Practical Technology

for practical people.

May 17, 2008
by sjvn01
4 Comments

Firefox 3 First Look

I’ve loved Firefox since version 0.93. It was so much better than Internet Explorer and the other alternatives that I couldn’t imagine using anything else. But, then Firefox’s memory leaks went from annoying me to ticking me off; I started having real stability problems with it on both Windows and Linux; and security holes started appearing far more often. I was about to switch to Safari on Windows and MacOS and Konqueror on Linux, when Mozilla got serious about not just fixing, but rebuilding Firefox. Now, Firefox 3 release candidate 1 was released early. Based on my quick look at it, I may end up sticking with Firefox after all.

I downloaded Firefox 3 RC 1 yesterday for both my Windows XP SP3 system and one of my openSUSE 10.3 PCs. Both are up-to-day systems without any problems. Installing the browser on both operating systems was a snap. How easy was it? I installed them at the same time with barely a thought.

Once in place, rather than looking at the new and nifty features, I just start using the browser as I would normally. Features are all well and good but what I really wanted to know was whether the browser was back to being a stable, reliable partner and had it stopped snatching up memory. I’m happy to report that, based on twelve hours of non-stop use and abuse, Firefox 3 is both more stable than Firefox 2.x and it finally has stopped being a memory piggy.

More >

May 16, 2008
by sjvn01
0 comments

WhitePages.com grapples with privacy in a Web 2.0 world

WhitePages.com does exactly what you’d expect from the name — it tries to provide phone book-style listings for both the U.S. and Canada. Of course, there’s nothing new about that, so WhitePages.com tries to do an especially thorough job. The company claims that at the end of 2007, it had 180 million U.S. adults, about 80% of the population, in its records.

As Web 2.0, social networking and a changing idea of personal privacy have come to the fore, WhitePages.com has also started to ask itself how it might offer users more control over their information while providing more and different kinds of information. Forward-thinking, maybe noble even but, as experience is showing, far easier said than done.

Specifically, founder and CEO Alex Algard has said that the company would start adding features to let people edit and/or hide portions of their directory information. At the same time early this year, the company promised that it would work on a way to let people send text messages or e-mails, using the directory information but without revealing their information — something along the lines of a social-networking site such as LinkedIn or Facebook.

For example, let’s say you were looking for your old high school girlfriend, and she’s listed in WhitePages.com’s records, but chooses to keep her information hidden. With the system Algard envisions, you could send her a note via WhitePages.com, and she could then decide whether to get back in touch with you or to call the police because you’re still stalking her after all those years.

More >

May 16, 2008
by sjvn01
0 comments

Fixing Debian OpenSSL

Debian, the popular Linux distribution, has just been shown to have made an all-time stupid security goof-up. They managed to change OpenSSL in their distribution so that it had no security to speak of. Good job guys!

OpenSSL makes it possible to use SSL (Secure Socket Layer) and TLS (Transport Layer Security) in Linux, Unix, Windows and many other operating systems. It also incorporates a general purpose cryptography library. OpenSSL is used not only in operating systems, but in numerous vital applications such as security for Apache Web servers and security appliances from companies like Check Point and Cisco. Yeah, in other words, if you do anything requiring network security on Linux, chances are good, OpenSSL is being called in to help

Now, OpenSSL itself is still fine. What’s anything but fine is any Linux, or Linux-powered device, that’s based on Debian Linux libssl 0.9.8c-1 code, which was released September 17th 2006 until version libssl 0.9.8, which was released on May 13th. That includes the most popular Linux of all: Ubuntu.

More >

May 15, 2008
by sjvn01
13 Comments

Open-Source Security Idiots

Sometimes, people do such stupid things that words almost fail me. That’s the case with a Debian ‘improvement’ to OpenSSL that rendered this network security program next to useless in Debian, Ubuntu and other related Linux distributions.

OpenSSL is used to enable SSL (Secure Socket Layer) and TLS (Transport Layer Security) in Linux, Unix, Windows and many other operating systems. It also includes a general purpose cryptography library. OpenSSL is used not only in operating systems, but in numerous vital applications such as security for Apache Web servers, OpenVPN for virtual private networks, and in security appliances from companies like Check Point and Cisco.

Get the picture? OpenSSL isn’t just important, it’s vital, in network security. It’s quite possible that you’re running OpenSSL even if you don’t have a single Linux server within a mile of your company. It’s that widely used.

