| Security through idiocy |
[May. 14th, 2008|09:54 pm] |
Just for a change, here's a post on utter stupidity that is not committed by the lusers.
In our network, we have two sides: let's call them "core" and "corporate". The Core side is not top-secret, but it does contain some critical systems which absolutely cannot be polluted from elsewhere, including the Corporate network. The networks are physically separated, except for a firewalled-up-to-the-wazoo DMZ that allows a few systems to pass data to the Corporate side.
On the Corporate side, we have a number of systems that crunch Core data, including one application that was having strange intermittent problems with corrupted data arriving from the Core side. The lead app developer came to me to have a chat about how to prove that the data that was traversing a particular router was causing the problem. The router apparently has a fault that means it can't process 100MB/full traffic, and the dev wanted to know of a tool that could show what was going on with the packets. Once that problem was identified, he'd lobby to have the router fixed so it could cope with the full load.
So, I started off discussing TCPDump, and how by comparing the packets on the Core side, and those received on the Corporate side, they could see how many packets are being dropped. The dev said that the missing data was really causing gyp with his app... and the word missing (as opposed to slow) hit my ear. So, I asked, are they using UDP to transmit this critical data that is supposed to be processed by the applications on the Corporate side that are part of our entire business management system (ie. scheduling the work that the Core side actually does), so accuracy is paramount? Oh, yes, says the dev, the Core admins only permit UDP traffic outbound, because TCP might cause "pollution problems".
Well, I think their concern about flood attacks coming from the Corporate network's potential malicious use of SYNs and ACKs is very ...diligent. Obviously the complexity of setting up stateful firewall inspection is a bit beyond them - and hell, if they're not processing the data, who cares about consistency or completeness? Anyway, I advised the dev to have a discussion with the application owner (one step down from the CEO) about the merits of "error correction" and "guaranteed delivery", and let him fight it out with the Core Gollums protecting their data Preciouses. |
|
|
| Ouch. |
[May. 15th, 2008|12:43 am] |
Email I recieved:
I finish acquiring this software, have had problems to install it installs, it in my computer and it appears to me a message that says the failed installation to, and at the time of wanting to install it in the machine of my husband, says to me that has expired the license, in mine I do not work, and gives the same me I number of license and in the box says that is for three machines. I need help tanck you
I suspect a non-native English speaker, but their name doesn't suggest anything less white bread than "Jane Smith" |
|
|
| |
[May. 14th, 2008|11:29 pm] |
 |
|
|
| Against the Giants Preview 2 |
[May. 15th, 2008|04:29 am] |
|
http://www.wizards.com/default.asp?x=dnd/mi/20080515 With new races and new classes appearing in 4th Edition, new miniatures are needed to represent them. Here's a pair of figures that are sure to do double duty in your skirmish games and RPG sessions. |
|
|
| hot! |
[May. 14th, 2008|09:12 pm] |
Well, Lucas is doing way better today- acting like himself again. It's so hot that both kitties are letting me wipe them down with a cold wet washcloth, though. |
|
|
| Sparky measuring cup |
[May. 14th, 2008|11:13 pm] |
I came across this measuring cup by accident, and it really seems like the sort of thing a Spark would make. Who needs cups or liters when you can use the size of Tyrannosaurus Rex's brain or the volume of a human breath as your standards of measure instead?
|
|
|
| BackAlleyBrawler: Re: I want a Buster Sword! |
[May. 14th, 2008|09:22 am] |
|
http://boards.cityofheroes.com/showthreaded.php?Number=10791061 Quote: too much redraw I would be happier with a series of huge swords for katana
Huge swords wouldn't look right with the current Katana animations. They'd lose all credible sense of weight and mass when whipped around like that. And a huge sword with no sense of weight just looks silly.
Senior Animator/Visual Effects Artist
*All posts unrelated to animation or visual effects represent my personal opinion and are presented in an informal style intended to inform and entertain.*
|
|
|
| I'm in love with my new tattoo artist! Part 3 |
[May. 14th, 2008|10:24 pm] |
| [ | Tags | | | tattoo | ] |
| [ | mood |
| | accomplished | ] |
| [ | music |
| | Pulp fiction theme | ] |
And now, for the grand finale. Let me introduce you to my Beautiful, vicious Furies!
Meet Alecto ("unceasing,"), Megaera ("grudging"), and Tisiphone ("avenging murder") in all their glory:
( Come say hello to the Erinyes... ) |
|
|