<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for dropsafe</title>
	<atom:link href="http://dropsafe.crypticide.com/comments/feed" rel="self" type="application/rss+xml" />
	<link>http://dropsafe.crypticide.com</link>
	<description>network security, digital rights and bicycles</description>
	<lastBuildDate>Mon, 17 Jun 2013 19:20:57 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>Comment on Wanna bet that CESG was using Man-in-the-Middle SSL with a fake cert/CA? by Dio</title>
		<link>http://dropsafe.crypticide.com/article/11516/comment-page-1#comment-51136</link>
		<dc:creator>Dio</dc:creator>
		<pubDate>Mon, 17 Jun 2013 19:20:57 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11516#comment-51136</guid>
		<description><![CDATA[All ur G8s r 0pen.]]></description>
		<content:encoded><![CDATA[<p>All ur G8s r 0pen.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Wanna bet that CESG was using Man-in-the-Middle SSL with a fake cert/CA? by S</title>
		<link>http://dropsafe.crypticide.com/article/11516/comment-page-1#comment-51134</link>
		<dc:creator>S</dc:creator>
		<pubDate>Sun, 16 Jun 2013 22:18:43 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11516#comment-51134</guid>
		<description><![CDATA[I hadn&#039;t seen the Google proposal. 

Apparently the Claws mailing list has regular gripes as Claws by default (well as much as Claws has anything by default) checks certs and pins them for its own email server (sounds sensible), but some users end up bouncing between Gmail servers with different but simultaneously valid certs when Google roll out new certs for Gmail.

http://lists.claws-mail.org/pipermail/users/2012-January/001099.html

Convergence client is Firefox only AFAIK, which would omit other uses of SSL. So might not address this case, but pinning or automated notaries would likely also flag up a possible issue.

I can see why this might be painful for Google and other big operators, but it may be easier for them to ensure their certificates are consistent, or updated quickly, or alternatively that they identify the servers with distinct names under the bonnet somewhere, than devise a more complex scheme to try and address the issue, with the inevitable risk of a more complex scheme leaving more and bigger holes.

I vaguely recall the Claws folk complaining about someone else, possibly Facebook(?), having issues when rolling out new certificates, but that the issue is now resolved, and they rolls new certificates out quickly across the infrastructure (on a regular basis).

Either way the Google proposal appears to require everyone to change what they do, or did I misread it(?), wasn&#039;t there a special checkbox for that on the Final and Ultimate Solution to the Spam Problem checklist?