Now, OpenSSL itself is still fine. What’s anything but fine is any Linux, or Linux-powered device, that’s based on Debian Linux OpenSSL code from September 17th, 2006 until May 13, 2008.

What happened? This is where the idiot part comes in. Some so-called Debian developer decided to ‘fix’ OpenSSL because it was causing the Valgrind code analysis tool and IBM’s Rational Purify runtime debugging tool to produce warnings about uninitialized data in any code that was linked to OpenSSL. This ‘problem’ and its fix have been known for years. That didn’t stop our moronic developer from fixing it on his own by removing the code that enabled OpenSSL to generate truly random numbers..

Continue Reading →

May 15, 2008
by sjvn01
0 comments

Adobe releases Adobe Flash Player 10 beta for Linux

Adobe Systems is reaching out for Linux desktop users with its announcement today that the first beta of Adobe Flash Player 10, a.k.a. Astro, is now available for Linux, as well as Windows and Mac OS X.

In a statement, David Wadhwani, general manager and vice president of the Platform Business Unit at Adobe, said that “Adobe had been working closely with the community; we are delivering groundbreaking creative features that will be transformative for interactive designers and developers, and revolutionary for end users.”

Unfortunately, not all those new features are available in the Linux version. The new release gives Windows and Mac OS designers the ability to create custom filters and effects that can be used with Flash’s native effects. To create these custom filters and effects, users need Adobe Pixel Bender toolkit, and this program, which is now a release candidate, is not available for Linux developers.

Adobe promises that some of the toolkit’s functionality will be incorporated into Adobe AIR, which does run on Linux in alpha release.

Flash Player 10 comes on the heels of Adobe’s Open Screen Project, whose goal is “to enable a consistent runtime environment” by relaxing some restrictions on the Flash format and releasing some Flash specifications. According to Adobe, some of Pixel Bender’s functionality will also be included in Open Screen. That said, Open Screen, isn’t regarded as being all that useful by open-source Flash developers.

The new beta provides for variable bit-rate video streaming. While this functionality isn’t usable today, it’s designed to automatically adjust the video quality between the next version of the Adobe Flash Media Server and Player depending on the available bandwidth.

Flash Player 10 also includes native support for 3-D effects to position, rotate, and animate 2-D objects while retaining interactivity. This functionality is already available for developers thanks to the PaperVision3D open source library for Flash Player 9.

Microsoft is attempting to compete with Flash with its Silverlight platform for .Net-based media files. Adobe’s beta release comes days after Miguel de Icaza, lead developer of Mono, the .Net Linux implementation, announced that the first code was available for Moonlight, a Mono-based implementation of Silverlight. While not even feature-complete, it’s the first published code that supports the Silverlight 1.0 profile for Linux.

Microsoft, as Roy Schestowitz pointed out on his Boycott Novell site, has not opened up Silverlight at all nor offered support for it on Linux. Thus, neither Flash nor Moonlight/Silverlight is really all that Linux-friendly. Both, especially for Linux creative content developers, continue to be difficult to work with. That said, for Linux users who just want to watch Flash movies, Adobe’s new beta deserves some attention.

Linux users do have another option for Flash viewing. Gnash released Gnash 0.8.2 of its GPLv3 SWF (Shockwave Flash) movie player and Firefox browser plugin in late March. Besides the browser plugin, Gnash also offers standalone players for both KDE and GNOME.

The prerelease version of Adobe Flash Player 10 beta is now available as a free download from Adobe Labs in RPM and DEB binaries. Users must uninstall Adobe Flash Player 9 for Linux before installing the beta.

A version of this story first appeared on NewsForge. >

May 15, 2008
by sjvn01
0 comments

Five Reasons — Wait, Six! — to Start Considering WiMax Today

t’s a Wi-Fi world, but Wi-Fi has its own set of problems. Now, mobile WiMax may provide corporations with another, better way of networking the mobile workforce.

Today, everyone in the user community swears by IEEE 802.11–based wireless networks. But IT people all swear at it. The high-speed, 100Mbps-plus, 802.11n standard still hasn’t been finalized; covering space adequately with PoE (power over Ethernet) 802.11g access points (APs) continues to be difficult; and it’s all too easy to overrun a single AP with too many clients.

So, while Wi-Fi is far too useful to consider getting rid of, it also continues to be an IT deployment and management headache. This is why mobile WiMax, IEEE 802.16e, is beginning to catch the attention of CIOs and CTOs.

Here are several good reasons to consider WiMax for your future wireless network needs.

More >