

Last try. Mine. 

2014-04-10 20:41:41 (5 comments, 0 reshares, 1 +1s)

Seems Google+ doesn't like posting pictures via mobile client. Two tries, two fails. Hrmbl.

posted image

2014-04-09 21:33:22 (6 comments, 3 reshares, 16 +1s)

"The Suspended Primadonna" in her suspension corner

2014-04-09 13:15:27 (1 comments, 0 reshares, 3 +1s)

2014-04-09 12:12:26 (11 comments, 4 reshares, 14 +1s)

Theo de Raadt (Mr. OpenBSD) sez: "OpenSSL is not developed by a responsible team." I am starting to believe that OpenSSL is bitrotting quite a bit nowadays. LibNSS is however available as alternative.


For more facepalm wrt OpenSSL you might be interested in this #geekporn from 2009: "OpenSSL is written by monkeys"  https://www.peereboom.us/assl/assl/html/openssl.html

cc +Fabian Scherschel 

posted image

2014-04-09 09:57:41 (0 comments, 4 reshares, 12 +1s)

(via +Jan Schürings) 

Es ist eine altbewährte Strategie wenn man unangenehme Wahrheiten unterdrücken will. Vorgeblich die Initiative übernehmen um dann die Arbeit im Ausschuss an jeder Stelle zu sabotieren und die Schuld dem Gegenüber zuweisen.

Da die Abgeordneten der Linken und Grünen im Ausschuss nicht allzu bekannt sind, kann erstmal die CDU lospoltern. Dann kommt der SPD Vertreter und wenn das noch immer nicht reicht poltert die CSU.

Ziel: Die Linken und Grünen als abstruse Verwschwörungstheoretiker darstellen denen es grundsätzlich an Vernunft fehlt. Erklären man könne auf so eine vergiftete Weise nicht ernsthaft arbeiten. Man würde ja wollen. Wirklich. Aber leider, leider. Nicht mit denen.

Es wundert auch kaum dass der Herr Binninger Mitglied in der Atlantikbrücke e.V. ist, ein sehr traditioneller Verein der zu Zeiten des Marshallplansgegründet wurde... more »

2014-04-09 09:38:59 (1 comments, 1 reshares, 5 +1s)

How we use the Internet even if it's all broken and insecure tells us how much more we value connectedness than security and control.

2014-04-08 23:01:13 (23 comments, 0 reshares, 1 +1s)

I will buy a new toy soon. A rather expensive one. But it's needed. Stay tuned and start guessing ;-). Hint: it ain't stupid and it has 698 ccm. 

posted image

2014-04-08 20:58:04 (1 comments, 0 reshares, 7 +1s)

The +Red Hat Czech office opens its doors tomorrow for an open house! Here's a video about the office to give you a sneak peek. 

Stop by tomorrow to see for yourself. You'll learn about our technology, culture, and job opportunities: http://ow.ly/vzAgw

posted image

2014-04-08 18:06:48 (1 comments, 1 reshares, 7 +1s)

Check out these photos from Red Hatters at the 2014 EMEA Sales Kickoff in Spain.

posted image

2014-04-08 08:10:39 (9 comments, 15 reshares, 32 +1s)

ECJ declares data retention directive invalid. Boom! http://curia.europa.eu/jcms/upload/docs/application/pdf/2014-04/cp140054en.pdf

UPDATE: The full decision text at http://www.mcgarrsolicitors.ie/wp-content/uploads/2014/04/digital-rights.pdf

2014-04-08 08:02:39 (6 comments, 1 reshares, 11 +1s)

ECJ (European Court of Justice) just decided that current data retention regulations are invalid! http://curia.europa.eu/jcms/upload/docs/application/pdf/2014-04/cp140054en.pdf