That said, surely a significant subset of G20 attendees should have a VPN or other stringent security measures for things like e-mail? Or do they have to have Gmail to leave messages in their Gmail account for their mistresses to pick up later? The French approach of quietly tolerating Mistresses removes that particular risk ;)]]></description>
		<content:encoded><![CDATA[<p>I hadn&#8217;t seen the Google proposal. </p>
<p>Apparently the Claws mailing list has regular gripes as Claws by default (well as much as Claws has anything by default) checks certs and pins them for its own email server (sounds sensible), but some users end up bouncing between Gmail servers with different but simultaneously valid certs when Google roll out new certs for Gmail.</p>
<p><a href="http://lists.claws-mail.org/pipermail/users/2012-January/001099.html" rel="nofollow">http://lists.claws-mail.org/pipermail/users/2012-January/001099.html</a></p>
<p>Convergence client is Firefox only AFAIK, which would omit other uses of SSL. So might not address this case, but pinning or automated notaries would likely also flag up a possible issue.</p>
<p>I can see why this might be painful for Google and other big operators, but it may be easier for them to ensure their certificates are consistent, or updated quickly, or alternatively that they identify the servers with distinct names under the bonnet somewhere, than devise a more complex scheme to try and address the issue, with the inevitable risk of a more complex scheme leaving more and bigger holes.</p>
<p>I vaguely recall the Claws folk complaining about someone else, possibly Facebook(?), having issues when rolling out new certificates, but that the issue is now resolved, and they rolls new certificates out quickly across the infrastructure (on a regular basis).</p>
<p>Either way the Google proposal appears to require everyone to change what they do, or did I misread it(?), wasn&#8217;t there a special checkbox for that on the Final and Ultimate Solution to the Spam Problem checklist?</p>
<p>That said, surely a significant subset of G20 attendees should have a VPN or other stringent security measures for things like e-mail? Or do they have to have Gmail to leave messages in their Gmail account for their mistresses to pick up later? The French approach of quietly tolerating Mistresses removes that particular risk <img src='http://dropsafe.crypticide.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on how to cook the perfect soft-boiled duck egg by Tya</title>
		<link>http://dropsafe.crypticide.com/article/3917/comment-page-1#comment-51123</link>
		<dc:creator>Tya</dc:creator>
		<pubDate>Sat, 08 Jun 2013 10:10:49 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=3917#comment-51123</guid>
		<description><![CDATA[The first time I&#039;ve boiled a duck egg and it worked perfectly, thanks!]]></description>
		<content:encoded><![CDATA[<p>The first time I&#8217;ve boiled a duck egg and it worked perfectly, thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on how to cook the perfect soft-boiled duck egg by InvisibleWoman</title>
		<link>http://dropsafe.crypticide.com/article/3917/comment-page-1#comment-51116</link>
		<dc:creator>InvisibleWoman</dc:creator>
		<pubDate>Thu, 30 May 2013 09:31:15 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=3917#comment-51116</guid>
		<description><![CDATA[I also had perfect eggs with 5.40, thank you!]]></description>
		<content:encoded><![CDATA[<p>I also had perfect eggs with 5.40, thank you!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Seems to be a new PDF (malware?) spam doing the rounds: &#8220;Gmail Verification Alerts&#8221; by Stephen Smoogen</title>
		<link>http://dropsafe.crypticide.com/article/11506/comment-page-1#comment-51115</link>
		<dc:creator>Stephen Smoogen</dc:creator>
		<pubDate>Mon, 27 May 2013 19:00:26 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11506#comment-51115</guid>
		<description><![CDATA[I had one last week in my Gmail SPAM folder but I cleaned it out yesterday so I can&#039;t compare it. Now remember to go get your Windows 98 computer out and open it up.. it should be a fun Monday.]]></description>
		<content:encoded><![CDATA[<p>I had one last week in my Gmail SPAM folder but I cleaned it out yesterday so I can&#8217;t compare it. Now remember to go get your Windows 98 computer out and open it up.. it should be a fun Monday.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on This story confuses me; are Google soon to to drop XMPP (and/or GTalk) entirely? by Bernard</title>
		<link>http://dropsafe.crypticide.com/article/11503/comment-page-1#comment-51114</link>
		<dc:creator>Bernard</dc:creator>
		<pubDate>Mon, 27 May 2013 08:56:06 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11503#comment-51114</guid>
		<description><![CDATA[D&#039;oh. Yes of course. I didn&#039;t get the use of the digit 2!]]></description>
		<content:encoded><![CDATA[<p>D&#8217;oh. Yes of course. I didn&#8217;t get the use of the digit 2!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on This story confuses me; are Google soon to to drop XMPP (and/or GTalk) entirely? by alecm</title>
		<link>http://dropsafe.crypticide.com/article/11503/comment-page-1#comment-51113</link>
		<dc:creator>alecm</dc:creator>
		<pubDate>Mon, 27 May 2013 08:41:29 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11503#comment-51113</guid>
		<description><![CDATA[client/server and server/server.]]></description>
		<content:encoded><![CDATA[<p>client/server and server/server.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on This story confuses me; are Google soon to to drop XMPP (and/or GTalk) entirely? by Bernard</title>
		<link>http://dropsafe.crypticide.com/article/11503/comment-page-1#comment-51102</link>
		<dc:creator>Bernard</dc:creator>
		<pubDate>Sat, 18 May 2013 14:46:37 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11503#comment-51102</guid>
		<description><![CDATA[Can you explain c2s and s2s? I&#039;m not familiar with the meaning 
Or give a link to an explanation? 

Thanks.]]></description>
		<content:encoded><![CDATA[<p>Can you explain c2s and s2s? I&#8217;m not familiar with the meaning<br />
Or give a link to an explanation? </p>
<p>Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Mark Zuckerberg &#8220;Likes&#8221; Something That&#8217;s Awesome: Baby Foxes # FB Foxes make Gawker headlines by Dave Walker</title>
		<link>http://dropsafe.crypticide.com/article/11504/comment-page-1#comment-51101</link>
		<dc:creator>Dave Walker</dc:creator>
		<pubDate>Sat, 18 May 2013 14:02:44 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11504#comment-51101</guid>
		<description><![CDATA[Aw :-).

Hope they don&#039;t make as much work for the grounds-cleaning staff as the similarly-adorable Sun GMP geese did.]]></description>
		<content:encoded><![CDATA[<p>Aw <img src='http://dropsafe.crypticide.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> .</p>
<p>Hope they don&#8217;t make as much work for the grounds-cleaning staff as the similarly-adorable Sun GMP geese did.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on My first OS4000 login in 20 years (approx) by Andrew Gabriel</title>
		<link>http://dropsafe.crypticide.com/article/3197/comment-page-1#comment-51099</link>
		<dc:creator>Andrew Gabriel</dc:creator>
		<pubDate>Fri, 17 May 2013 23:08:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.crypticide.com/dropsafe/?p=3197#comment-51099</guid>
		<description><![CDATA[I want to release the emulator when GEC cease support for OS4000.

The 4070 was a slowed down 4080 (store interleaving disabled), and there is support for the 4080 in my emulator in theory, but I haven&#039;t really tried it. I&#039;ve only used the emulator to emulate the later systems with PAS addressing - the 4160, 4090, and 4190 families. The emulator doesn&#039;t have a working 4070/4080 front panel. However, it will let you drive a 4070/4080 system from a 4160 front panel and/or 4160 MCU, which is much easier to use. Also, I don&#039;t have any 4070/4080 IPL PROM images, but the emulator can IPL a system without using the IPL PROM at all. If your 4070 works enough to power-up the CPU, it should be possible to read the IPL PROM image from the front panel (Reset, set Instruction-Stop mode, IPL2, and read bottom 256 bytes of store. Could repeat for IPL1 too, but the emulator doesn&#039;t support the really old peripherals like paper tape which use IPL1.)]]></description>
		<content:encoded><![CDATA[<p>I want to release the emulator when GEC cease support for OS4000.</p>
<p>The 4070 was a slowed down 4080 (store interleaving disabled), and there is support for the 4080 in my emulator in theory, but I haven&#8217;t really tried it. I&#8217;ve only used the emulator to emulate the later systems with PAS addressing &#8211; the 4160, 4090, and 4190 families. The emulator doesn&#8217;t have a working 4070/4080 front panel. However, it will let you drive a 4070/4080 system from a 4160 front panel and/or 4160 MCU, which is much easier to use. Also, I don&#8217;t have any 4070/4080 IPL PROM images, but the emulator can IPL a system without using the IPL PROM at all. If your 4070 works enough to power-up the CPU, it should be possible to read the IPL PROM image from the front panel (Reset, set Instruction-Stop mode, IPL2, and read bottom 256 bytes of store. Could repeat for IPL1 too, but the emulator doesn&#8217;t support the really old peripherals like paper tape which use IPL1.)</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on This story confuses me; are Google soon to to drop XMPP (and/or GTalk) entirely? by Richard Johnson</title>
		<link>http://dropsafe.crypticide.com/article/11503/comment-page-1#comment-51097</link>
		<dc:creator>Richard Johnson</dc:creator>
		<pubDate>Fri, 17 May 2013 11:07:57 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11503#comment-51097</guid>
		<description><![CDATA[Bottom line for protecting communicants under repressive regimes, like those Google warns when they&#039;re under attack: How do we do real OTR (not Google&#039;s fake OTR) with them under the new Google regime?

Also, restricting server to server seems at odds with &#039;cloudy&#039; computing push and desires for reliability. Hmm.]]></description>
		<content:encoded><![CDATA[<p>Bottom line for protecting communicants under repressive regimes, like those Google warns when they&#8217;re under attack: How do we do real OTR (not Google&#8217;s fake OTR) with them under the new Google regime?</p>
<p>Also, restricting server to server seems at odds with &#8216;cloudy&#8217; computing push and desires for reliability. Hmm.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on This story confuses me; are Google soon to to drop XMPP (and/or GTalk) entirely? by Lloyd Watkin (@lloydwatkin)</title>
		<link>http://dropsafe.crypticide.com/article/11503/comment-page-1#comment-51096</link>
		<dc:creator>Lloyd Watkin (@lloydwatkin)</dc:creator>
		<pubDate>Fri, 17 May 2013 09:20:49 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=11503#comment-51096</guid>
		<description><![CDATA[Not dropping it entirely, this old protocol designed before the advent of cloud computing is the technology behind their new advanced &#039;cloud messaging&#039; system.

In hangouts you&#039;ll be able to do c2s but no s2s and some other restrictions.  Google talk being merged into hangouts.]]></description>
		<content:encoded><![CDATA[<p>Not dropping it entirely, this old protocol designed before the advent of cloud computing is the technology behind their new advanced &#8216;cloud messaging&#8217; system.</p>
<p>In hangouts you&#8217;ll be able to do c2s but no s2s and some other restrictions.  Google talk being merged into hangouts.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on On &#8220;Data Compression Using Long Common Strings&#8221;, McIlroy &amp; Bentley by alecm</title>
		<link>http://dropsafe.crypticide.com/article/9829/comment-page-1#comment-51095</link>
		<dc:creator>alecm</dc:creator>
		<pubDate>Fri, 17 May 2013 07:26:18 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=9829#comment-51095</guid>
		<description><![CDATA[[B]entley &amp; [M]cIlroy [Diff]erence Compression.]]></description>
		<content:encoded><![CDATA[<p>[B]entley &#038; [M]cIlroy [Diff]erence Compression.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Can vegans stomach the unpalatable truth about quinoa? &#124; Joanna Blythman &#124; Comment is free &#124; guardian.co.uk by whatsnickeating</title>
		<link>http://dropsafe.crypticide.com/article/10569/comment-page-1#comment-51094</link>
		<dc:creator>whatsnickeating</dc:creator>
		<pubDate>Fri, 17 May 2013 04:09:48 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=10569#comment-51094</guid>
		<description><![CDATA[Regardless of fact checking, Bythman is feeding off of media buzz of quinoa and the fact that people are threatened by the vegans. By blaming vegans for the (debatable) harmful affects of quinoa production, she is reassuring readers who have typical diets that the status quo is okay. This translates to higher readership.

Furthermore, quinoa is great because it has all the essential proteins BUT you can also get those from eating beans and a banana. Once again, we are rather misinformed consumers. I write more about this here: http://whatsnickeating.com/2013/05/16/quinoa-chomping-vegans-are-killing-peruvians/]]></description>
		<content:encoded><![CDATA[<p>Regardless of fact checking, Bythman is feeding off of media buzz of quinoa and the fact that people are threatened by the vegans. By blaming vegans for the (debatable) harmful affects of quinoa production, she is reassuring readers who have typical diets that the status quo is okay. This translates to higher readership.</p>
<p>Furthermore, quinoa is great because it has all the essential proteins BUT you can also get those from eating beans and a banana. Once again, we are rather misinformed consumers. I write more about this here: <a href="http://whatsnickeating.com/2013/05/16/quinoa-chomping-vegans-are-killing-peruvians/" rel="nofollow">http://whatsnickeating.com/2013/05/16/quinoa-chomping-vegans-are-killing-peruvians/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on On &#8220;Data Compression Using Long Common Strings&#8221;, McIlroy &amp; Bentley by Federico Jose Farina</title>
		<link>http://dropsafe.crypticide.com/article/9829/comment-page-1#comment-51087</link>
		<dc:creator>Federico Jose Farina</dc:creator>
		<pubDate>Mon, 13 May 2013 04:59:43 +0000</pubDate>
		<guid isPermaLink="false">http://dropsafe.crypticide.com/?p=9829#comment-51087</guid>
		<description><![CDATA[Good article! But i dont see when McIlroy &amp; Bentley paper refers to the algorithm BMDIFF. They never named. What is BMDiff? Thanks!]]></description>
		<content:encoded><![CDATA[<p>Good article! But i dont see when McIlroy &amp; Bentley paper refers to the algorithm BMDIFF. They never named. What is BMDiff? Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on My first OS4000 login in 20 years (approx) by Bassoonbloke</title>
		<link>http://dropsafe.crypticide.com/article/3197/comment-page-1#comment-51085</link>
		<dc:creator>Bassoonbloke</dc:creator>
		<pubDate>Fri, 10 May 2013 13:28:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.crypticide.com/dropsafe/?p=3197#comment-51085</guid>
		<description><![CDATA[I Have a rescued GEC 4070 Mini at home and would desperately like to obtain a copy of the Emulator to run on a PC. I need to try to get the hang of programming via front panel keys on this splendid bit of kit.]]></description>
		<content:encoded><![CDATA[<p>I Have a rescued GEC 4070 Mini at home and would desperately like to obtain a copy of the Emulator to run on a PC. I need to try to get the hang of programming via front panel keys on this splendid bit of kit.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
